It’s only a matter of time before the CEO, a rogue employee, or a hacker sweeps through the database and collects every penny of every Lumi wallet user.
Link to medium post: https://medium.com/@dandisagrees/a0cf1dd70fd0
Lumi wallet official account here:)
Yes, our web wallet was not client-side at the time of this so-called "research"
We did store our user's private keys at our servers but did store them strongly encrypted, so the mnemonic was (and is) actually hashed before being stored.
Anyway, we decided that the customer always has the final say, and created a client-side web version.
Our new client-side beta is available at https://lumiwallet.com/about-web-new?utm_medium=bitcointalk