Bitcoin Forum
May 04, 2024, 06:51:48 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
  Home Help Search Login Register More  
  Show Posts
Pages: [1]
1  Economy / Services / Buy VPS by Lightning Network on: August 19, 2019, 10:52:40 AM
I wanted to show you my new project.

Buy Virtual Private Server using Lightning Network payments. Very fast and cheap VPS. We issue VAT invoices after purchase.

Buy without registration. Without creating an account. Simple and quick purchase!

https://ln-vps.remoteadmin.store/

2  Economy / Digital goods / VPS for Bitcoin or other crypto on: July 30, 2019, 12:35:01 PM
If you need VPS, you can pay for it with BITCOIN.  We sell a lot of VPS all the time at good prices. If there is interest in my offer, then hesitate to have an exact price list converted to USD.
If you are interested, write in a thread or in a private message.

We sell for bitcoin BTC:
- VPS Linux/Windows  (with the latest operating systems, SSD/HDD)
- system administrator's care service (for people who can not manage VPS themselves, people who can not install their own services/daemons e.g. Apache, MysQL, TOR, VPN etc.)
- encrypted data backup


We have a professional data center in Poland. We have IP addressing from Poland, Romania, England and the Czech Republic.

We do not sell this service online (no bitcoin payment). Only after personal contact with me (bitcoin accepted).

We have very good prices. VPS start time - usually up to 24 hours from the order.

We have many years of experience. Our company deals with servers, administration and penetration tests.  Cool
3  Alternate cryptocurrencies / Marketplace (Altcoins) / VPS for Bitcoin or other crypto on: July 30, 2019, 12:18:03 PM
If you need VPS, you can pay for it with BITCOIN.  We sell a lot of VPS all the time at good prices. If there is interest in my offer, then hesitate to have an exact price list converted to USD.
If you are interested, write in a thread or in a private message.

We sell for bitcoin BTC:
- VPS Linux/Windows  (with the latest operating systems, SSD/HDD)
- system administrator's care service (for people who can not manage VPS themselves, people who can not install their own services/daemons e.g. Apache, MysQL, TOR, VPN etc.)
- encrypted data backup


We have a professional data center in Poland. We have IP addressing from Poland, Romania, England and the Czech Republic.

We do not sell this service online (no bitcoin payment). Only after personal contact with me (bitcoin accepted).

We have very good prices. VPS start time - usually up to 24 hours from the order.

We have many years of experience. Our company deals with servers, administration and penetration tests.  Cool
4  Bitcoin / Bitcoin Discussion / Re: Where do you store your crypto on: July 30, 2019, 12:03:53 PM
Only bitcoind Smiley or a hardware wallet. Somehow I do not trust all this modern wallet.
5  Bitcoin / Bitcoin Technical Support / Re: [bitcoind] several bitcoind instances with one blockchain on: January 04, 2019, 07:34:59 PM
from what he writes on the page you link I will have the same port and the same login and password for rpc, and I want to have separate instances. Separate RPC
6  Bitcoin / Bitcoin Technical Support / [bitcoind] several bitcoind instances with one blockchain on: January 04, 2019, 06:58:08 PM
hi,
I wanted to give my server users the ability to run their own bitcoind instances without the need to duplicate the downloaded blockchain for each of the bitcoind instances.
I want to save space on HDD in this way. We need to have 10 bitcoind instances (each user has his own wallet.dat). I can run bitcoind on other ports but I do not know how to make him use one blockchain. The datadir parametr does not help.

is it possible what he wants to do? or is there any other way? Huh
7  Economy / Service Announcements / Penetration tests / security tests for your service for my PERSONAL TOKEN on: September 18, 2018, 08:55:00 AM
Every responsible CEO knows how important it is to conduct penetration tests. I wanted to offer my services to project owners

I have been doing penetration tests for several years now. I'd like to join as an ethical hacker for the project - a project that needs to confirm its security.

My specialization:
- security tests for web applications (ico websites, exchanges etc)
- security tests for mobile applications (app <-> API <-> server environment)
- security / server configuration tests (mainly Linux)
- mobile apps

I have extensive experience in testing the security of projects related to cryptocurrencies.
I did penetration tests for:
- many cryptocurrency exchanges
- operating systems for mining cryptocurrencies
- marketplaces for cryptocurrencies
- tools for trade automation
- several applications related to cryptocurrencies ( https://www.pastecoin.com/bug_bounty  - look Wall of Fame)
- websites of ICO projects

What I could write in public (usually clients do not allow me to publish the results of my work):

https://bitcointalk.org/index.php?topic=2028376.msg20204414#msg20204414

A few days ago I was tokenized. You can now buy my services and pay me cheaper in my token (SECUREMB).
Please look website of my token https://www.personaltokens.io/securemb
 
8  Alternate cryptocurrencies / Altcoin Discussion / Re: Launching new ICO on: September 18, 2018, 08:40:07 AM
Have you already done penetration tests? if not I will be happy to help you  Cool

I have been doing penetration tests for several years now. I'd like to join as an ethical hacker for the project - a project that needs to confirm its security.

My specialization:
- security tests for web applications (ico websites, exchanges etc)
- security tests for mobile applications (app <-> API <-> server environment)
- security / server configuration tests (mainly Linux)

I have experience in testing cryptocurrency exchanges and similar projects.

I have already managed to break the exchange hedges several times. 'Steal customer data', access the exchange source codes or access wallets or their APIs.

I deal only with legal work ordered by project owners.


https://bitcointalk.org/index.php?topic=2028376.msg20204414#msg20204414
https://www.personaltokens.io/securemb
9  Alternate cryptocurrencies / Service Announcements (Altcoins) / Re: Amint.io Crypto Currency Exchange on: September 18, 2018, 08:32:26 AM
Have you already done penetration tests? if not I will be happy to help you  Cool

I have been doing penetration tests for several years now. I'd like to join as an ethical hacker for the project - a project that needs to confirm its security.

My specialization:
- security tests for web applications
- security tests for mobile applications (app <-> API <-> server environment)
- security / server configuration tests (mainly Linux)

I have experience in testing cryptocurrency exchanges and similar projects.

I have already managed to break the exchange hedges several times. 'Steal customer data', access the exchange source codes or access wallets or their APIs.

I deal only with legal work ordered by project owners.


https://bitcointalk.org/index.php?topic=2028376.msg20204414#msg20204414
https://www.personaltokens.io/securemb
10  Bitcoin / Project Development / Re: Penetration Tester / Ethical Hacker - I would like to join the project ^^ on: July 31, 2018, 08:09:47 PM
Thanks for the information. For clarification, I'm not interested in public competitions. I am interested in work for the project. Penetration tests involve checking many things, not just one task.
11  Bitcoin / Project Development / Re: Automated trading platform - Early adopters & smart ideas needed on: July 31, 2018, 07:55:03 PM
I created a similar tool for automating trade but pre-eminent with a common customer account on the stock market. This is, of course, a matter of trust, but thanks to this we have the opportunity to reduce the commission on such large stock exchanges as Poloniex or Binance. This tool is free and you can see it here https://www.at.systems/ - Do you do something similar?
12  Bitcoin / Project Development / Penetration Tester / Ethical Hacker - I would like to join the project ^^ on: July 31, 2018, 06:51:43 PM
I have been doing penetration tests for several years now. I'd like to join as an ethical hacker for the project - a project that needs to confirm its security.

My specialization:
- security tests for web applications
- security tests for mobile applications (app <-> API <-> server environment)
- security / server configuration tests (mainly Linux)

I have experience in testing cryptocurrency exchanges and similar projects.

I have already managed to break the exchange hedges several times. 'Steal customer data', access the exchange source codes or access wallets or their APIs.

I deal only with legal work ordered by project owners.

I will be  happy to help you with an interesting open source project for free.

If anyone would like my help, please let me know Smiley

I do not publish a lot of information in English, but here one of them confirms my words above.
https://bitcointalk.org/index.php?topic=2028376.0



13  Other / Off-topic / How we HACKED cryptocurrency exchange on: July 18, 2017, 06:16:16 AM
Our company  provides services for more and more businesses involved in the global market of cryptocurrencies such as Bitcoin, Litecoin or Ethereum. It has been developing rapidly as a branch of the financial market. The total capitalisation of digital currencies is estimated at 30 billion dollars. It’s a very tempting target for cybercriminals can become rich instantly without even leaving their homes.

Beatcoin.pl is an online stock exchange of popular cryptocurrencies whose owners requested a penetration test from us before they entered the actual market. It only proved the maturity of the company’s management and the urge to provide the highest safety standards.

Our team, experienced in penetration tests on cryptocurrency stock exchange, currency exchange and other FinTech businesses, realised the main goal of people who attempt to hack such a stock exchange. They want to access wallets containing cryptocurrencies in order to steal from them.

The client provided us with the stock exchange URL and the access to mock user accounts.

We started from a reconaissance which let us gain the real IP address of the stock exchange server from a couple of locations within the system. Then we managed to directly connect to the server, without the necessity of using an original Internet domain protected from DDoS and application attacks by CloudFlare and application firewall (WAF).

Thanks to this operation we came across a number of minor issues in the client’s application, e.g. Cross-site scripting (XSS), Cross-site request forgery (CSRF), Full Path Disclosure, and access to admin panel as well as the database. We weren’t able to log into obtained admin panels and the described errors would let us attack mostly the clients of the stock exchange, but not the application itself. We focused not on attacking admins but on the stock exchange itself.

After a couple of days we found an SQL Injection attack in one of the HTTP headings sent to the server. This attack enabled us to access the database. Thanks to this, we were able to collect information about the stock exchange’s users, change our status and buy bitcoins.

However, stealing this way wouldn’t be possible thanks to a high security level. The owners implemented a safety procedure that obliged the stock exchange’s employees to verify and manually confirm every account withdrawal. What we attempted to do would immediately alarm the employees and such a withdrawal wouldn’t be confirmed.

Of course, the SQL Injection’s critical vulnerability is extremely dangerous. We could download the users’ profile data (login, password), then try to break it and log into the accounts of selected users. Unfortunately, we didn’t know what was the secret sauce in the password protection system.

After next couple of days’ work we managed to make the server send not only result files (HTML, JS) but also source files which let us copy practically all sources of the whole cryptocurrency stock exchange. One of such files included access to cryptocurrency wallets - our mission was accomplished. Every hacker attempting to attack the stock exchange would have it done at that very moment. Stealing the funds proved possible and, apart from gaining access to cryptocurrency wallets, our team was able to reach the wallets of payment gateway providers - quick money transfers and SMS.


At that moment we had it all: the sources of the stock exchange the owners had been developing for months, the access to cruptocurrency wallets and payment gateway providers’ accounts. If we were criminals, we would be able to illegally get rich or launch an identical stock exchange platform without spending a penny on it - we could simply steal the effect of a couple of months’ work from the founders.

Obviously, we haven’t withdrawn any money from the hacked accounts. Instead, we informed the client about the test results. The owners corrected discovered vulnerabilities and asked us to perform a penetration test one more time so that they could be sure the platform is secure.

Being aware of the importance of software safety and potential threats as well as an obligation to protect sensitive data, the company management proved their business maturity. It’s a business safety requirement any entrepreneur can afford, no matter the size of the organisation.

Our work for the FinTech industry show that such issues occur very often in the organisations for which we perform penetration tests. A couple of weeks earlier we also managed to access the wallets of other cryptocurrency stock exchange and Bitcoin exchange.

Everything we do is always compliant with the law. We never attack servers without a specific request from the client. Our goal is to improve the system’s safety.

We would like to congratulate the beatcoin.pl clients for choosing a stock exchange run by people who put safety in the first place.

source: https://zdalnyadmin.com.pl/blog/2017/07/13/jak-wlamalismy-sie-na-gielde-kryptowalut/
Pages: [1]
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!