Bitcoin Forum
June 28, 2024, 03:18:11 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Altcoins still being released that are vulnerable to OpenSSL exploit Heartbleed.  (Read 594 times)
vk3ukf (OP)
Member
**
Offline Offline

Activity: 110
Merit: 10

Should be a really good sho-ooo-oo-ooo (Ed Simian)


View Profile WWW
May 12, 2014, 02:44:48 PM
 #1

Q, I am starting some initial research into how many altcoins people are using that have
not been patched for the Heartbleed OpenSSL exploit.
What version of OpenSSL is your wallet client.
If it is between 1.0.1 to 1.0.1f you are vulnerable.

How can you tell?

With your wallet open, click Help an the top menu.
Then click Debug window.

You should now see some information, including the version of OpenSSL used, e.g.
OpenSSL 1.0.1g 7 Apr 2014.

These versions are not safe.

OpenSSL 1.0.1a
OpenSSL 1.0.1b
OpenSSL 1.0.1c
OpenSSL 1.0.1d
OpenSSL 1.0.1e
OpenSSL 1.0.1f

If you remain complacent,
any loss you experience from a hack will be whose fault?

Can we create a list of those that are in need of an update and are currently not as safe as they could be?

e.g.

SAFE:
BITCOIN
LITECOIN
DOGECOIN
BLACKCOIN

--------------------------

UNSAFE:
EMUCOIN
BUMBACOIN
POTCOIN

etc.

Altcoins are still being released that use the vulnerable OpenSSL versions 1.0.1 a to f.

Rofo
Legendary
*
Offline Offline

Activity: 1232
Merit: 1000


View Profile WWW
May 12, 2014, 02:52:44 PM
 #2

https://bitcointalk.org/index.php?topic=563790.0

vk3ukf (OP)
Member
**
Offline Offline

Activity: 110
Merit: 10

Should be a really good sho-ooo-oo-ooo (Ed Simian)


View Profile WWW
May 12, 2014, 02:55:51 PM
 #3

Thanks rofo, just what I was looking for but could not find. I think this needs to go a bit further and ban them from the forum until they comply.

Rofo
Legendary
*
Offline Offline

Activity: 1232
Merit: 1000


View Profile WWW
May 12, 2014, 02:56:57 PM
 #4

No problemo, that thread is no longer updated as far as I'm aware though.

vk3ukf (OP)
Member
**
Offline Offline

Activity: 110
Merit: 10

Should be a really good sho-ooo-oo-ooo (Ed Simian)


View Profile WWW
May 12, 2014, 03:15:00 PM
 #5

Now, I have another question aimed at some more knowledgeable persons.

If a POOL is running their pool wallet on their local network and it is using RPC,

is not the entire pools stash at risk to any crypto thieves?

Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!