Bitcoin Forum
May 10, 2024, 02:59:02 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
  Home Help Search Login Register More  
  Show Posts
Pages: « 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 [21] 22 23 24 25 26 »
401  Economy / Service Announcements / Re: [ANNOUNCE] satoshihack.com - the first [opensource] BitcoinHackMe! on: March 28, 2015, 10:58:59 AM
Wow...I have never heard of a "hackathon" before!
You should build a community just for this.
The prizes are excellent too.
Makes me wish I knew how to hack. Grin

i started the project before 2 weeks, so this is now just the begin. with the time it will grow and hopefully many people will join the hackathon. Its not so hard. Look at Hackathon #1, any person can easy learn this basics: https://bitcointalk.org/index.php?topic=998907


Cant wait for the second wrong the first one was awesome!!!

Thank you! Only couple hours left then we start it tonight! i hope you all come and join it.
402  Economy / Service Announcements / Re: [ANNOUNCE] satoshihack.com - the first [opensource] BitcoinHackMe! on: March 27, 2015, 07:50:23 PM

NEW HACKATHON #2 start tomorrow! Participate and WIN 0.1 BTC + 150000 METAL!

SPECIAL THANK FOR xPooky and METAL-coin community for SPONSORING THIS HACKATHON!!!
403  Bitcoin / Project Development / OpenSSL update on: March 24, 2015, 07:13:56 PM
but this board is also for the development and technic discussion of general projects for bitcoin i think. so advice for security update should fit in. if not, please advice me.
It very explicitly is not, please see the description of the subforum: "Technical discussion about Satoshi's Bitcoin client and the Bitcoin network in general. No third-party sites/clients, bug reports that do not require much discussion (use github), or support requests.".

I am sorry, my intention of this thread is only to make a benefit for the users/developers of bitcoinprojects overall..
i look for the correct board and move it. excuses.

Quote from: gmaxwell
Quote
#EDIT: it s good when linux distros backport only the fixes which used to remove vulns . but i think most users apply patching manually without waiting for official updatepatch. spescially webmasters. and also not sure what is sense of reformatting in the SAME TIME??? why not only fix vuln and in next version increment reformat codebase?
I do not know why they did that. I think its unreasonable.

yes agree. this sound strange to me. normally so skilled developers take care on this and think about this factors..
404  Bitcoin / Project Development / OpenSSL update on: March 24, 2015, 06:52:52 PM
The disclosed vulnerabilities are not very exciting for Bitcoin implementations and I am not aware of any reason people should rush to deploy in the context of Bitcoin software (the subject of this subforum! your webserver is another matter)

The diff between 1.0.1l and 1.0.1m is over 700k lines of code because they also reformatted the whole codebase at the same time. If someone has told you've they've reviewed the changes carefully they're lying.

Gentoo (and, I believe, Debian) appears to be rejecting openssl's huge patch and is working on backporting the specific fixes.




you are correct regarding the direct danger for bitcoinwallet. but this board is also for the development and technic discussion of general projects for bitcoin i think. so advice for security update should fit in. if not, please advice me.

and so i think service-maintainer must make the update (if affected openssl versions are used) because bitcoin-enviroments will be directly affected by the vulnerability.. True that BTC-core itself is not affected directly. but btc-services offline because a server get crashed by DoS is very bad i think. and many BTC-services are harmed/affected hardly by this downtime-risk.. so in my opinion when you run a btc-related service than you must rush for the update very fast.
operators of high-frequency service in darknet are in update-progress, and i hope the big btc-service in clearnet also make it.

and of course this is only my opinion. so i am thankful for other opinion and also other knowledge.


#EDIT: it s good when linux distros backport only the fixes which used to remove vulns . but i think most users apply patching manually without waiting for official updatepatch. spescially webmasters. and also not sure what is sense of reformatting in the SAME TIME??? why not only fix vuln and in next version increment reformat codebase?
405  Alternate cryptocurrencies / Announcements (Altcoins) / Re: Qora | 100% POS | Assets | Names | Voting | Open Source on: March 24, 2015, 02:48:18 PM
İf qora have a working wallet, why poloniex still has a problem with wallet.

What is the problem with poloniex?

Poloniex issues will most probably be fixed with the next wallet release.

 When will be release new wallet? Any news?

development-team is working on high pressure and we have some little modifications still and final testings waiting for all developers for approoving the release. we will give information shortly.

but also can confirm the actual version v18 is working good, also the API is working good. so i am not so sure what is with polo, but i also have no information from the problem of polo.
406  Bitcoin / Project Development / OpenSSL update on: March 24, 2015, 02:23:26 PM
#EDIT: BTC-Core/wallet is not affected directly by new openSSL vulns. But server can be attacked because of it through DoS and overload.. or also the second high serverity vuln is reclassification of FREAK attack and gives a risk so a bad certificate will be accepted by victim and then badguy can make the man-in-the-middle attack IF a NULL pointer dereference is triggered.

Referencing to https://www.openssl.org/news/secadv_20150319.txt i advice all user and service-maintainer to upgrade OpenSSL if you run online BTC-project.

Vulnerabilities: (red one is high severity)

OpenSSL 1.0.2 ClientHello sigalgs DoS (CVE-2015-0291) affects OpenSSL version: 1.0.2 - upgrade to 1.0.2a!

Reclassified: RSA silently downgrades to EXPORT_RSA [Client] (CVE-2015-0204) affects OpenSSL versions: 1.0.1, 1.0.0 and 0.9.8.
OpenSSL 1.0.1 users should upgrade to 1.0.1k.
OpenSSL 1.0.0 users should upgrade to 1.0.0p.
OpenSSL 0.9.8 users should upgrade to 0.9.8zd.

Multiblock corrupted pointer (CVE-2015-0290)
Segmentation fault in DTLSv1_listen (CVE-2015-0207)
Segmentation fault in ASN1_TYPE_cmp (CVE-2015-0286)
Segmentation fault for invalid PSS parameters (CVE-2015-0208)
ASN.1 structure reuse memory corruption (CVE-2015-0287)
PKCS7 NULL pointer dereferences (CVE-2015-0289)
Base64 decode (CVE-2015-0292)
DoS via reachable assert in SSLv2 servers (CVE-2015-0293)
Empty CKE with client auth and DHE (CVE-2015-1787)
Handshake with unseeded PRNG (CVE-2015-0285)
Use After Free following d2i_ECPrivatekey error (CVE-2015-0209)
X509_to_X509_REQ NULL pointer deref (CVE-2015-0288)

source: https://www.openssl.org/news/secadv_20150319.txt

please take it serious!
ca333
407  Economy / Games and rounds / Re: [SOLVED] HACKATHON - 0.1 BTC - satoshihack.com on: March 24, 2015, 10:52:14 AM
-----BEGIN BITCOIN SIGNED MESSAGE-----
I, Injust of Bitcoin Forum, verify that I am the winner of the 1st SatoshiHack hackathon.
I also would like to collect the 500k QORA, which should be sent to QgWfhvQJuYSGXTEq5g7zrr5SWZgFSt5cGw.
-----BEGIN SIGNATURE-----
15eiAnGmwGVKSGjSKowcDw7N6CmhG7jfoo
HNncjff3u8GK8yxLuPx7c02Yqys4yWtKgXhP7jHv/QaLb7DzWifWAc9isEI9hp3seOmvyW65lXBrhKzxBtOre2c=
-----END BITCOIN SIGNED MESSAGE-----

3ShEKLHK7Z1HKjpwGp3XzijKe9sxHWkL5VdxBAT1Jq4wHd3zAtMgN17qQagQhTt8TLKpoQoRsLiTmmd 45vRFLHjh

sended 500.000 QORA to QgWfhvQJuYSGXTEq5g7zrr5SWZgFSt5cGw
Thank you for participating in the hackathon!

next hackathon countdown is running! www.satoshihack.com


Contratz to the winner!!!
Also many thanx to OP for providing this interesting and beautiful challenge! Keep it up!

THANK YOU soo much! next hackathon is this weekend. i hope you come here too. its same difficulty level this time!
so not so hard when already solved hackme #1.
408  Alternate cryptocurrencies / Announcements (Altcoins) / Re: Qora | 100% POS | Assets | Names | Voting | Open Source on: March 24, 2015, 10:41:12 AM
IS there a mac wallet?
the wallet of qora is PLATFORM-independent! So it work in ANY operating system.

i give you explanation:

1. Download v18 wallet folder. (unzip content)

2. then open command terminal. and cd into qora-folder
Code:
hackintosh-sc088-v9:Downloads ca333$ cd Qora

3. when you are in qora-folder only run command: ./run.sh
Code:
hackintosh-sc088-v9:Qora ca333$ ./run.sh


ps. we work in installer package (OSX, unix) for automation so only need double-click. will provide it for community VERY SOON!
its finish already but must confirm with all the team first and make final test.
409  Alternate cryptocurrencies / Announcements (Altcoins) / Re: Qora | 100% POS | Assets | Names | Voting | Open Source on: March 24, 2015, 10:29:37 AM
@All, what's the status now, what's the next of this coin, is there any roadmap?

we builded good core-team with experts in many fields. In examle i make the security expert and core support also with the core-development for many improvings for end-user and back-end. roadmap is now in work progress. we release this week when all devs from team approove.

scriptmastr is making mobile solution: http://www.qora2go.pw
and i have maked the API-bind class declaration.

so qora is going in good way now and will show this crytocommunity how a good coin must be coded and developed. So maybe we are little silent in this thread. But not because nothing happen. Its the opposite. MANY THINGS happen now.. and good devs is quiet for the moment he works.  

and we also involve the community more. when you have suggestion you can start a poll from the wallet and post in this thread also. then we from dev-team can see it and all can vote for your idea. and if you have any idea, also post in this thread if you want without poll.
then we see what user wish from us.
410  Economy / Games and rounds / Re: [SOLVED] HACKATHON - 0.1 BTC - satoshihack.com on: March 23, 2015, 06:59:35 PM
so did anyone got a chance to solve the site?
yes injust solved it successfully and won the prize 0.1 btc. i would participate in the coming competition, when is the next competition/hackathon?

you can see the next competition countdown on www.satoshihack.com.
its coming weekend.

From next time, OP should request a signed message from the winner to confirm that he is really the winner, before sending the Qora.

Just a little advice. Wink Don't know if you already did it. Tongue

no still not sent. but its the confirmed winner. He sended me also PMs.
411  Bitcoin / Development & Technical Discussion / Re: Question related to private data storage in blockchain on: March 23, 2015, 11:48:33 AM
I have been fascinated by bitcoin and blockchain, and kept searching the tech and non-tech aspects about them.

[...]

These paragraphs also appeared in the book by Melanie Swan: Blockchain : Blueprint for a New Economy (oreilly)

I'm wondering how exactly would saving data in blockchain help solving those problems.
(1) By storing data in blockchain, that data will become notaried, immutable.
But how would that achieve the goal of "can be analyzed but remain private".
Especially that in reality, we can only afford to save hash of data (maybe with a adapter layer like factom.), not original data, in blockchain.

I think this mean you can put the information in the blockchain, but you don't add personal-data (name, social insurance ID,etc.). Only necessary information (i.e. from above: health data, clinical-report, age of the patient, etc.) is then stored in blockchain and can be analyzed by doctors and medi-research.

Quote
(2) Giving up private key to third party to make sure privacy and access control
By doing that, we are actually giving up everything to the third party.
How is that ever gonna work?

relating to above example i think when you store such data in encrypted format(with personal data), so you then can give the priv-key of encryption to the doctors and the doctors can then decrypt it to use the information. In this example you have data stored coded. so nobody can read it in the chain. But only the person with the privkey can read it.. so you only are "giving up" the data to who you want to be able to read it...

Quote
Or maybe the blog is not referring bitcoin blockchain, but some alt coin's (like the healthcoin author mentioned)  alt blockchain that's not yet designed and implemented.

If it is actually doable with bitcoin blockchain, please help and share some thoughts.

Thanks!

I think this comes in the future. But maybe in medi-research and alternative opensource communities with relation to medical projects.
Problem is when it comes to pharmaindustry its VERY PROFITORIENTED.... not always oriented in optimization of a process.
I think adapting a blockchain and make its parameters for this purpose can give other options. In example: The patient or owner of medical data or other private data to stored in the blockchain have his private-key and NEVER give it somebody else. But the doctor have a public key which is able to receive the data from a patient. So the data remain private @patient untill patient transfer it to PublicKey of doctor.
So this is maybe one option.. But i think many many other concepts can work for this.

Also i like this discussion, its interesting topic!
thank you!
ca333
412  Alternate cryptocurrencies / Altcoin Discussion / Re: Litecoin and Dogecoin address versions (hex prefix) on: March 23, 2015, 11:31:27 AM
I need to know if the following address versions (hex prefixes) are correct, and what's Dogecoin test-net one:
//
Litecoin main-net: 0x30
Litecoin test-net: 0x6F
//
Dogecoin main-net: 0x1E
Dogecoin test-net: 0x6F

EDIT: ok got them all.

yes is all correct but the DogeCoin test-net pubkey prefix is not correct. (https://github.com/dogecoin/dogecoin/blob/master/src/chainparams.cpp#L226)

Litecoin:
main: 48 dec = 0x30 hex
test: 111 dec = 0x6F hex

Dogecoin:
main: 30 dec = 0x1E hex
test: 113 dec = 0x71 hex

hope it help.
ca333
413  Economy / Games and rounds / Re: HACKATHON started! Find 0.1 BTC now! - satoshihack.com on: March 22, 2015, 10:42:58 PM
lol i was stuck there too, thanks for the game ca333 so you will post a hackaton every 2 weeks? that is not much time?

thank you i am happy you like it!

i make a new hackathon NEXT weekend. so i have one sponsor for one more hackathon. And in 2 weeks i make a bigger hackathon with bigger price and little more difficult.

i let the hackathon online. so when you want play again you can always.


and when you have general questions you can ask me here: https://bitcointalk.org/index.php?topic=993678
or in IRC: #satoshihack

THANK YOU ALL AGAIN FOR COME IN THE HACKATHON!
414  Economy / Games and rounds / Re: HACKATHON started! Find 0.1 BTC now! - satoshihack.com on: March 22, 2015, 10:41:42 PM
So what is the relation with rot26 ? how we will know that and relate it

rot26 is total number of possible shift. So 26 chars of alphabetica. and ROT5 is the hint in level 1. and it say back to the roots (revert it).

ROT5(originalkey) = key in photo. i also say often you must DECRYPT it. so its logical that is encrypted format....
so when you revert you have ONLY THIS OPTION: ROT26-ROT5 = ROT 21.

and it even have internetsites with it make it automatically (http://planetcalc.com/1434/).
#edit: so only google for caesar cipher bring you to the solution....
 
so ALSO WHEN YOU NOT SURE YOU CAN TRY IT BOTH. ROT5(key) or ROT21(key) when original key is encoded with ROT5

ah that is the problem, your alphabet have 26 chars lol, well i did my best

no sorry i make wrong explanation. i mean not alphabetical signs. i mean its maximal shifts is 26 from latin. so ZERO (ROT0) is also option when shift = ZERO.

so in the example we have. the ROT0(keyFromPhoto) you must make a ROT21(keyFromPhoto) for DECODE. because we have a ROT5 from ORIGINAL KEY.

EXAMPLE: I say ROT5 is hint. Now you take the CODE FROM IMAGE AND EVERY ALPHABETICAL SIGN YOU GO BACK 5 positions. So example:
5OEDrG8yU1ortreRJXeyVed24BDOatCGvok8PQDthB9M5wVBvCh
5JZYmB8tP1jmomzMESztQzy24WYJvoXBqjf8KLYocW9H5rQWqXc
415  Economy / Games and rounds / Re: HACKATHON started! Find 0.1 BTC now! - satoshihack.com on: March 22, 2015, 10:29:29 PM
So what is the relation with rot26 ? how we will know that and relate it

rot26 is total number of possible shift.. and ROT5 is the hint in level 1. and it say back to the roots (revert it).

ROT5(originalkey) = key in photo. i also say often you must DECRYPT it. so its logical that is encrypted format....
so when you revert you have ONLY THIS OPTION: ROT26-ROT5 = ROT 21.

and it even have internetsites with it make it automatically (http://planetcalc.com/1434/).
#edit: so only google for caesar cipher bring you to the solution....
 
so ALSO WHEN YOU NOT SURE YOU CAN TRY IT BOTH. ROT5(key) or ROT21(key) when original key is encoded with ROT5


#EDIT: in IT we start COUNT ON ZERO. so ROT0 is also possible. we have maximum 26 shifts WITH ROT0..
so ROT 25 is max. i count 26 FOR POSSIBLY SHIFTS.

416  Economy / Games and rounds / Re: HACKATHON started! Find 0.1 BTC now! - satoshihack.com on: March 22, 2015, 10:25:02 PM
IT S SOLVED. https://blockchain.info/address/1hackxBzktVKWn1FnkSBFoWQC1tWL9nFa

winner please post here. so you get the place in Hall of Fame + 500.000 QoraCoins.
can you post the solution? now the wallet its empty so we can check it

LEVEL 1: the secret code is hided in the second JS-function. You MUST SCROLL DOWN.
LEVEL 2: The URL passes variable to PHP. You must change the variable "68934a3e9455fa72420237eb05902327" which is md5("false") and make it md5("true") = "b326b5062b2f0e69046810717534cb09". in example: http://www.md5-hash.com/md5-text-encrypt
LEVEL3: "<!--%67%6F%6F%64%6A%6F%62%0A%09%09%09-->" is hided in sourcecode. This is URL encoded string. You make the url-decoding: http://meyerweb.com/eric/tools/dencoder/ and it give you: "goodjob"

LEVEL 4: this is again a md5 hash of the value true. 1 can also be true. so md5(1) = "c4ca4238a0b923820dcc509a6f75849b"

LEVEL 5: The key is hided IN the photo. You open the photo in ANY texteditor or with cat/nano/vi/vim and you see on the end of the file:
"5OEDrG8yU1ortreRJXeyVed24BDOatCGvok8PQDthB9M5wVBvChn". so we now from level 1 the hint ROT5. This mean ROT5(originalkey) ="5OEDrG8yU1ortreRJXeyVed24BDOatCGvok8PQDthB9M5wVBvCh". the "n" is one character too much because private keys associated with uncompressed public keys are 51 characters and always start with the number 5 on mainnet.
so you only do it reverse ROT26-ROT5 = ROT21: i.e with: http://planetcalc.com/1434/ and you get real privkey: "5JZYmB8tP1jmomzMESztQzy24WYJvoXBqjf8KLYocW9H5rQWqXc"



how should we know to delete the "n" letter at the end of key? also i deleted it and tried with rot5, but didn't. because you say rot21 know. where rot26 comes from?

also; "Private keys associated with compressed public keys are 52 characters and start with a capital L or K on mainnet (c on testnet)" i

private keys associated with uncompressed public keys are 51 characters and ALWAYS start with 5. and we know that ROT5 is only on alphabetical chars! so then you know it start with 5. So only this option (51 chars) is left...
417  Economy / Games and rounds / Re: HACKATHON started! Find 0.1 BTC now! - satoshihack.com on: March 22, 2015, 10:22:28 PM
IT S SOLVED. https://blockchain.info/address/1hackxBzktVKWn1FnkSBFoWQC1tWL9nFa

winner please post here. so you get the place in Hall of Fame + 500.000 QoraCoins.

I am the winner!
Cheesy

Thanks for the hackathon, ca333. Looking forward to more in the future Wink

Congratulations! Post/Send me your QORA-address and i send you 500K Qora. also suggest hodl the qora. We work on it and price is already +20% in some day. It will make + many % in next weeks...

The next hackathon start next week because i find the sponsor now will fund new hackathon!

THANK YOU ALL FOR PARTICIAPTE!!! I hope you have fund in it and it make the brain hot! Next week i make similar difficulty. So come back!
418  Economy / Games and rounds / Re: HACKATHON started! Find 0.1 BTC now! - satoshihack.com on: March 22, 2015, 10:16:23 PM
IT S SOLVED. https://blockchain.info/address/1hackxBzktVKWn1FnkSBFoWQC1tWL9nFa

winner please post here. so you get the place in Hall of Fame + 500.000 QoraCoins.
can you post the solution? now the wallet its empty so we can check it

LEVEL 1: the secret code is hided in the second JS-function. You MUST SCROLL DOWN.
LEVEL 2: The URL passes variable to PHP. You must change the variable "68934a3e9455fa72420237eb05902327" which is md5("false") and make it md5("true") = "b326b5062b2f0e69046810717534cb09". in example: http://www.md5-hash.com/md5-text-encrypt
LEVEL3: "<!--%67%6F%6F%64%6A%6F%62%0A%09%09%09-->" is hided in sourcecode. This is URL encoded string. You make the url-decoding: http://meyerweb.com/eric/tools/dencoder/ and it give you: "goodjob"

LEVEL 4: this is again a md5 hash of the value true. 1 can also be true. so md5(1) = "c4ca4238a0b923820dcc509a6f75849b"

LEVEL 5: The key is hided IN the photo. You open the photo in ANY texteditor or with cat/nano/vi/vim and you see on the end of the file:
"5OEDrG8yU1ortreRJXeyVed24BDOatCGvok8PQDthB9M5wVBvChn". so we now from level 1 the hint ROT5. This mean ROT5(originalkey) ="5OEDrG8yU1ortreRJXeyVed24BDOatCGvok8PQDthB9M5wVBvCh". the "n" is one character too much because private keys associated with uncompressed public keys are 51 characters and always start with the number 5 on mainnet.
so you only do it reverse ROT26-ROT5 = ROT21: i.e with: http://planetcalc.com/1434/ and you get real privkey: "5JZYmB8tP1jmomzMESztQzy24WYJvoXBqjf8KLYocW9H5rQWqXc"

419  Economy / Games and rounds / Re: HACKATHON started! Find 0.1 BTC now! - satoshihack.com on: March 22, 2015, 10:00:00 PM
IT S SOLVED. https://blockchain.info/address/1hackxBzktVKWn1FnkSBFoWQC1tWL9nFa

winner please post here. so you get the place in Hall of Fame + 500.000 QoraCoins.
420  Economy / Games and rounds / Re: HACKATHON started! Find 0.1 BTC now! - satoshihack.com on: March 22, 2015, 09:31:40 PM
asterix's and Obelix's biggest enemy was roman empire, caesar. they used rot algorithms to encrypt important messages. so the key must be decode with rot algorithm. anyway, i tried all variants of it, but the key was always wrong.

asterix's and Obelix's biggest enemy was roman empire, caesar. they used rot algorithms to encrypt important messages. so the key must be decode with rot algorithm. anyway, i tried all variants of it, but the key was always wrong.

Same here


a small hint: https://en.bitcoin.it/wiki/Private_key#Base58_Wallet_Import_format
Pages: « 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 [21] 22 23 24 25 26 »
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!