Bitcoin Forum

Bitcoin => Bitcoin Discussion => Topic started by: imperi on June 20, 2011, 07:59:49 PM



Title: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: imperi on June 20, 2011, 07:59:49 PM
http://securityforthemasses.blogspot.com/2011/06/someone-offering-tradehill-bitcoin.html

Quote
Someone Offering TradeHill BitCoin User/Pass hashes Now...
tradehill bitcoin exchange user/hash passes out now
unsalted, email for details
gfc07@gmail.com

 :o


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: ptd on June 20, 2011, 08:01:25 PM
Can you verify this somehow?


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: relative on June 20, 2011, 08:01:42 PM
isnt that the same email address that offered MtGox passes?
I'd say either BS or he just scanned which ones of the MtGox works on tradehill and sells these now.

extremely unlikely the same guy got both.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: Chick on June 20, 2011, 08:02:11 PM
Yay!


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: Takkun on June 20, 2011, 08:02:36 PM
Same post was made on reddit 10 minutes ago.

http://www.reddit.com/r/Bitcoin/comments/i4lab/tradehill_passworduser_accounts_hackedtime_to/


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: SgtSpike on June 20, 2011, 08:03:14 PM
Lame.

Oh well, don't have anything in my tradehill account at the moment anyway.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: BitcoinPorn on June 20, 2011, 08:04:06 PM
Good times.

Password change time again everyone :D

Even if it is fake, maybe everyone should just get used to changing shit hourly.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: ploum on June 20, 2011, 08:04:40 PM
Easy to verify: just ask the guy to send me my own password hash so I can compare them. I use the same nickname on every website, should be easy.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: imperi on June 20, 2011, 08:04:57 PM
Good times.

Password change time again everyone :D

Even if it is fake, maybe everyone should just get used to changing shit hourly.

People said it was fake last time, and we saw a blog post just like this 2 days before the sell-off.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: Anonymous on June 20, 2011, 08:06:06 PM
Hahaha. Morons, the whole lot of them.

It seems nobody can -- at the least -- hire a good security team.

Edit: Fake.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: myrkul on June 20, 2011, 08:07:36 PM
Consider the source.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: SgtSpike on June 20, 2011, 08:08:51 PM
Changing my password just in case, and will change it again this evening.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: TraderTimm on June 20, 2011, 08:09:02 PM
Intelligent people verify.

Idiots post without verifying.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: GeniuSxBoY on June 20, 2011, 08:09:38 PM
son of a bitch.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: grue on June 20, 2011, 08:10:27 PM
the email is fake/invalid.
Quote
Delivery to the following recipient failed permanently:

    gfc07@gmail.com

Technical details of permanent failure:
The email account that you tried to reach does not exist. Please try double-checking the recipient's email address for typos or unnecessary spaces. Learn more at http://mail.google.com/support/bin/answer.py?answer=6596


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: imperi on June 20, 2011, 08:11:11 PM
the email is fake/invalid.
Quote
Delivery to the following recipient failed permanently:

    gfc07@gmail.com

Technical details of permanent failure:
The email account that you tried to reach does not exist. Please try double-checking the recipient's email address for typos or unnecessary spaces. Learn more at http://mail.google.com/support/bin/answer.py?answer=6596

Maybe they deleted it and are now using a different one.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: GeniuSxBoY on June 20, 2011, 08:12:41 PM
It might be real  because tradehill was buying server space from mt gox.

but you know... that information they got from tradehill while it was on mt gox is outdated now because tradehill has made security changes since mt gox.


let's wait and see.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: piuk on June 20, 2011, 08:14:01 PM
Probably fud, but there is no way to tell for sure. Change your passwords people.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: ploum on June 20, 2011, 08:14:53 PM
the email is fake/invalid.

Of course it is. Gmail requires at least 6 characters in the login.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: grue on June 20, 2011, 08:15:08 PM
this thread is BS

general format:
<link to some random *.blogspot.com blog>
Someone Offering <bitcoin related site> BitCoin User/Pass hashes Now...
<bitcoin related site>  user/hash passes out now
unsalted, email for details
<random email>

example:
Quote
bitcoinscare.blogspot.com
Someone Offering Deepbit BitCoin User/Pass hashes Now...
Deepbit  user/hash passes out now
unsalted, email for details
grue@1337hax.com


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: bitplane on June 20, 2011, 08:15:28 PM
Problem?.jpg


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: broker11 on June 20, 2011, 08:18:17 PM
Where are the forum moderators?  Complete nonsense thread.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: imperi on June 20, 2011, 08:19:03 PM
Where are the forum moderators?  Complete nonsense thread.

The moderator actually posted the link somewhere else.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: myrkul on June 20, 2011, 08:20:11 PM
Where are the forum moderators?  Complete nonsense thread.

The moderator actually posted the link somewhere else.

And I know for a fact that Satoshi himself wrote that blogspot post.  ::)


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: TraderTimm on June 20, 2011, 08:23:23 PM
Shit just got really troll-rific.

Fixed that for you.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: Freakin on June 20, 2011, 08:25:27 PM
Shit just got fake.

fyp


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: myrkul on June 20, 2011, 08:26:25 PM
Shit just got real.

No, No it didn't. Imperi is a known if not outright troll, then fearmonger at minimum. Ignore him. Keep calm, and carry on. If you're really paranoid, change your Tradehill password.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: RodeoX on June 20, 2011, 08:34:19 PM
Just a reminder that it is likely that only the "low hanging fruit" will be picked. If you have a strong password ( this is what that looks like =" Upo38&64#%uVyt@114(9y6rew5 " ), then you are not an easy target. You should also keep very little at your exchange site.  The bulk of your bitwealth should not be online. Not in your program appdata file, not on your desktop, not at a cloud server. The safest is on several USB/CD's, encrypted and hidden.

So far it is accounts with weak passwords that are being hit hard. A strong password buys you time to change it before cracked.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: makomk on June 20, 2011, 08:46:12 PM
People said it was fake last time, and we saw a blog post just like this 2 days before the sell-off.

If anything, that increases the odds that this one is fake. Both Bitcoin users in general and anyone that wants to fake a security scare about Tradehill have the Mt Gox compromise on their minds, so a fake is likely to take the same form as the real Mt Gox compromise. It's unlikely that a genuine hack would happen the exact same way as the last one, right down to the message offering up account details for sale.


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: Maged on June 20, 2011, 09:04:18 PM
Well, the Bitcoin7 DB is still for sale... if anybody cares.
http://securityforthemasses.blogspot.com/2011/06/mt-gox-db-purportedly-for-sale.html


Title: Re: TRADEHILL COMPROMISED - HACKER ATTACK IMMINENT
Post by: myrkul on June 20, 2011, 09:10:57 PM
Well, the Bitcoin7 DB is still for sale... if anybody cares.
http://securityforthemasses.blogspot.com/2011/06/mt-gox-db-purportedly-for-sale.html

Herp Derp.