1501
|
Alternate cryptocurrencies / Altcoin Discussion / Re: ** Official ** Cryptsy funds are safe and secure
|
on: June 26, 2013, 12:48:08 AM
|
Incapsula is the correct entry. That is our new security service.
BigVern
Ok, but your cryptsy.co, is not valid for their certificate. www.cryptsy.com uses an invalid security certificate. The certificate is only valid for the following names: incapsula.com , *.aguasandinas.cl , *.aldimobile.com.au , *.alyn.org , *.api.sell-n.com , *.astabis.com , *.b54.com , *.bancdeswiss.com , *.banggood.com , *.bank54.com , *.careyou.com.au , *.chc.com.sg , *.e-c.co.il , *.empireoption.com , *.epaydataonline.com , *.forexmagnates.com , *.gcmforex.com , *.grouploop.com , *.hallmarkinstantstreaming.com , *.hallmarkspiritclips.com , *.ioption.com , *.kaboodlehq.com , *.kaboodlepilot.com , *.liderforex.com , *.manage.cm , *.minit.com , *.my.truck-n.com , *.ordertickets.ca , *.partitionhost.com , *.paycall.co.il , *.pinklily.com.au , *.rushmorebingo.com , *.servertastic.com , *.smarttradefx.com , *.spicy.com.br , *.stormbattle.net , *.tamuvu.com , *.traderush.com , *.traderxp.com , *.videntfinancial.com , *.vipbinary.com , *.winoptions.com , *.xfcu.org , *.yakitome.com , *.zenobiajewellery.com , aldimobile.com.au , alyn.org , api.sell-n.com , astabis.com , b54.com , bancdeswiss.com , banggood.com , careyou.com.au , chc.com.sg , cp.truststream.co.uk , elpmultimedia.com , empireoption.com , epaydataonline.com , forexmagnates.com , gcmforex.com , hallmarkinstantstreaming.com , hallmarkspiritclips.com , ioption.com , kaboodlehq.com , kaboodlepilot.com , liderforex.com , manage.cm , minit.com , my.truck-n.com , ordertickets.ca , partitionhost.com , paycall.co.il , pinklily.com.au , recettage.ria.neopod.fm-ged.com , redcappi.com , rushmorebingo.com , servertastic.com , smarttradefx.com , spicy.com.br , stormbattle.net , tamuvu.com , traderush.com , traderxp.com , videntfinancial.com , vipbinary.com , winoptions.com , www.e-c.co.il , www.elpmultimedia.com , www.homologpedidos.sodexho.com.br , www.redcappi.com , xfcu.org , yakitome.com , zenobiajewellery.com (Error code: ssl_error_bad_cert_domain) ~nh Wow, is this real? They are using one SSL certificate for all of their customers which simply includes a giant list of all the domain names, meaning every customer could impersonate every other? So banggood.com can just MITM cryptsy.com if they manage to mess with their DNS records for example. Not sure if this is a CDN requirement or something but it does sound kinda shitty to me... We are on a temporary certificate until a new one is generated for the new security provider. Wait until its in place.
|
|
|
1504
|
Alternate cryptocurrencies / Altcoin Discussion / Re: ** Official ** Cryptsy funds are safe and secure
|
on: June 25, 2013, 10:08:53 PM
|
Chrome just gave me a warning message when I tried to access cryptsy stating that the server was identified as secure.4rx.com. What's the deal with that?
SSL is down SSL requests not supported for www.cryptsy.comThe site is not configured with SSL support. It is not down, it is serving an invalid SSL certificate issued to an unrelated entity (secure.4rx.com) which might indicate a quite serious man-in-the-middle attackwww.cryptsy.com resolves to IP 166.78.0.180 Rackspace Hosting, Texas secure.4rx.com resolves to IP 199.83.132.157 Incapsula, Delaware Nobody should try to login even if the site comes back until this is fully resolved UPDATE: now www.cryptsy.com also resolves to IP 199.83.132.157 Incapsula, Delaware Seems like Incapsula.com offers some DDoS protection and general web security and cryptsy.com just put them in front of their site? So at least not a MITM attack but possibly just some Incapsula fuckup Please confirm BitJohn still wading through details Ill have vern give the whole write up once the madness is over for now just wait for an official we are up before logging in
|
|
|
1505
|
Alternate cryptocurrencies / Altcoin Discussion / Re: ** Official ** Cryptsy funds are safe and secure
|
on: June 25, 2013, 09:56:27 PM
|
Chrome just gave me a warning message when I tried to access cryptsy stating that the server was identified as secure.4rx.com. What's the deal with that?
SSL is down SSL requests not supported for www.cryptsy.comThe site is not configured with SSL support. It is not down, it is serving an invalid SSL certificate issued to an unrelated entity (secure.4rx.com) which might indicate a quite serious man-in-the-middle attackwww.cryptsy.com resolves to IP 166.78.0.180 Rackspace Hosting, Texas secure.4rx.com resolves to IP 199.83.132.157 Incapsula, Delaware Nobody should try to login even if the site comes back until this is fully resolved Yes please wait until we confirm that our servers are back online.
|
|
|
1514
|
Alternate cryptocurrencies / Altcoin Discussion / Re: cryptsy and bter.com down? DDoS?
|
on: June 25, 2013, 07:41:45 PM
|
We are currently having an issue with our service provider and our public IP space. All servers are functioning fine, all accounts are secure and all fund are safe. As soon as our providers fix the issue we will be back online. Thank you.
This is what happens when you use AOL j/k "We've got trades!"...............just not right at the moment haha
|
|
|
|