Bitcoin Forum
May 14, 2024, 07:10:22 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
  Home Help Search Login Register More  
  Show Posts
Pages: « 1 2 3 4 5 6 7 8 9 10 11 12 13 [14] 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 ... 384 »
261  Bitcoin / Hardware wallets / Re: How to connect a hardware wallet directly to Bitcoin Core? on: February 04, 2024, 03:17:53 PM
Any hardware wallet that works with PSBT / BIP-174 will work.
But, is it really worth it to just though all the hoops to get it to work.

There are other easier ways to do it. Better ways? Tough call. Easier ways? Yes.

-Dave
262  Economy / Reputation / Re: What happens if someone sells an account on a neighboring forum? on: February 04, 2024, 02:41:10 PM
IMO it's a who cares. What you, or someone pretending to be you, at ANY other forum does not matter.

Here regulates here and there regulates there. Lets assume I setup an account someplace else and I teleport my account there.
And never use it. And then for whatever reason it gets compromised. That account then does bad things.
But...I never used it and I don't care. Why should that matter to me here. If I then go in and remove the proof here that it was me there what does it matter?

Because:

1) The account was compromised and is was not me so who cares.
2) It was not compromised and it WAS me, but you can't prove it.

Either way, it's a there problem not a here problem.

-Dave

263  Bitcoin / Development & Technical Discussion / Re: Starting a Bitcoin Node using a VPS on: February 04, 2024, 01:46:48 PM
Since the cost does not include enough space for a full node how much does it cost to go to 1TB for storage?
It's not much work to do a quick pre-install of BTC and then bill you at a profit for bandwidth overages and storage overages.

Remember, most if not all hosts give you X bandwidth and even if you are doing your initial sync from a local node to your local node and never touching the internet that bandwidth still counts against your monthly total.

If you have the bandwidth at home or wherever, I have been doing these for people:
https://www.amazon.com/dp/B0C7GKG3PZ/ref=syn_sd_onsite_desktop_0?ie=UTF8&pd_rd_plhdr=t&aref=akpWrBFv5f&th=1
take out the 512GB drive that comes with it and put in a 1TB. For under $250 you have a NEW machine that does not pull too much power that can more then then run a node + electrum server and a LN server if you want.

-Dave
264  Bitcoin / Bitcoin Discussion / Re: The Bitcoin Community is a Sybil Attack On Bitcoin on: February 04, 2024, 01:37:16 PM
for those that dont know traincarwreck. ill translate

nashy nash, nash, Nash!...Nash?

Odd, I got blah, blah, blah, blah, blah when I ran it though my translator.

What's funny is that it's posted on github so you can open issues on it, but I don't want to use my main git account and am too lazy to crate another one just to do it.

Either way, does not matter, it's just junk.

-Dave

265  Bitcoin / Project Development / Re: Could you benefit from your own self hosted crypto balance API? on: February 03, 2024, 04:11:34 PM
The main question is what is going to be different then all the other open source block explorers out there that you can just run quite easily yourself?
https://github.com/janoside/btc-rpc-explorer
Has a good API and does a lot in a VERY small footprint.
Not the fastest but for doing it yourself for your own private use or small business it's fine.

-Dave
266  Bitcoin / Development & Technical Discussion / Re: If Someone Sends Funds to a Previously-Used Address, Will I Still Receive it? on: February 01, 2024, 02:59:57 PM
Just to tag on, there are some ONLINE CUSTODIAL services THAT YOU SHOULD NOT BE USING that only allow 1 transaction per address.
If you (or anyone) send anything else to that address then they keep it. Full stop.

Just a heads up on that. Not your keys, not your coins.

Never ever give out addresses that you do not have the private keys to. Paying 100 extra TX fess because all coins come into your control before you send them elsewhere is better then loosing that 1 TX because oops, that address is no longer valid.

Same with you sending out of exchanges to someplace else. Exchange -> you -> wherever. Or you can wind up having this happen to you: https://bitcointalk.org/index.php?topic=5476264.0

-Dave
267  Economy / Goods / Re: ANON lockers for delivery and forwarding on: January 28, 2024, 02:26:20 PM
Something like this?
https://www.mailboxde.com/
or this
https://www.businesspalma.com/en/mail-drop-spain/

There are a bunch of them but are all separate so it's not like you can get 1 and get an address in 5 countries.

Probably better anyway in terms of privacy to have a different company in each country.

-Dave
268  Bitcoin / Wallet software / Re: Scammer lead developer resigns from honeypot Wasabi Wallet on: January 28, 2024, 02:16:39 PM
They self sybil and fill Wasabi with fake volume. Very easy for them to link inputs and outputs.

Just to keep fair criticism here, sybil attacks in coinjoins are easily detectable, in order for the attack to work efficiently in deanonymizing a certain input -- the coordinator needs to refuse connection confirmations from all other participants, so if your input has not been spent before and the coordinator rejects your connection it's safe to assume that it's preparing for a Sybil attack on an input it identified earlier in the current round.

Obviously, at this stage, it's hard to tell if enough adequate users still use Wasabi to spot sybil attacks.

In *theory* couldn't all their transactions be sybil attacks. All inputs except 1 for each mix come from them / known source. Every time the coodinator sees something coming in it has local wallets fill the rest of the space so to speak.

Yes there is a large cost and complexity. But we are talking millions of dollars at most, not an unobtainable amount of money for a business.

-Dave
269  Economy / Service Discussion / Re: [List] Gift cards providers on: January 28, 2024, 12:39:21 AM
....

I also don't see that 866 number you gave on their site: https://myprepaidcenter.com/contactus

-Dave

What kind of a site only has tolled (paid) numbers for customer support and no email?
Obviously a scam site that knows that most people will not bother to spend money to make an international call when only 5-10 dollars have been stolen from them.

You have 1000s of posts here and you're VOUCHING for an obvious scam site? I just don't understand it.

VPN session or no VPN session, why would they display a blank card with no numbers? The attitude of the support email person at support@coinsbee.com has proven beyond doubt that it is a scam operation. This VPN excuse is the same one he kept repeating. I've never heard of a site working this way under VPN. I'll wait for someone else to respond before saying anything else.

Edit: I added a review on TrustPilot and now Coinsbee.com is trying to give an excuse that i purchased from some other site not Coinsbee. I have also emailed the actual company known as Pathward N.A. and we will soon know if myprepaidcenter.com is related to them or not. Obviously it is not and it is a scam.

coinsbee is also on the forum https://bitcointalk.org/index.php?action=profile;u=2667213

They (myprepaidcenter.com) have plenty of toll free numbers in the US. They are a public US / North American company and for the most part only deal with people in the US / North America. Most, perhaps all, of my US issued credit cards don't have toll free numbers out of the US so that is not unusual.

As for the VPN, since they are a financial services company they have to abide by KYC / AML rules. $1 or $5 or $1000 or $5000 or $100,000 it's all the same in the eyes of KYC / AML rules.

This is what I see when I 1st log in. [I blanked some info]


Once I click on view details I see the full info [I blanked some info]


What do you get when you click view details?


Pathward has nothing to do with coinsbee all coinsbee is doing is reselling their cards as do hundreds of other services.

With all the above being said, they are very very twitchy when it comes to security.

https://www.reddit.com/r/SwagBucks/comments/150olvk/stay_away_from_getting_myprepaidcenter_mastercard/

You see it as a $5 gift card I see it as a $5 card they (my prepaid / blackhawk / Pathward) *have* to see it as the potential to get 1000 x $1000 gift cards and move a $1,000,000 in less time then it took me to type this.
https://financialcrimeacademy.org/the-essential-guide-to-prepaid-card-money-laundering/

-Dave
270  Economy / Service Discussion / Re: [List] Gift cards providers on: January 27, 2024, 08:52:03 PM
....

Nope, it's something on your side.
Bitrefill and many other places use myprepaidcenter.com for their mastercard prepaid cards.
Try a different browser. Also, they are US (possibly North America) only for some services. And they do block VPNs

https://bitcointalk.org/index.php?topic=5208530.msg61853963#msg61853963

Log out, log back in, try using a private browser window.

Heck, even a MC I got from a class action lawsuit was run through the myprepaidcenter.com site.

I also don't see that 866 number you gave on their site: https://myprepaidcenter.com/contactus

-Dave
271  Bitcoin / Wallet software / Re: Scammer lead developer resigns from honeypot Wasabi Wallet on: January 27, 2024, 07:49:50 PM
I think you've misread something. First things first, the links you've mentioned talk about the exit nodes (which are your "way out" to the clearnet). Wasabi utilizes hidden services, that means, no exit nodes intervene.

Yes, I grabbed the wrong links I'm mobile / remote at the moment.

But you are still passing information to hidden services in clear text. The links I wanted to grab discussed that sending things in the clear was now creating a need to trust the person getting the data (in this case wasabi but they were discussing ahem...other things) and the person running the last hop that service was connecting to which 99% of the time was the service itself.

Might not be making myself 100% clear here but the best way to say it is that since the wasabi coordinator itself is getting the info in cleartext unless they are running their onion services on the same server then somewhere even if it's just between Virtual Machine 1 and Virtual Machine 2 on the same physical hardware blade there is still data being unencrypted data being passed. Is it a 'real' threat? Depends on how they are doing things.

In the end, probably not important since you are trusting them to do things they way they say they are doing them anyway.

-Dave
272  Bitcoin / Wallet software / Re: Scammer lead developer resigns from honeypot Wasabi Wallet on: January 27, 2024, 12:26:13 PM
They self sybil and fill Wasabi with fake volume. Very easy for them to link inputs and outputs.

And beyond that from here:
https://docs.wasabiwallet.io/using-wasabi/CoinJoin.html#wabisabi-protocol-step-by-step

Quote
It is very important that the coordinator cannot link Alice to Bob. Because Alice has sent the cleartext input, and Bob sends the cleartext output. So, if the two were to be linked, then the coordinator can specifically link the input to the output, meaning that the anonymity set is 1. Because Alice received a credential from the coordinator, and because Bob is a new Tor identity not linked to Alice, the coordinator can verify that nobody is cheating, but it cannot deanonymize the peers.

because of this:
https://www.makeuseof.com/tor-exit-nodes-spying/
and this:
https://www.reddit.com/r/TOR/comments/mkd1s5/79_of_all_tor_nodes_are_hosted_within_14_eyes/
and this:
https://nusenu.medium.com/tracking-one-year-of-malicious-tor-exit-relay-activities-part-ii-85c80875c5df

Thinking that sending in cleartext is a good idea or that it provides any anonymity is a joke a best.

-Dave
273  Bitcoin / Bitcoin Discussion / Re: US gov’s planned $118M Bitcoin sale is ‘peanuts’ compared to GBTC on: January 27, 2024, 12:14:07 PM
It's like saying the US governments sale of 5 UH60L Black Hawk helicopters is going to matter to the world wide sale of helicopters.
FYI:
https://www.gsaauctions.gov/auctions/preview/269494
https://www.gsaauctions.gov/auctions/preview/269498
https://www.gsaauctions.gov/auctions/preview/269495
https://www.gsaauctions.gov/auctions/preview/269496
https://www.gsaauctions.gov/auctions/preview/269497

We only care here because it's BTC
There are plenty of people / institutions out there with more BTC that can sell it tomorrow without telling anyone.

-Dave


274  Other / Beginners & Help / Re: [Tutorial] Install a mining pool [NOMP] on Ubuntu Server 18.04 on: January 26, 2024, 05:46:21 PM
You are going to have to jump thought a bunch of hoops to get there but you can get old / unsafe / you should not be running them versions of nodejs here:

https://nodejs.org/dist/

You are then going to have to go through and install any dependency it needs one at a time.
archive.org is your friend for this it may not get you everything but it should get you a lot.

The other way to go is Yiimp there are a few installer scrips for that out there.

-Dave
275  Bitcoin / Wallet software / Re: Scammer lead developer resigns from honeypot Wasabi Wallet on: January 26, 2024, 05:18:47 PM
Tor is pointless, no you can't steal funds with this attack using Tor but to think it provides privacy is weak at best.

https://therecord.media/thousands-of-tor-exit-nodes-attacked-cryptocurrency-users-over-the-past-year
Isn't it the other way around: SSL stripping doesn't reduce your privacy, but it makes you send Bitcoin to the wrong address.

The point I was making is that if you are either a motivated criminal or a business or a government spinning up a ton of exit nodes and other services is not difficult.
And it makes people using 'many different exit nodes' for privacy loose a lot of it.

The tor cannot be tracked is bogus considering the number of tor sites that have been traced / seized over the years.

-Dave
276  Bitcoin / Wallet software / Re: Scammer lead developer resigns from honeypot Wasabi Wallet on: January 26, 2024, 04:14:45 PM
Wouldn't it be more likely for all privacy minded users to abandon Wasabi entirely? Even if the current bad reputation isn't enough, that will end the moment it's bought by a blockchain analysis company.
The "privacy minded users" are not their target. Instead their target is the majority who don't really understand how to improve their privacy and are too lazy to do any research so they end up in a honeypot like Wasabi wallet.....

I posted it earlier someplace but we are not their target audience for the most part. It's businesses that want 'privacy theater' so you can have peoples coins and put on a nice show that due to the fact that they are using this wallet with this feature that people can have privacy. And look we will never send you 'tainted' coins because these nice people are checking them for you.

Much like people buying bitcoin ETFs instead of just buying coin.

...Tor ...
Tor is pointless, no you can't steal funds with this attack using Tor but to think it provides privacy is weak at best.

https://therecord.media/thousands-of-tor-exit-nodes-attacked-cryptocurrency-users-over-the-past-year


-Dave

277  Bitcoin / Hardware / Re: Avalon Nano 3 [unofficial thread] on: January 25, 2024, 05:42:30 PM
...But if you want to stack coins with no kyc and have a need for heat a modded m50 or s19 is viable....

Even with the mods, unless you know something I don't, you still have to get 220V to wherever you want the heat.
I am using a modded S9 for heat in the back room of the condo at the moment, would love to do something faster / more efficient but it's all 120V without doing a bunch of work.

-Dave
278  Bitcoin / Development & Technical Discussion / Re: Can Coinjoin transactions be traced? Busting Bitcoin privacy myths! on: January 25, 2024, 05:21:15 PM
Ordinals has absolutely nothing to do with coinjoins.

This is my last post to you since you don't seem to care and I am tired of wasting my time.

You are 100% correct ordinals has absolutely nothing to do with coinjoins.
Ordinals are filling blocks with transactions that are obviously not coinjoins. And the rest is Crateology.
https://en.wikipedia.org/wiki/Crateology

As I said take out ordinals, take out known TXs, take out what else they know from other services and you have a very small pool of txs moving at the moment.
Keeping an eye on all of them and figuring out what is going on where is a lot less difficult then if all the txs in blocks were 'real' transactions.

Could 1 person do it looking at a list? Probably not. Can a lot of people with a lot of computing power and resources following all transactions do it. Probably yes.

You also seem to think that there are not a ton of tor nodes that are not run by and fully monitored by the government too.

-Dave




279  Bitcoin / Development & Technical Discussion / Re: Can Coinjoin transactions be traced? Busting Bitcoin privacy myths! on: January 25, 2024, 03:42:25 PM
There are probably more then a few people on this board sitting with 50+BTC from the early days who could setup a coordinator

Setting up a coordinator doesn't cost any BTC, a coordinator just sends messages back and forth to coinjoin participants.

Once again, if I setup a CoinJoin Coordinator for Wasabi users with a bit of tweaking it's not impossible. Getting people to use it would be the issue. But if I am charging no fees I can see where every TX came from and where they went.

How would you be able to see where every tx came from or where they went?  Did you read gmaxwell's explanation about Chaumian blind signatures?

Quote from: gmaxwell
Don't the users learn which inputs match up to which outputs?

In the simplest possible implementation where users meet up on IRC over tor or the like, yes they do. The next simplest implementation is where the users send their input and output information to some meeting point server, and the server creates the transaction and asks people to sign it. The server learns the mapping, but no one else does, and the server still can't steal the coins.

More complicated implementations are possible where even the server doesn't learn the mapping.

E.g. Using chaum blind signatures: The users connect and provide inputs (and change addresses) and a cryptographically-blinded version of the address they want their private coins to go to; the server signs the tokens and returns them. The users anonymously reconnect, unblind their output addresses, and return them to the server. The server can see that all the outputs were signed by it and so all the outputs had to come from valid participants. Later people reconnect and sign.

1) Because all the other coins in the coinjoin would be that persons. That is the point.

2) Later people reconnect and sign is the problem. It's usually (not always) not later, it's then and there. a->b->c tend to happen in somewhat real time. So now I know what to look for. And with blocks being full with ordinals at the moment you can probably eliminate 80+% of the TX, take out what are other known addresses and transactions. And the few dozen or hundred at the most can be sorted through at the governments leisure.

-Dave
280  Bitcoin / Development & Technical Discussion / Re: Can Coinjoin transactions be traced? Busting Bitcoin privacy myths! on: January 25, 2024, 02:40:04 PM
If a Fed was running a Whirlpool coordinator, they could perform a targeted attack where they only choose you to mix in rounds with 4 decoys so you gain a false sense of privacy.  Or, they could just rug pull you by not mixing your funds after you pay the coordinator fee.

Should read:

ANYONE can run a Whirlpool coordinator, and they CAN perform a targeted attack where they only choose you to mix in rounds with 4 (or more) decoys so you gain a false sense of privacy.  Or, they could just rug pull you by not mixing your funds after you pay the coordinator fee.

There are probably more then a few people on this board sitting with 50+BTC from the early days who could setup a coordinator



- Can WabiSabi be traced?

Not unless you are the biggest whale in a coinjoin round with insufficient liquidity. Even outputs that do not have matching amounts cannot be traced to an owner on the input side - it’s even possible that the output changed hands as a payment to someone who did not own any funds on the input side at all:


Once again, if I setup a CoinJoin Coordinator for Wasabi users with a bit of tweaking it's not impossible. Getting people to use it would be the issue. But if I am charging no fees I can see where every TX came from and where they went.



The right tool for the right job. Hammering together something to make your BTC private will always have flaws / vulnerabilities.
It was not made to be private. Same way a VW Bug was not made to haul lumber. You can do it but why. Rent a pickup truck or a van.
Same here, want more private BTC there are enough BTC -> XRM or other privacy coins -> BTC and done.



Not kicking any of the people working hard to do this, but it really seems to be more effort then it's worth.

-Dave


Pages: « 1 2 3 4 5 6 7 8 9 10 11 12 13 [14] 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 ... 384 »
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!