Bitcoin Forum

Other => Meta => Topic started by: BitCoinDream on May 25, 2015, 10:05:52 PM



Title: BitcoinTalk server was compromised
Post by: BitCoinDream on May 25, 2015, 10:05:52 PM
As some of you already know, BitcoinTalk server was compromised through Social Engineering and the attacker got access to the DataBase, partially or completely. The most dangerous part of the incident is that the DataBase dump is available in the public domain. If you are intersted in the details of the attack, check the post by the BitcoinTalk admin: https://bitcointalk.org/index.php?topic=1067985.0.


As an immediate measure, it is highly recommended to...

1. Change your password.

2. Not to have trade with a trusted forum member without verifying his identity.


We have already noticed that a few old accounts have suddenly become active in the forum.


Title: Re: BitcoinTalk server was compromised
Post by: Fernandez on May 26, 2015, 08:49:31 AM
Not to have trade with a trusted forum member without verifying his identity.

This always applies, and goes for any escrow too. They should always give a signed message.


Title: Re: BitcoinTalk server was compromised
Post by: thebitcoinquiz.com on May 27, 2015, 02:11:27 PM
The most dangerous part of the incident is that the DataBase dump is available in the public domain.
In the public domain? But where?
I failed to fined any such database dump(or a mention that the dump is available to everyone).  The link you provided also doesn't talk of the dump being available in public? Would you like to throw some more light upon it?


Title: Re: BitcoinTalk server was compromised
Post by: vennali on May 27, 2015, 10:26:55 PM
The most dangerous part of the incident is that the DataBase dump is available in the public domain.
In the public domain? But where?
I failed to fined any such database dump(or a mention that the dump is available to everyone).  The link you provided also doesn't talk of the dump being available in public? Would you like to throw some more light upon it?
I don't think the data was dumped out in the public, theymost only said "He then proceeded to try to acquire a dump of the forum's database before I noticed this at around 1:08 and shut down the server" 


Title: Re: BitcoinTalk server was compromised
Post by: pandher on May 28, 2015, 08:16:55 AM
Compromises have become a joke now, get that millionaire board up already


Title: Re: BitcoinTalk server was compromised
Post by: Rotten Egg on May 30, 2015, 10:54:53 AM
The most dangerous part of the incident is that the DataBase dump is available in the public domain.
In the public domain? But where?
I failed to fined any such database dump(or a mention that the dump is available to everyone).  The link you provided also doesn't talk of the dump being available in public? Would you like to throw some more light upon it?
I don't think the data was dumped out in the public, theymost only said "He then proceeded to try to acquire a dump of the forum's database before I noticed this at around 1:08 and shut down the server" 

Nopes. It seems that the data is out in the public: http://satoshibox.com/5568fdd512fb6d98558b462d

And we are already witnessing adverse effects of that...

Example 1: https://bitcointalk.org/index.php?topic=1074180.0

Example 2: https://bitcointalk.org/index.php?topic=1074232.0


Title: Re: BitcoinTalk server was compromised
Post by: escrow.ms on May 30, 2015, 10:58:33 AM

Nopes. It seems that the data is out in the public: http://satoshibox.com/5568fdd512fb6d98558b462d


If you seriously believe that it's the real dump not a fake file, please pay 0.2 BTC and download it then spread links here and there.
It's a fake file which is being used by some new scamming accounts.


Title: Re: BitcoinTalk server was compromised
Post by: Rotten Egg on May 30, 2015, 11:04:07 AM

Nopes. It seems that the data is out in the public: http://satoshibox.com/5568fdd512fb6d98558b462d


If you seriously believe that it's the real dump not a fake file, please pay 0.2 BTC and download it then spread links here and there.
It's a fake file which is being used by some new scamming accounts.

I have nothing to do with the forum database. So, I'm not going to waste around Rs. 2965. But, if it is fake, how the account hacks are happening ? Few old accounts like Mt. Gox support got active in the forum recently after almost 2 years of non-activity.


Title: Re: BitcoinTalk server was compromised
Post by: escrow.ms on May 30, 2015, 11:49:35 AM
I have nothing to do with the forum database. So, I'm not going to waste around Rs. 2965. But, if it is fake, how the account hacks are happening ? Few old accounts like Mt. Gox support got active in the forum recently after almost 2 years of non-activity.

Those account were not related to recent database hack, you can check both threads. As for Activity they might came back here to change passwords as theymos did mass mailing to warn all users about hacking. But it's possible that some accounts will get hacked or got hacked.


Title: Re: BitcoinTalk server was compromised
Post by: maheshmahi on May 30, 2015, 06:18:36 PM
Theymos has already warned all of them.
But the group "the hole seekers" who hacked bitcointalk tweeted that they will not gonna stop this.


Title: Re: BitcoinTalk server was compromised
Post by: Amitabh S on May 31, 2015, 05:21:47 AM
https://www.cryptocoinsnews.com/bitcoin-mining-figure-joshua-zipkin-responsible-bitcointalk-hack/

"Is Bitcoin Mining Figure Joshua Zipkin Responsible for the Bitcointalk Hack?"

The circumstantial evidence presented is very strong that he is responsible for the attack.

Probably he hired someone.