Bitcoin Forum

Other => Off-topic => Topic started by: Gleb Gamow on August 08, 2014, 01:09:13 PM



Title: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: Gleb Gamow on August 08, 2014, 01:09:13 PM
Firm That Exposed Breach Of 'Billion Passwords' Quickly Offered $120 Service To Find Out If You're Affected (http://www.forbes.com/sites/kashmirhill/2014/08/05/huge-password-breach-shady-antics/?google_editors_picks=true)

Why I Am Skeptical About 1.2-Billion Passwords Being Stolen (http://www.forbes.com/sites/josephsteinberg/2014/08/07/why-i-am-skeptical-about-1-2-billion-passwords-being-stolen/)

Fortunately, Alex Holden of Hold Security - the cybersecurity firm credited by the New York Times with discovering this cryptocurrency password breach AND the 1.2B passwords recently stolen by them pesky Russkies - has offer up a monthly service to see if you're shit had been hacked.

Quote
Alex Holden, a devoted Bitcoiner, says that the service will only be $120/month. “We are charging this fee to recover our expense to verify the domain or website ownership,” he says by email. “While we do not anticipate any fraud, we need to be cognizant of its potential. The other thing to consider, the cost that our company must undertake to proactively reach out to a company to identify the right individual(s) to inform of a breach, prove to them that we are the ‘good guys’. Believe it or not, it is a hard and often thankless task.”


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: poisenrang on August 08, 2014, 02:54:05 PM
even if this was real, you just cant get any bitcoin/blockchain accounts its just too secure i guess, identificaition, password, the identification itsself is a password already :o


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: ihuntbtc on August 08, 2014, 02:57:07 PM
hows this even possible  ::)


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: sumantso on August 08, 2014, 03:11:18 PM
Just change all your passwords, you should do that regularly anyway.


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: BowieMan on August 08, 2014, 03:29:04 PM
even if this was real, you just cant get any bitcoin/blockchain accounts its just too secure i guess, identificaition, password, the identification itsself is a password already :o

Are we talking about Bitcoin accounts (addresses?) or blockchain.info accounts here? People have to specify what they're talking about. Blockchain.info is just a regular company that's offering online wallets. They have no 'special' connection to the actual bitcoin blockchain whatsoever!


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: vm1990 on August 08, 2014, 03:31:09 PM
ahhh its nice to see people are still stupid
i want proof :D
as for Alex Holden he can go and shove his $120 con up his ass

for example most of the "passwords" he has will be

111111
aaaaaa
password  

and other such things. if you want a password to be safe then simply make a good random password. dont go and use your dogs name or a word out of the dictionary (yes im talking to you whos now realizing how foolish he/she was by using a simple word and has the joy of me insulting them for there simplicity, NOW CHANGE IT FOOL)


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: Sunderland on August 08, 2014, 03:32:24 PM
hmm yes change regularly pass is good choice.
but i got problem from that , sometimes i forgot my new pass and take alot of times to recover that again.

my friend kept all their password and what site in his email.
until one day his email got hacked and you know what happen next ..........

he screw his life because of that , he lose alot and cry like hell for 1 week  ;D



Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: Brewins on August 08, 2014, 07:07:22 PM
I can make a false leak of some hundreads of passwords for $120/month  ::)

If you understand what I mean


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: BurtW on August 08, 2014, 07:11:24 PM
I use lastpass and change my passwords regularly to new long randomly generated passwords.  I don't have to remember them lastpass does that for me.  So far, so good.


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: BitcoinMillionaire on August 08, 2014, 07:22:00 PM
Firm That Exposed Breach Of 'Billion Passwords' Quickly Offered $120 Service To Find Out If You're Affected (http://www.forbes.com/sites/kashmirhill/2014/08/05/huge-password-breach-shady-antics/?google_editors_picks=true)

Why I Am Skeptical About 1.2-Billion Passwords Being Stolen (http://www.forbes.com/sites/josephsteinberg/2014/08/07/why-i-am-skeptical-about-1-2-billion-passwords-being-stolen/)

Fortunately, Alex Holden of Hold Security - the cybersecurity firm credited by the New York Times with discovering this cryptocurrency password breach AND the 1.2B passwords recently stolen by them pesky Russkies - has offer up a monthly service to see if you're shit had been hacked.

Quote
Alex Holden, a devoted Bitcoiner, says that the service will only be $120/month. “We are charging this fee to recover our expense to verify the domain or website ownership,” he says by email. “While we do not anticipate any fraud, we need to be cognizant of its potential. The other thing to consider, the cost that our company must undertake to proactively reach out to a company to identify the right individual(s) to inform of a breach, prove to them that we are the ‘good guys’. Believe it or not, it is a hard and often thankless task.”

Woah really? I guess I better go and change my password I use on all sites... How can they do this? I mean Bitcoin is supposed to be safe. I hope my coins on BTC-e are still safe.


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: Gleb Gamow on August 08, 2014, 07:42:17 PM
Firm That Exposed Breach Of 'Billion Passwords' Quickly Offered $120 Service To Find Out If You're Affected (http://www.forbes.com/sites/kashmirhill/2014/08/05/huge-password-breach-shady-antics/?google_editors_picks=true)

Why I Am Skeptical About 1.2-Billion Passwords Being Stolen (http://www.forbes.com/sites/josephsteinberg/2014/08/07/why-i-am-skeptical-about-1-2-billion-passwords-being-stolen/)

Fortunately, Alex Holden of Hold Security - the cybersecurity firm credited by the New York Times with discovering this cryptocurrency password breach AND the 1.2B passwords recently stolen by them pesky Russkies - has offer up a monthly service to see if you're shit had been hacked.

Quote
Alex Holden, a devoted Bitcoiner, says that the service will only be $120/month. “We are charging this fee to recover our expense to verify the domain or website ownership,” he says by email. “While we do not anticipate any fraud, we need to be cognizant of its potential. The other thing to consider, the cost that our company must undertake to proactively reach out to a company to identify the right individual(s) to inform of a breach, prove to them that we are the ‘good guys’. Believe it or not, it is a hard and often thankless task.”

Woah really? I guess I better go and change my password I use on all sites... How can they do this? I mean Bitcoin is supposed to be safe. I hope my coins on BTC-e are still safe.

Don't bother!: http://www.youarenotpayingattention.com/2014/08/08/the-lie-behind-1-2-billion-stolen-passwords/


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: BitcoinMillionaire on August 08, 2014, 07:45:10 PM
Firm That Exposed Breach Of 'Billion Passwords' Quickly Offered $120 Service To Find Out If You're Affected (http://www.forbes.com/sites/kashmirhill/2014/08/05/huge-password-breach-shady-antics/?google_editors_picks=true)

Why I Am Skeptical About 1.2-Billion Passwords Being Stolen (http://www.forbes.com/sites/josephsteinberg/2014/08/07/why-i-am-skeptical-about-1-2-billion-passwords-being-stolen/)

Fortunately, Alex Holden of Hold Security - the cybersecurity firm credited by the New York Times with discovering this cryptocurrency password breach AND the 1.2B passwords recently stolen by them pesky Russkies - has offer up a monthly service to see if you're shit had been hacked.

Quote
Alex Holden, a devoted Bitcoiner, says that the service will only be $120/month. “We are charging this fee to recover our expense to verify the domain or website ownership,” he says by email. “While we do not anticipate any fraud, we need to be cognizant of its potential. The other thing to consider, the cost that our company must undertake to proactively reach out to a company to identify the right individual(s) to inform of a breach, prove to them that we are the ‘good guys’. Believe it or not, it is a hard and often thankless task.”

Woah really? I guess I better go and change my password I use on all sites... How can they do this? I mean Bitcoin is supposed to be safe. I hope my coins on BTC-e are still safe.

Don't bother!: http://www.youarenotpayingattention.com/2014/08/08/the-lie-behind-1-2-billion-stolen-passwords/

Woah, alright then. I guess we all have gotten away safely this time. But I think I'll just change my password on the most important sites, anyways. I'll have to remember two then, though... Haha, Millionaire-problems, I guess :D


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: rokkyroad on August 08, 2014, 08:03:02 PM
I use lastpass and change my passwords regularly to new long randomly generated passwords.  I don't have to remember them lastpass does that for me.  So far, so good.

Lastpass is handy but I deleted my account. Anything sensitive online is double or triple encrypted.

I keep a copy of logins in the cloud but only in severely encrypted file formats. Not only do they have to hack my cloud provider; they need to defeat my personal encryption protocols. Yes, given enough time I'm sure they could obtain the data they have no idea is valuable or not.


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: cutepuppy on August 09, 2014, 01:05:04 AM
If they are charging that much to allow people to "find out" if their account was affected, there is a good chance that the group is just spreading FUD in order to get people to pay for their "service"


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: beetcoin on August 09, 2014, 02:11:56 AM
simple solution: go cold storage. even if this claim were true, there's no way they could get a PW from a computer that is not connected to the internet.


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: Omikifuse on August 09, 2014, 02:19:35 AM
simple solution: go cold storage. even if this claim were true, there's no way they could get a PW from a computer that is not connected to the internet.

Hot wallets are necessary, for example, to run business that accept bitcoin as payments, or exchanges. So the password issue is something that must be worked one


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: beetcoin on August 09, 2014, 02:43:42 AM
simple solution: go cold storage. even if this claim were true, there's no way they could get a PW from a computer that is not connected to the internet.

Hot wallets are necessary, for example, to run business that accept bitcoin as payments, or exchanges. So the password issue is something that must be worked one

most convert to cash, don't they? so bitpay would just send them USD almost instantly.


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: Vod on August 09, 2014, 02:44:13 AM
I use lastpass and change my passwords regularly to new long randomly generated passwords.  I don't have to remember them lastpass does that for me.  So far, so good.

Been using Lastpass for 2 years.  All my passwords are random and 15+ characters long.

All I have to remember is one password for my vault.


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: Omikifuse on August 09, 2014, 02:54:53 AM
simple solution: go cold storage. even if this claim were true, there's no way they could get a PW from a computer that is not connected to the internet.

Hot wallets are necessary, for example, to run business that accept bitcoin as payments, or exchanges. So the password issue is something that must be worked one

most convert to cash, don't they? so bitpay would just send them USD almost instantly.


Not all. Exchanges and bet sites that operate only with Bitcoins, like DiceBitcoin, need to have hot wallets to the withdraw requests.


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: Unluckyduck on August 09, 2014, 06:34:11 AM
Uhhh i thought the 1.2 billion accounts were just random email accounts that are not necessarily related at all to crypto


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: Gleb Gamow on August 09, 2014, 07:04:43 AM
Uhhh i thought the 1.2 billion accounts were just random email accounts that are not necessarily related at all to crypto

Looks like you only read the OP, bud.


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: counter on August 09, 2014, 09:11:48 PM
Guess it can't hurt to have a your passwords change on a somewhat random basis.  Maybe use a few different passwords and then change some on a schedule like every 50 days.  I know one thing their is no way I'd pay that amount to find out if I'm a in danger of not having my coins secure.


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: paradoxum on August 10, 2014, 09:08:33 AM
Guess I have to switch from aaaaaaaa to bbbbbbbb now  :'(


Title: Re: 87% of EVERY password associated with cryptocurrencies HAS BEEN Breached!
Post by: scarsbergholden on August 10, 2014, 09:43:51 AM
Guess it can't hurt to have a your passwords change on a somewhat random basis.  Maybe use a few different passwords and then change some on a schedule like every 50 days.  I know one thing their is no way I'd pay that amount to find out if I'm a in danger of not having my coins secure.

Screams of hustler / snake oil salesman to me. I'm pretty skeptical of this. Naturally, it's always best to have long random passwords and to change them regularly regardless.