Bitcoin Forum
September 17, 2024, 09:52:09 AM *
News: Latest Bitcoin Core release: 27.1 [Torrent]
 
  Home Help Search Login Register More  
  Show Posts
Pages: « 1 ... 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 [209] 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 ... 1398 »
4161  Economy / Service Discussion / Re: Mixin Safe (Decentralized Multisig+MPC+Timelock solution) review preperation on: July 19, 2023, 04:37:38 PM
I edited my application earlier, but it's better to post my question here:
It looks like I'll have to install an app on a smartphone. I prefer a website for several reasons:
1. Smartphones are inconvenient to use for finances.
2. I can't easily use a VM or wipe my smartphone.
3. I don't want to install VPN software on my smartphone.
4. I never install unknown software on my devices.

If I can review without a smartphone, I'll gladly apply. If not, my review ends with "I'll never use such a service". I don't even install software from my bank.
On second thought: I can experiment with Mullvad VPN on an old tablet, and wipe it afterwards. It won't run very smooth, but it should work. Still, I prefer a desktop computer for anything other than "coffee money".

you may use some phone number services on the Internet to get a random phone number just for a single SMS. Then you can begin the test, just you know that you may lose the account access because you don't own the random phone number
Does that mean someone else can access my account just by accessing the same phone number?
4162  Bitcoin / Legal / Re: First Criminal Case Involving Attack on a Smart Contract Operated by DeX on: July 19, 2023, 11:32:13 AM
"#PeckShieldAlert In H1 2023, there are 395+ major hacks (386 DeFi related) in Web3 space, leading to ~$479.4m loss."
"The future of finance". And people keep falling for it.
4163  Other / Beginners & Help / Re: How is sending bitcoin through a QR-code safe ? on: July 19, 2023, 08:56:04 AM
This attack could just as well have happened by email. The main problem isn't the QR-code, the problem is giving a phone access to a bank account that can send $20,000.
Here, banks are more and more moving towards mobile usage. Until now, I've been able to avoid it, but they're replacing more and more dedicated hardware devices by a code on an app. It's cheaper for the bank, but they sacrifice security for convenience.
4164  Bitcoin / Bitcoin Technical Support / Re: Fake Transaction Input on: July 19, 2023, 08:48:57 AM
for exemple I have a BTC wallet with 0.00001 BTC and I just want to send 0.00001 to another wallet in order to this wallet just see the incoming transfer but I want it to get rejected by blockchain, like a fake node input on blockchain, is it possible?
I've seen this in the past: it was possible to make blockchain.info show transactions that didn't exist anywhere else, and would never confirm. But that's a bug/exploit on the website, not on Bitcoin.
What are you trying to accomplish?
4165  Bitcoin / Development & Technical Discussion / Re: Measuring the randomness of a seed phrase on: July 19, 2023, 08:28:15 AM
Strings which look random may not be at all
How about 9428367110839506348425063820855586539232765? Looks random, right? Except that it's part of the first million decimals of pi.

The same with seed phrases: you can create one based on a Shakespear book. The seed will look random, but it's created deterministically. You can only tell it's not random once you find the source.
4166  Bitcoin / Development & Technical Discussion / Re: Generating private keys on USB flash drive bootable Linux on: July 19, 2023, 08:11:23 AM
It's advised for BTC private keys to be generated on an offline machine (that never gets connected to the internet) for maximum security. But what would be a good alternative when you don't have an offline machine?
That's what I used to do: reboot from Linux Live DVD, and work offline. But it became annoying and time consuming to leave my normal system and reboot several times (for instance because of an incompatible Electrum version or too low transaction fees when signing offline). I now have a spare laptop for this, which makes it a lot easier.
The laptop doesn't have to be brand new, any cheap second hand laptop will do after you wipe it. Just make sure it has enough RAM, it's nice to be able to boot Knoppix "toram" and work without the (external) DVD drive.

True, I would add more: you can generate some master private key once, and then store only your public key on your online device. Then, you could generate new keys, without accessing your private key at all.
That introduces another risk factor: if your public key gets changed, you're funding someone else's Bitcoin addresses.

Sure, getting offline machine would be the most sensible way, but when you don't have a spare device lying around, buying a used one just to create one address to store not very significant amount of btc seems like an overkill.
The way I see it: a second hand laptop costs about the same as a new hardware wallet.
4167  Other / Meta / Re: Rant on Tor on: July 19, 2023, 07:31:35 AM
Of course, and I'm sure theymos is more than capable of generating a suitable .onion address. Just pointing out it is easily done.
Reading into this, I realize there will be more complications. For instance, I often link to a topic by using an absolute URL instead of a relative URL (update: and even relative links get stored as absolute links after posting). All those links need to be replaced to avoid sending users from the .onion forum to the clearnet forum. The image proxy should also get a .onion entry.
Unfortunately, it's not as straight forward as I initially expected.
4168  Bitcoin / Bitcoin Technical Support / Re: [Jul 2023] Fees are low, use this opportunity to Consolidate your small inputs! on: July 19, 2023, 07:07:12 AM
Bump: 4.1 sat/vbyte should be enough for a fairly quick confirmation now. Just make sure to enable RBF, in case fees go up again and you can't wait.
4169  Other / Meta / Re: Rant on Tor on: July 19, 2023, 06:30:20 AM
I think 16 random strings is the minimum (up to 56)
The shorter v2 addresses can't be used anymore, now 56 characters (v3) is the default.

I've just generated the following, which theymos can have for free. Smiley

btctalkhfmnva2746gkwhsxpirz3w7bu3ocut7uzjlszsxlou4naruyd.onion
As always: "not your keys, not your coins address" applies here too.
4170  Economy / Reputation / Re: Ratimov - prove yourserlf at least the plagiarism accusation on: July 18, 2023, 03:05:12 PM
The Pharmacist 63 times and The Sceptical Chymist 4 times that's a total of 69 times, not sure it would be enough for a monthly Pornhubs premium sub  Grin
You know what they say: "the wish is the father of the thought". 63+4=69 Cheesy Lol.
4171  Other / Meta / Re: Is there an API on bitcointalk? on: July 18, 2023, 02:00:05 PM
Since another member advised me not to get involved in reputation boards
No one should take away your freedom. There is no restriction in the forum, you can contribute anywhere you wish.
It's (obviously) not forbidden, but as a Newbie, I stayed away from any Reputation drama. Bitcointalk looked like a scary place where users got tagged for the smallest things they did. Staying out of that is what earned me the nickname "Switzerland".
4172  Other / Meta / Re: [CHARTS] Brief monthly overview of the local boards activity on: July 18, 2023, 01:55:46 PM
I find it annoying when you mention a lot of people unnecessarily.
I just use one notification bot, made by LoyceV. you can just make the bot ignore users that you find annoying  using it.
Even easier: you can just ignore certain topics.

I don't think users should adjust their posting behaviour for people who use a notification bot. Bots should adjust to posts, not the other way around.
4173  Bitcoin / Wallet software / Re: Securing Your Seed Phrase with Washers on: July 18, 2023, 01:46:38 PM
Secondly what if you throw away your see because it was too week concealed amongst all those boxes?
Some people never throw anything away Wink That only works if you don't buy too much unnecessary stuff, otherwise you'll turn into a hoarder. I'd say a box in a garage is a good place, usually those places store decades worth of items that "may come in handy some day", so it doesn't stand out.



The biggest risk is probably someone going through old junk looking for a few washers to fit something.
4174  Other / Beginners & Help / Re: How to lose your Bitcoins with CTRL-C CTRL-V on: July 18, 2023, 12:42:16 PM
How about Duckduckgo?
That's a search engine, not a browser.
Never mind, it's a browser too nowdays! I learned something new Smiley But it's a Windows beta, so not really useful for the rest of us.
4175  Other / Beginners & Help / Re: How to lose your Bitcoins with CTRL-C CTRL-V on: July 18, 2023, 12:19:53 PM
My mistake at that time was trying to install some video editor from an unofficial link and using crack.
I'm sure you've discovered it by now, but you should never run pirated software on any system that should remain secure. Even better if you can find an open source alternative for it.

Chrome is provably awful in every way, from being filled with spyware, to insecurely storing passwords
I was flabbergasted years back, when I discovered Chrome "conveniently" uploaded all my stored passwords to Google.
4176  Other / Meta / Re: Rant on Tor on: July 18, 2023, 07:04:49 AM
I'll quote myself here: Can the forum get a .onion domain for Tor users? That doesn't stop DDOS entirely, but at least it leaves an option without Cloudflare.
4177  Other / Beginners & Help / Re: How to lose your Bitcoins with CTRL-C CTRL-V on: July 18, 2023, 06:48:34 AM
No operating system is completely safe and no operating system that can not be hacked. Probably what LoyceV means is that the chance of having such malware on Linux is low. Linux is also completely open source.
Correct. Windows has been "the place to be" for malware for decades. Last year, 95% of all malware targeted Windows, even though it's market share is only 30% nowadays.

Are you saying that if I don't use windows the chances of this copy/paste hack is zero? For example lets say I own a Mac laptop, am I safe from this attack?
Thinking you're safe would be the biggest mistake. It's a lot safer, but even if it's a lot smaller, there's always a risk. So assume you're not safe, and act accordingly.
4178  Other / Meta / Re: This member should be banned: Rosemar41 on: July 18, 2023, 05:50:35 AM
Is there any means to properly helps new users understand the rules and regulations of this forum?
There is, if they're willing to read it.

Quote
What i will suggest is that as soon a user sign up on the forum the next message they should see as a pop-up messages
See Writing a welcome message, which hasn't been implemented in 5 years.

Quote
I believe if him or she is ban she may not know his offense of getting ban.
I believe that spammers like this aren't here to contribute anything to Bitcointalk. They can't be helped by showing them the rules, they can only be banned. It's common internet netiquette not to spam on any forum.
4179  Other / Beginners & Help / Re: I want to begin my journey on: July 17, 2023, 02:25:27 PM
And how safe is it to use Bitcoin Core in pruned mode? In this case, you have to download only 6GB of data. Bitcoin Core website says that you aren't sacrificing any security by enabling pruning.
Pruning without sacrificing security means you'll have to download about 500 GB, it just takes only 6GB on disk. And indeed, as far as I know that is as safe as running a full node.

Quote
So, if I enable pruning and create a bitcoin transaction, will my IP be revealed to other nodes?
Yes. But your node could just as well be broadcasting someone else's transaction.
4180  Bitcoin / Legal / Re: First Criminal Case Involving Attack on a Smart Contract Operated by DeX on: July 17, 2023, 01:18:12 PM
AHMED carried out an attack on the Crypto Exchange by exploiting a vulnerability in one of the Crypto Exchange’s smart contracts and inserting fake pricing data to fraudulently cause that smart contract to generate approximately $9 million dollars’ worth of inflated fees
This has been the problem with "smart" contracts ever since Ethereum's DAO "hack": the contract isn't as smart as they want you to believe, and the users don't even understand how it works.

Quote
AHMED was a senior security engineer for an international technology company whose resume reflected skills in, among other things, reverse engineering smart contracts and blockchain audits, which are some of the specialized skills AHMED used to execute the attack.
With normal contracts, you have to be a lawyer to fully understand what's in there. With smart contracts, you need to be a security engineer to understand it.
That's ironic: the sole purpose of a smart contract was be to make it trustless. If it's trustless, fraud wouldn't be possible.

As a user, I stay away from "smart" contracts. Don't send your money into something you don't fully understand!
Pages: « 1 ... 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 [209] 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 ... 1398 »
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!