Bitcoin Forum
May 24, 2024, 10:39:12 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
  Home Help Search Login Register More  
  Show Posts
Pages: « 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 [27] 28 29 30 31 32 33 34 35 36 »
521  Alternate cryptocurrencies / Announcements (Altcoins) / Re: Gridcoin (GRC) - first coin utilizing BOINC - Official Thread on: March 26, 2014, 05:42:30 PM
I still can't get any connections, just a heads up.
522  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][BETA][EXCHANGE][REALTIME] CoinEX realtime exchange on: March 26, 2014, 05:41:47 PM
They need to actually have the coins.

I still would like to know how they had the wallet server hacked and lost ALL their coins, yet are going to refund everyone. The value of what they held had to have been staggering.
523  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN] [eToken] Rare | Website 11 languages | New version -> mandatory update on: March 26, 2014, 05:44:09 AM
Need some nodes - cant sync the wallet for the exchange.
524  Alternate cryptocurrencies / Announcements (Altcoins) / Re: !<~~~~~[ANN] BatCoin! KGW Implemented - MANDATORY UPDATE [ANN]~~~~~>! on: March 26, 2014, 05:43:39 AM
Just added BatCoin to www.AllCrypt.com!
525  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN] [eToken]Important announcement eToken on: March 26, 2014, 05:27:06 AM
Trying to add to AllCrypt - no nodes available.
526  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][EXN] Exilecoin | A coin with purpose on: March 26, 2014, 03:38:22 AM
This coin alive at all? Its near the top of the voting list on AllCrypt.com but we're not adding dead coins.
527  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][REBORN] Dubstepcoin on: March 26, 2014, 03:36:50 AM
Is this coin active? I was about to add it to AllCrypt.com but then saw a notice that it's being relaunched  4/1/14 - but no info anywhere.
528  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][GRA] Graincoin - New PoW/PoS coin | Fast, secure | Version 1.5 Released! on: March 26, 2014, 03:32:07 AM
Graincoin added to www.AllCrypt.com/market?id=356
529  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][BETA][EXCHANGE][REALTIME] CoinEX realtime exchange on: March 26, 2014, 03:10:32 AM
Resolution of the AllCrypt.com hack.

CoinEx should take note of how these things should be handled by reputable exchanges.

And if anyone wants to have fun hunting down a hacker, we've got some good info in there to start looking, for internet sleuths better than me.

https://www.allcrypt.com/blog/2014/03/the-hack-the-resolution/
530  Alternate cryptocurrencies / Altcoin Discussion / AllCrypt.com wants to thank MintPal.com for their help in returning stolen coins on: March 26, 2014, 02:37:55 AM
All the details are here:

https://www.allcrypt.com/blog/2014/03/the-hack-the-resolution/

But in short - we were hacked. Diligence by Jay and Jason over at MintPal brought this to a happy ending. Thanks guys. Class acts. Finally some integrity in an exchange operator. We've seen way too little of that lately.
531  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][BETA][EXCHANGE][REALTIME] CoinEX realtime exchange on: March 25, 2014, 11:47:40 PM
As a reminder R3wt is the guy who's exchange has been hacked twice so far this year. Talk about the blind leading the blind.

Or the guy who's learned valuable lessons.
532  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][BETA][EXCHANGE][REALTIME] CoinEX realtime exchange on: March 25, 2014, 05:46:47 PM
to repeat what i told the "devs" of cryptorush:



You're partially right. We should only be sending cookies over HTTPS. But the rest isn't, and I'm not saying why, because publicly giving away how your system works is never a good idea. But I can confidently say, and I'm sure you'll laugh at me at this because I'm a "noob" or god knows what else, you could brute force that session ID all day and it'll get you absolutely nowhere.

533  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][BETA][EXCHANGE][REALTIME] CoinEX realtime exchange on: March 25, 2014, 04:47:59 PM

It will leave AllCrypt standing as a place people CAN trust.



you have to secure your sessions first.
And stop spamming this thread

That always works. Telling someone to "stop spamming a thread" has, historically, always worked.

I'll try, but no promises.
534  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][BETA][EXCHANGE][REALTIME] CoinEX realtime exchange on: March 25, 2014, 04:38:37 PM
I'm sorry but no. Thats complete and utter BS. I am stunned at how many people are supportive of a site that went dark, then you get fed tidbits of information, with NOTHING of substance, and yet still carry the banner.

If what you're saying is true, then at the MINIMUM he should post that he's been in contact with law enforcement, and his lawyers have advised him to stay quiet.

We were hacked on Friday. We've been back up for 2 days now. With information. And proof. No - we have not said ALL we know. Not until a few issues are resolved. But we said everything BUT that.

Why are you people just ok with no information and vague promises of something? Why? Why is that ok?

I dont understand why everyone here isn't up in arms and furiously pissed off.


A couple of reasons:

* if this is a scam, then most ppl (kids that go to school or adults having a day job) won't bother getting lawyers, complaining with the police etc,
because this will probably be a waste of time & money.

* if they are legit & really trying to refund the users then trolling won't really help

* most ppl know there is a risk element in any crypto investment and if the money is really lost then they accept it and move on, this game is really a matter of trust and taking risk

Only ppl that with substantial amount (several BTC) will actually bother in taking action and try to receive back their funds


I personally hope they will refund the accounts & I get my coins back.

I just think that the "oh well I took a risk" attitude actually ENCOURAGES people to set up an exchange, then take off and run with the money, because people say "Oh well, I took a risk."

If people DONT get angry - it will just keep happening.

Actually I hope it keeps happening. It will leave AllCrypt standing as a place people CAN trust.

535  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][BETA][EXCHANGE][REALTIME] CoinEX realtime exchange on: March 25, 2014, 02:51:48 PM
Yeah you need to be logged in. Kills the spam.

As for the color scheme we may add themes soon. I get a ton of "love the look of the site!" and quite a few "ZOMG SO UGLY GONNA DIE!" - so - cant please em all Wink

As for volume, absolutely. We're not even a month old yet. Had a ton of volume before the hack on friday. Obviously - that will hurt thigns til we get moving again.
536  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][BETA][EXCHANGE][REALTIME] CoinEX realtime exchange on: March 25, 2014, 02:23:16 PM
Yes, I feely admit that I'd love to have all of CoinEx's customers on my site. And there's nothing wrong with that.

But as a customer who also lost some coins there (nothing worth worrying about - I moved most to AllCrypt once the site went live) - and moreso as a site operator who believe in honesty and integrity - it REALLY pisses me off that he's been so shady about everything so far, and it baffles me that some people seem to be perfectly Ok with that.

I guess I just demand more from people.

And I agree - it is a great place to hang out and chat. I'd do it all the time. It's why a day or two after we launched we put in a Trollbox on the site - I personally missed chatting with the people on the site. Made it feel more... connected.
537  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN][BETA][EXCHANGE][REALTIME] CoinEX realtime exchange on: March 25, 2014, 01:39:37 PM

I would just like to point out, and i am not vouching for Erundook or captainfuture as i don't know either one well enough to do so, but when a hack like this occurs its necessary to be vague with the public. they might give to much a way and the hacker will panic and return to destroy the evidence. also, any lawyer would tell you to keep your mouth shut while the police will sort it out. unfortunately, in this case most police departments will do nothing about this, unless the amount was significant enough to get a state police cyber crime unit involved or the fbi cyber crime unit.



I'm sorry but no. Thats complete and utter BS. I am stunned at how many people are supportive of a site that went dark, then you get fed tidbits of information, with NOTHING of substance, and yet still carry the banner.

If what you're saying is true, then at the MINIMUM he should post that he's been in contact with law enforcement, and his lawyers have advised him to stay quiet.

We were hacked on Friday. We've been back up for 2 days now. With information. And proof. No - we have not said ALL we know. Not until a few issues are resolved. But we said everything BUT that.

Why are you people just ok with no information and vague promises of something? Why? Why is that ok?

I dont understand why everyone here isn't up in arms and furiously pissed off.
538  Alternate cryptocurrencies / Marketplace (Altcoins) / AllCrypt.com post-hack update and statement on: March 25, 2014, 01:30:01 PM
Sorry it's taken a little longer than I'd hoped to post this. This weekend was absurd in the amount of work we had to do to get the site back up and stable. We wanted to post this as things are nearing a final resolution.

What happened:

On Friday, March 21st, someone found an exploit on our site and used it to change the passwords of users, log in as them, and withdraw their funds.

What was lost:

After all accounting was done, only three users lost coins. A total of about 81k BTCS was taken, and 7.7 million KARM. One user had SLR sold for BTC in an attempt to withdraw that, but our BTC security kicked in and locked down all withdrawals, so nothing was lost.

What we did wrong:

We failed to secure a section of our website properly. Hackers are smart. Sometimes smarter than we are. They used an exploit that was possible because we had some errors in our code that did not properly validate the input before processing what was sent. This was used to change the passwords of some users.

What we did right:

Our BTC security kicked in and halted all withdrawals. It's how we avoided losing an attempted 15 BTC in withdrawals - the website accepted the withdrawals and passed them to the withdrawal daemon, which using security we're not about to explain (sorry hackers - no inside info here) left the withdrawals in a queue until it could be manually approved. A "BTC withdrawal issue/delay" notice was posted on the site to alert users that there would be a delay in processing their withdrawals. We immediately investigated the situation as it was further brought to our attention by a user who noticed pending BTCS withdrawals he did not initiate.

We hit the killswitch which disconnects the wallet servers and database from the network, and throws up the "Down, back soon" page.

A total of 12 accounts were logged into, and 4 were actually effected, before we stepped in and stopped the issue.

As soon as we could take a breath, we posted a notice in our blog and CC:ed it to Twitter and Facebook. Notice was posted within 2 hours of us knowing what happened. Later that night, another, more in-depth notice was posted. To let everyone know, and to be forthright and honest. Something we insist upon.

What we have done so far:

Over the weekend, all users who lost coins were contacted and the situation explained. We're in the process of attempting recovery of those coins, and by 10PM EDT on 3/25/14 we will have some reply as to that status.

We combed the code, line by line, three times, for other possible exploits. The problem that allowed the hack in the first place has been fixed. We saw no other possible holes. We also installed an extremely sensitive firewall system that watches the web server. At the first hint of non-normal traffic, the offending client is banned from the site through multiple means. White hat hackers who want to help find holes? Don't. You'll be banned with the very first hit you make that doesn't fit normal AllCrypt.com usage patterns. Again, I won't say we're hack proof, but we're 10x as stringent with security now.

What we plan to do going forward:

We've set up other watching systems and auditing which get reported to us multiple times throughout the day, so if in the event of another issue, we can stop it before anything else happens. Our firewall system banned 7 scans yesterday. Not sure if it was the original hacker trying again, or just routine web scans, but they won't be accessing the site.

We are committed to security and transparency. We want you to trust us, not out of some blind faith that we've seen lately for some other exchanges that have gone dark with nary an update and only vague promises, but because you know that we will act, swiftly. Our security is strong, and is now even stronger. And we pledge to communicate all we can as soon as we can.

In a way, I'm happy this break happened while we were so young. We'd only been open 3 weeks when it happened. It was a testament to our security that so little was lost, at how fast we reacted, and it helped us close a hole we didn't know was there. It helped us to tighten existing security.

No one wants to get hacked - especially days after making security statements like we have (Stating "No, we're not hack proof" - aah the irony!), but in a way, I am personally thankful, that the loss was so small, and that we are stronger than we were before.

About those lost coins:

Like I've alluded to before - something is in the works regarding those lost coins. I've pledged an answer of some sort by 10PM tonight. Stay tuned.



For the full story, see our blog at http://www.AllCrypt.com/blog
539  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN] Tigercoin - TGC | SHA256 with Super Random Blocks | Please Upgrade to V1.1 on: March 25, 2014, 03:06:30 AM
Tigercoin has been added to www.AllCrypt.com
540  Alternate cryptocurrencies / Announcements (Altcoins) / Re: [ANN] Velocitycoin- Client Update 1.2.0- Important Update Immediately on: March 25, 2014, 02:43:43 AM
We need a github source if you want this coin on AllCrypt.com

The git is not updated.

Contact me when it is - I'm not spending time hunting down every coin that cant bother to be on an exchange.
Pages: « 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 [27] 28 29 30 31 32 33 34 35 36 »
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!