Bitcoin Forum

Economy => Trading Discussion => Topic started by: Raoul Duke on February 14, 2012, 12:32:53 AM



Title: BTC-e COMPROMISED!!!! maybe...
Post by: Raoul Duke on February 14, 2012, 12:32:53 AM
Well, as seen in the portuguese forum (https://bitcointalk.org/index.php?topic=63764.0), http://btc-e.com was compromised and at least their user list was leaked, let's wait for the passwords...

http://pastebin.com/5jzUKnAL


Title: Re: BTC-e COMPROMISED!!!!
Post by: finway on February 14, 2012, 12:38:02 AM
holly


Title: Re: BTC-e COMPROMISED!!!!
Post by: locust on February 14, 2012, 12:42:21 AM
Maybe they use MD5 also.  ;D

Oh wait...


Title: Re: BTC-e COMPROMISED!!!!
Post by: Nachtwind on February 14, 2012, 12:47:53 AM
Waiting for Coinhunter to turn up to bring his typical "Ready for the downfall of bitcoin" rumors/lies whatnot.

No This wont affect Bitcoin.
Yes, this will affect altchains.
No, Passwords are not (yet?) leaked.


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: Raoul Duke on February 14, 2012, 12:49:58 AM
You can get a list of usernames just from going from

https://btc-e.com/profile/1 to https://btc-e.com/profile/4375

No proof. I call it FUD so far!


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: locust on February 14, 2012, 12:51:00 AM
Yep



Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: paraipan on February 14, 2012, 12:55:10 AM
someone seems very determined to drive the community moral down with all this staged attacks.

live chat on btc-e

Quote
gmaxwell: bulanula there is little evidence that anything is hacked.
majorminer: question
gmaxwell: s/little/none/ really.
gmaxwell: Someone could have made that user list by iterating https://btc-e.com/profile/1
majorminer: if btc goes to ..lets say 2$, which intern will drive the price of ltc up?
bulanula: ok
m3ta: there is only the evidence that it's easy to just scrape the fuck out of /profile/ and get a list of users. boo hoo. big deal.
bulanula: but still dodgy
gmaxwell: Whats still dodgy?
majorminer: anyone could clearify this for me?
bulanula: list of users no pass
gmaxwell: bulanula: anyone could generate that list trivally
m3ta: dude, even Facebook can be scraped to get usernames. so what?


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: bulanula on February 14, 2012, 12:58:28 AM
someone seems very determined to drive the community moral down with all this staged attacks.

live chat on btc-e

Quote
gmaxwell: bulanula there is little evidence that anything is hacked.
majorminer: question
gmaxwell: s/little/none/ really.
gmaxwell: Someone could have made that user list by iterating https://btc-e.com/profile/1
majorminer: if btc goes to ..lets say 2$, which intern will drive the price of ltc up?
bulanula: ok
m3ta: there is only the evidence that it's easy to just scrape the fuck out of /profile/ and get a list of users. boo hoo. big deal.
bulanula: but still dodgy
gmaxwell: Whats still dodgy?
majorminer: anyone could clearify this for me?
bulanula: list of users no pass
gmaxwell: bulanula: anyone could generate that list trivally
m3ta: dude, even Facebook can be scraped to get usernames. so what?

Now I am famous !?

I wasn't even trying to drive the price down. I just sold a mobo for 62.5 BTC and now that same amount is worth a LOT less with the price decrease from 5.6 to 5.2 so ...

I just want to see what has happened. No market manipulation here. I really got screwed by the price going down. :'(


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: paraipan on February 14, 2012, 01:05:43 AM
someone seems very determined to drive the community moral down with all this staged attacks.

live chat on btc-e

Quote
gmaxwell: bulanula there is little evidence that anything is hacked.
majorminer: question
gmaxwell: s/little/none/ really.
gmaxwell: Someone could have made that user list by iterating https://btc-e.com/profile/1
majorminer: if btc goes to ..lets say 2$, which intern will drive the price of ltc up?
bulanula: ok
m3ta: there is only the evidence that it's easy to just scrape the fuck out of /profile/ and get a list of users. boo hoo. big deal.
bulanula: but still dodgy
gmaxwell: Whats still dodgy?
majorminer: anyone could clearify this for me?
bulanula: list of users no pass
gmaxwell: bulanula: anyone could generate that list trivally
m3ta: dude, even Facebook can be scraped to get usernames. so what?

Now I am famous !?

I wasn't even trying to drive the price down. I just sold a mobo for 62.5 BTC and now that same amount is worth a LOT less with the price decrease from 5.6 to 5.2 so ...

I just want to see what has happened. No market manipulation here. I really got screwed by the price going down. :'(

you can take it as a man ? keep the coins, they don't ask for maintenance, because I'm preparing to get some cheap coins if you don't :P


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: pent on February 14, 2012, 03:05:28 AM
btc-e always impressed me as a group of slovenly people


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: gmaxwell on February 14, 2012, 03:14:33 AM
The fake compromise announcement earlier caused some careful inspection. Phantomcircuit believes he's found some actual severe vulnerabilities.  Bad day for BTC-E I guess.

Without knowing the details of all he found — I recommend staying logged on of BTC-E when you aren't using it, and only visiting it with a clean browser which is not concurrently viewing other sites.


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: btc-e.com on February 14, 2012, 07:51:00 AM
CSRF bug fixed. please clear your browser cache so you can trade/withdraw/chat


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: btc-e.com on February 14, 2012, 08:13:31 AM
CSRF bug fixed. please clear your browser cache so you can trade/withdraw/chat :)


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: sethsethseth on February 14, 2012, 08:36:50 AM
Stuff like this keeps happening and everyone still rushes to the hot new exchange with the crazy features.... *cough* bitcoinica....


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: terrytibbs on February 14, 2012, 08:40:31 AM
All the nonsense that is written above, the facts do not.
"This is nonsense, not facts, nonsense!"

CSRF bug fixed. please clear your browser cache so you can trade/withdraw/chat :)
"Fixed it lolz"


Title: Re: BTC-e COMPROMISED!!!! maybe...
Post by: btc-e.com on February 14, 2012, 12:53:59 PM
https://btc-e.com/news/59