Bitcoin Forum
May 25, 2024, 11:24:25 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: What's going on with Bitfloor ?  (Read 1535 times)
Boussac (OP)
Legendary
*
Offline Offline

Activity: 1220
Merit: 1015


e-ducat.fr


View Profile WWW
September 05, 2012, 08:30:36 AM
 #1

Aside from the excellent and timely report by Bitcoin Magazine below, does anyone have anymore info about this hack ?

Quote
Bitfloor, the fourth largest exchange dealing in US dollars, has just announced[1] that it has been hacked, and the service has taken a loss of 24,000 BTC, worth about $250,000 at the time of the theft. As Roman Shtylman, the founder of Bitfloor, describes it, “last night, a few of our servers were compromised. As a result, the attacker gained accesses to an unencrypted backup of the wallet keys (the actual keys live in an encrypted area). Using these keys they were able to transfer the coins. This attack took the vast majority of the coins BitFloor was holding on hand.” As a result, BitFloor has paused all exchange operations and, depending on the effect that this will have on BitFloor’s finances, BitFloor may take one of two options. They may either take the loss and continue running in an attempt to eventually earn the money back or, in the worst case, shut down entirely and begin an account partial refund process out of the available funds.

The unencrypted backup that allowed the thief to carry out the attack was made when Shtylman made a manual upgrade earlier and put the data into an unencrypted partition on his disk; Shtylman has so far declined to comment further on the details of the attack, saying that “my current focus is on the future and not the past.” As Bitcoin security experts point out, Bitfloor made not one but two errors that were both necessary to lead to such a severe loss; the first, leaving data stored unencrypted, was an honest and perhaps unavoidable mistake, but it would not have had nearly as much of an effect if there had not also been the second error of leaving so much money in an online-accessible “hot wallet”. Since the Bitcoinica Linode theft, in which an unknown attacker made off with $222,000 worth of bitcoins from Bitcoinica’s hot wallet in March, it has been generally understood that any Bitcoin-holding service should keep the vast majority of its funds in “cold storage”, a term referring to a setup where the private keys never touch any computer that is accessible from the internet.

Kupsi
Legendary
*
Offline Offline

Activity: 1193
Merit: 1003


9.9.2012: I predict that single digits... <- FAIL


View Profile
September 05, 2012, 08:51:49 AM
 #2

https://bitcointalk.org/index.php?topic=105818.0
the_thing
Sr. Member
****
Offline Offline

Activity: 546
Merit: 252


Proof-of-Stake Blockchain Network


View Profile
September 05, 2012, 11:28:40 AM
 #3

Why do you guys always need to make multiple threads about the same topic. There are already about 4 threads about Bitfloor crash.






             ,gaaaaaaaagaaaaaaaaaaaaagaaaaaaaag,
           ,aP8b    _,dYba,       ,adPb,_    d8Ya,
         ,aP"  Yb_,dP"   "Yba, ,adP"   "Yb,_dP  "Ya,
       ,aP"    _88"         )888(         "88_    "Ya,
     ,aP"   _,dP"Yb      ,adP"8"Yba,      dP"Yb,_   "Ya,
   ,aPYb _,dP8    Yb  ,adP"   8   "Yba,  dP    8Yb,_ dPYa,
 ,aP"  YdP" dP     YbdP"      8      "YbdP     Yb "YbP  "Ya,
I8aaaaaa8aaa8baaaaaa88aaaaaaaa8aaaaaaaa88aaaaaad8aaa8aaaaaa8I
`Yb,   d8a, Ya      d8b,      8      ,d8b      aP ,a8b   ,dP'
  "Yb,dP "Ya "8,   dI "Yb,    8    ,dP" Ib   ,8" aP" Yb,dP"
    "Y8,   "YaI8, ,8'   "Yb,  8  ,dP"   `8, ,8IaP"   ,8P"
      "Yb,   `"Y8ad'      "Yb,8,dP"      `ba8P"'   ,dP"
        "Yb,    `"8,        "Y8P"        ,8"'    ,dP"
          "Yb,    `8,         8         ,8'    ,dP"
            "Yb,   `Ya        8        aP'   ,dP"
              "Yb,   "8,      8      ,8"   ,dP"
                "Yb,  `8,     8     ,8'  ,dP"   
                  "Yb, `Ya    8    aP' ,dP"     
                    "Yb, "8,  8  ,8" ,dP"
                      "Yb,`8, 8 ,8',dP"
                        "Yb,Ya8aP,dP"
                          "Y88888P"
                            "Y8P"
                              "       

Free TON





PEER-TO-PEER MULTY-BLOCKCHAIN SYSTEM
▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬.
▬▬▬TON SURF - OFFICIAL WALLET.





        ▄███████████████████▄
        █████████████████████
▄█████  █████████████████████
██████  ████             ████
███     █████████████████████
██████  ████             ████
██████  █████████████████████
███     █████████████████████
███████ ▀███████████████████▀
▀███████▄▄▄▄▄▄▄       ▀████
  ████▌                 ██ 
  ▐██▌                     
   █▌








TELEGRAM
FORUM
WIKI
ErebusBat
Hero Member
*****
Offline Offline

Activity: 560
Merit: 500

I am the one who knocks


View Profile
September 06, 2012, 04:04:31 AM
 #4

Why do you guys always need to make multiple threads about the same topic. There are already about 4 threads about Bitfloor crash.
+1

░▒▓█ Coinroll.it - 1% House Edge Dice Game █▓▒░ • Coinroll Thread • *FREE* 100 BTC Raffle

Signup for CEX.io BitFury exchange and get GHS Instantly!  Don't wait for shipping, mine NOW!
eldentyrell
Donator
Legendary
*
Offline Offline

Activity: 980
Merit: 1004


felonious vagrancy, personified


View Profile WWW
September 07, 2012, 01:32:12 AM
 #5

Why do you guys always need to make multiple threads about the same topic. There are already about 4 threads about Bitfloor crash.
+1

It's because the forum software sucks so much: there is only one UI for the forum, and that UI makes it easier to create a new thread than to figure out if there already is one.  Since the forum has no NNTP or API support and the RSS support has gaping holes it's going to be like this for a long, long time.  Get used to it.

The printing press heralded the end of the Dark Ages and made the Enlightenment possible, but it took another three centuries before any country managed to put freedom of the press beyond the reach of legislators.  So it may take a while before cryptocurrencies are free of the AML-NSA-KYC surveillance plague.
Phinnaeus Gage
Legendary
*
Offline Offline

Activity: 1918
Merit: 1570


Bitcoin: An Idea Worth Spending


View Profile WWW
September 07, 2012, 01:40:17 AM
 #6

Why do you guys always need to make multiple threads about the same topic. There are already about 4 threads about Bitfloor crash.
+1

It's because the forum software sucks so much.  It's easier to make a new thread than to figure out if there already is one.  Since the forum is web-interface-only (i.e. no NNTP support or API) there's only one UI available, and it sucks, and it's never going to get fixed.

What he said, albeit I ain't got the damndest clue what the fuck he's talking about, but pretty sure I get the gist.

That said, my Bitfloor thread should be able to explain why that Russian cabbie is bringing his dad to the states to hunt down Pirate. Maybe not connected, but I assume you all know that Roman speaks Russian and that his ex(?)-partner with Bitfloor IS Russian.

~Bruno~
crazy_rabbit
Legendary
*
Offline Offline

Activity: 1204
Merit: 1001


RUM AND CARROTS: A PIRATE LIFE FOR ME


View Profile
September 07, 2012, 03:54:53 PM
 #7

Why do you guys always need to make multiple threads about the same topic. There are already about 4 threads about Bitfloor crash.
+1

It's because the forum software sucks so much: there is only one UI for the forum, and that UI makes it easier to create a new thread than to figure out if there already is one.  Since the forum has no NNTP or API support and the RSS support has gaping holes it's going to be like this for a long, long time.  Get used to it.

Yeah, it really is tough finding things, and I mean that seriously.

more or less retired.
paraipan
In memoriam
Legendary
*
Offline Offline

Activity: 924
Merit: 1004


Firstbits: 1pirata


View Profile WWW
September 07, 2012, 04:12:24 PM
 #8

Why do you guys always need to make multiple threads about the same topic. There are already about 4 threads about Bitfloor crash.
+1

It's because the forum software sucks so much: there is only one UI for the forum, and that UI makes it easier to create a new thread than to figure out if there already is one.  Since the forum has no NNTP or API support and the RSS support has gaping holes it's going to be like this for a long, long time.  Get used to it.

Yeah, it really is tough finding things, and I mean that seriously.

Try this

BTCitcoin: An Idea Worth Saving - Q&A with bitcoins on rugatu.com - Check my rep
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!