Bitcoin Forum

Bitcoin => Bitcoin Discussion => Topic started by: CyberAlien on January 07, 2018, 04:21:11 PM



Title: Someone is selling Electrum vulnerability script
Post by: CyberAlien on January 07, 2018, 04:21:11 PM
If you haven't updated already, you should do so immediately.

This was shared a few minutes ago on Twitter:  http://satoshibox.com/j5tc6hwdbp2tbs2z4h8uhcxs

I don't know if it actually works and I don't have 0.05 BTC to test it.  But I thought it may be useful for some developers to investigate.


Title: Re: Someone is selling Electrum vulnerability script
Post by: jseverson on January 07, 2018, 05:24:16 PM
It sucks, but you just know a few scrubs will be willing to pay for it to take advantage of people who are a little behind on the news. The best thing we can really do to combat this is to make sure they don't make victims out of us.

I don't think it's worth spending anything on, developer or not. The vulnerability has already been patched, and there's no need to check if it works. We should not fund malicious players.


Title: Re: Someone is selling Electrum vulnerability script
Post by: aso118 on January 07, 2018, 05:48:20 PM
If you haven't updated already, you should do so immediately.

This was shared a few minutes ago on Twitter:  http://satoshibox.com/j5tc6hwdbp2tbs2z4h8uhcxs

I don't know if it actually works and I don't have 0.05 BTC to test it.  But I thought it may be useful for some developers to investigate.

This is to be expected. Usually, if the vulnerability was discovered in a large company's software, the trade would be on the dark net. In the case of electrum, the sale is being offered on twitter itself.
The basic safeguard most of us should take is store bitcoins for the long term on hardware wallets, or definitely not in a wallet which we use for daily use. Vulnerabilities may still be discovered, but are less likely.


Title: Re: Someone is selling Electrum vulnerability script
Post by: ac2eugenio on January 07, 2018, 05:51:59 PM
If you haven't updated already, you should do so immediately.

This was shared a few minutes ago on Twitter:  http://satoshibox.com/j5tc6hwdbp2tbs2z4h8uhcxs

I don't know if it actually works and I don't have 0.05 BTC to test it.  But I thought it may be useful for some developers to investigate.
That should be another scam,if i were him will sell it on the developers for more BTC,hes just making you fool if there is more than precious thing that we can have here thats the vulnerability and BTC only.


Title: Re: Someone is selling Electrum vulnerability script
Post by: Yaunfitda on January 07, 2018, 05:58:32 PM
If you haven't updated already, you should do so immediately.

This was shared a few minutes ago on Twitter:  http://satoshibox.com/j5tc6hwdbp2tbs2z4h8uhcxs

I don't know if it actually works and I don't have 0.05 BTC to test it.  But I thought it may be useful for some developers to investigate.

This is to be expected. Usually, if the vulnerability was discovered in a large company's software, the trade would be on the dark net. In the case of electrum, the sale is being offered on twitter itself.
The basic safeguard most of us should take is store bitcoins for the long term on hardware wallets, or definitely not in a wallet which we use for daily use. Vulnerabilities may still be discovered, but are less likely.

Was really quite surprise that there's a vulnerability discovered on Electrum, I immediately moved my funds out as I was using a old version of Electrum. Luckily when I opened my wallet earlier, my funds is still intact but I can't moved it. I just shut it down immediately and just go online again after a few hours and successfully transferred my funds then.

This is to be expected though, usually once a vulnerability is found or exploits, it will spread like wildfires because everyone was in for the MONEY. Let's see how it goes though, I already moved everything but I haven't upgraded to the latest version. Thinking of moving to GreenAddress unless Electrum devs can tell the public that everything is fix already.

Edit: Vulnerabilities have been fixed already.