Bitcoin Forum

Other => Meta => Topic started by: truthstalker on August 14, 2014, 08:11:31 PM



Title: Account Security
Post by: truthstalker on August 14, 2014, 08:11:31 PM
What is the best security protocols when it comes to this site? I've read a little about the recovery option and have seen that it's recommended to send the DefaulltTrust your Bitcoin address as early as possible.


Title: Re: Account Security
Post by: malevolent on August 14, 2014, 08:32:33 PM
What is the best security protocols when it comes to this site?

Trust no one, question everyone.

Things to watch out for:

social engineering - people following your posts and trying to impersonate the person you're trading with to trick you into sending them your precious bitcoins, their Activity level and post history should be a dead giveaway and yet there are still some that fall for this scam
malware - watch out which links you follow, and if you do, at least have java disabled in your browser; don't run software from unknown people, and even if it's from someone "trustworthy" it doesn't hurt to wait till a few other people try it out and post some feedback; ideally you should only be running open source software and at least skimming through the code to see if there isn't anything suspicious
scams - read my first sentence, not once, not twice, but at least thrice

I've read a little about the recovery option and have seen that it's recommended to send the DefaulltTrust your Bitcoin address as early as possible.

Yeah, that's the account. Just don't forget to keep your private key associated with that address in a safe place.

After sending the message, go to "Outbox", click on the subject of the message, and note down the number at the end of the URL (keep it in a safe place, too). Should you ever lose access to your account and are unable to recover it with your email, you'll PM one of the admins without forgetting to use the following template (https://bitcointalk.org/index.php?topic=497545.0), and they should help you regain access to your account.

So with this method will everyone who is on default trust receive your Bitcoin address? I should imagine that would get you blocked by a few people.

No, this is the account: https://bitcointalk.org/index.php?action=profile;u=122551
It's operated by theymos only, people on the Trust list of this account will not be getting any messages from you unless you decide to put them in the "To" or "Bcc" fields.


Title: Re: Account Security
Post by: RKZ72 on August 14, 2014, 08:37:09 PM
What is the best security protocols when it comes to this site? I've read a little about the recovery option and have seen that it's recommended to send the DefaulltTrust your Bitcoin address as early as possible.

Yeah, that's the account. Just don't forget to keep your private key associated with that address in a safe place.

After sending the message, go to "Outbox", click on the subject of the message, and note down the number at the end of the URL (keep it in a safe place, too). If you ever lose access to your account and are unable to recover it with your email, you'll PM one of the admins without forgetting to use the followingtemplate (https://bitcointalk.org/index.php?topic=497545.0).

So with this method will everyone who is on default trust receive your Bitcoin address? I should imagine that would get you blocked by a few people.


Title: Re: Account Security
Post by: Welsh on August 14, 2014, 08:47:29 PM
So with this method will everyone who is on default trust receive your Bitcoin address? I should imagine that would get you blocked by a few people.

No, you are sending to "DefaultTrust" the user which is a maintained by administrators of this site.

User: https://bitcointalk.org/index.php?action=profile;u=122551


Title: Re: Account Security
Post by: ropbat on August 14, 2014, 08:59:54 PM
What if you are using a online wallet (blockchain.info) where you don't have access to private keys? Maybe I should just make a new wallet on Bitcoin-qt just for this purpose.


Title: Re: Account Security
Post by: shorena on August 14, 2014, 09:21:10 PM
What if you are using a online wallet (blockchain.info) where you don't have access to private keys? Maybe I should just make a new wallet on Bitcoin-qt just for this purpose.

If your online wallet does allow signing messages you are fine. bc.i apparently allows this [1]

[1] https://bitcointalk.org/index.php?topic=180068.0


Title: Re: Account Security
Post by: MakeBelieve on August 14, 2014, 10:51:14 PM
Linux, Tor, and SSL? :)


Linux is a pretty good start but Tor is mainly for hiding ip otherwise you can achieve the same security features in normal browser.


Title: Re: Account Security
Post by: truthstalker on August 15, 2014, 07:28:28 PM
Thank you everyone for the wonderful advice, I'll take into account everything which has been said. I've already put it into practice by sending a message to user "DefaultTrust" and noting down the pm id in a safe place. Much appreciated, thank you.