Bitcoin Forum
May 07, 2024, 01:23:20 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: Automatically exchange words on the forum?  (Read 1556 times)
SebastianJu (OP)
Legendary
*
Offline Offline

Activity: 2674
Merit: 1082


Legendary Escrow Service - Tip Jar in Profile


View Profile WWW
March 07, 2016, 09:01:55 PM
 #1

There was at least one case of a successfull phishing through a faked bitcointalk.org URL. See: https://bitcointalk.org/index.php?topic=1389494.new#new and https://bitcointalk.org/index.php?topic=1386622.new#new

The URL that the phisher owns was bitcointaIk.org. The L was replaced with the big i.

Is there an automatic replacement feature that is able to exchange such words automatically because of a proven scam word? So that it automatically routes to the real domain here? Maybe even showing a 404 page that shows a red alert that the user might have wanted to visit a phishing page? At least when bitcointalk's url was being tried to fake.

At least in the preview of my post the url is not replaced. So I think it might be worth to consider to raise the security on the forum.

Please ALWAYS contact me through bitcointalk pm before sending someone coins.
1715045000
Hero Member
*
Offline Offline

Posts: 1715045000

View Profile Personal Message (Offline)

Ignore
1715045000
Reply with quote  #2

1715045000
Report to moderator
The Bitcoin software, network, and concept is called "Bitcoin" with a capitalized "B". Bitcoin currency units are called "bitcoins" with a lowercase "b" -- this is often abbreviated BTC.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1715045000
Hero Member
*
Offline Offline

Posts: 1715045000

View Profile Personal Message (Offline)

Ignore
1715045000
Reply with quote  #2

1715045000
Report to moderator
1715045000
Hero Member
*
Offline Offline

Posts: 1715045000

View Profile Personal Message (Offline)

Ignore
1715045000
Reply with quote  #2

1715045000
Report to moderator
1715045000
Hero Member
*
Offline Offline

Posts: 1715045000

View Profile Personal Message (Offline)

Ignore
1715045000
Reply with quote  #2

1715045000
Report to moderator
whywefight
Legendary
*
Offline Offline

Activity: 1078
Merit: 1042


www.explorerz.top


View Profile
March 07, 2016, 10:06:57 PM
 #2

of course that can be done, but like always when it comes to usefull stuff, we will see this maybe in the new forum software Roll Eyes

SebastianJu (OP)
Legendary
*
Offline Offline

Activity: 2674
Merit: 1082


Legendary Escrow Service - Tip Jar in Profile


View Profile WWW
March 07, 2016, 10:52:12 PM
 #3

of course that can be done, but like always when it comes to usefull stuff, we will see this maybe in the new forum software Roll Eyes

Well, that might take another year... or two. Tongue

But I think this forum is not lost completely. Small things are implemented regularly, like newbie warnings in posts and such.

I believe such a change here would be minor because I'm pretty sure the forum software already has a function to replace words.

Please ALWAYS contact me through bitcointalk pm before sending someone coins.
onepix
Full Member
***
Offline Offline

Activity: 171
Merit: 100


View Profile
March 07, 2016, 10:56:46 PM
 #4

Well this should be easy to implement, the forum already does this with certain domains such as ones that end in .tk

But as whywefight said, you should request this for the new forum, I think it will be live in two or three months so i dont think we should waste any time implementing anything new here
SebastianJu (OP)
Legendary
*
Offline Offline

Activity: 2674
Merit: 1082


Legendary Escrow Service - Tip Jar in Profile


View Profile WWW
March 07, 2016, 11:10:39 PM
 #5

Well this should be easy to implement, the forum already does this with certain domains such as ones that end in .tk

But as whywefight said, you should request this for the new forum, I think it will be live in two or three months so i dont think we should waste any time implementing anything new here

Really? Interesting... didn't hear of this. I wonder what all the accounts will be worth then that account traders collected on the old forum. Cheesy

Please ALWAYS contact me through bitcointalk pm before sending someone coins.
shorena
Copper Member
Legendary
*
Offline Offline

Activity: 1498
Merit: 1499


No I dont escrow anymore.


View Profile WWW
March 08, 2016, 07:52:12 AM
 #6

Well this should be easy to implement, the forum already does this with certain domains such as ones that end in .tk

But as whywefight said, you should request this for the new forum, I think it will be live in two or three months so i dont think we should waste any time implementing anything new here

Really? Interesting... didn't hear of this. I wonder what all the accounts will be worth then that account traders collected on the old forum. Cheesy

Yeah certain links are replaced by [suspicious link removed] or something similar. Its mainly used for those link shorteners that are against the rules AFAIK. I dont see a problem to add *bitcointaIk* to that list.

Im not really here, its just your imagination.
SebastianJu (OP)
Legendary
*
Offline Offline

Activity: 2674
Merit: 1082


Legendary Escrow Service - Tip Jar in Profile


View Profile WWW
March 08, 2016, 09:27:57 PM
 #7

Well this should be easy to implement, the forum already does this with certain domains such as ones that end in .tk

But as whywefight said, you should request this for the new forum, I think it will be live in two or three months so i dont think we should waste any time implementing anything new here

Really? Interesting... didn't hear of this. I wonder what all the accounts will be worth then that account traders collected on the old forum. Cheesy

Yeah certain links are replaced by [suspicious link removed] or something similar. Its mainly used for those link shorteners that are against the rules AFAIK. I dont see a problem to add *bitcointaIk* to that list.

That's good to hear too though my previous answer was more directed at your second paragraph. I'm sure there are a lot of account traders holding a stash of many bitcointalk accounts. I wonder if they will be worth something anymore in the new forum.

Besides that, it would be pretty fast to add this link then. Actually I'm surprised that that domain was not snatched before. It is a very old blackhat trick to replace these 2 letters.

Please ALWAYS contact me through bitcointalk pm before sending someone coins.
shorena
Copper Member
Legendary
*
Offline Offline

Activity: 1498
Merit: 1499


No I dont escrow anymore.


View Profile WWW
March 08, 2016, 09:41:06 PM
 #8

Well this should be easy to implement, the forum already does this with certain domains such as ones that end in .tk

But as whywefight said, you should request this for the new forum, I think it will be live in two or three months so i dont think we should waste any time implementing anything new here

Really? Interesting... didn't hear of this. I wonder what all the accounts will be worth then that account traders collected on the old forum. Cheesy

Yeah certain links are replaced by [suspicious link removed] or something similar. Its mainly used for those link shorteners that are against the rules AFAIK. I dont see a problem to add *bitcointaIk* to that list.

That's good to hear too though my previous answer was more directed at your second paragraph. I'm sure there are a lot of account traders holding a stash of many bitcointalk accounts. I wonder if they will be worth something anymore in the new forum.

Oh, yeah I missed that. I dont think it will change much as all posts and ranks will be migrated to the new forum AFAIK.

Besides that, it would be pretty fast to add this link then. Actually I'm surprised that that domain was not snatched before. It is a very old blackhat trick to replace these 2 letters.

It should be, but maybe theymos didnt see this thread yet.

Im not really here, its just your imagination.
Lutpin
Copper Member
Legendary
*
Offline Offline

Activity: 1876
Merit: 1874


Goodbye, Z.


View Profile WWW
April 10, 2016, 01:27:20 AM
 #9

Not the solution you asked for Seb, but we have some (kind of) solution now:
Green hover color for bitcointalk.org links.



Now we only have to teach everyone to look out for the green color...

▄▄█████████▄▄
▄█████████████████▄
▄████▀▀▀▀█████▀▀▀▀████▄
████▀██████▀█▀██████▀████
██████████████████████████
▐█████▄███████████████▄█████▌
▐███████▄▄█████████▄▄███████▌
▐██████▀█████████████▀██████▌
▐███████████████████████████▌
▀██████████████████████▀
▀████▄████▄▀▀▄████▄████▀
▀███████▀███▀███████▀
▀▀█████████████▀▀
  ▀▀▀▀▀▀▀▀▀
   ███████
██████████
██████████
██████████
██████████
██████████
██████████
██████████
██████████
██████████
██████████
██████████
███████



             ▄████████████████████████████████████████████████████████████▄
            ██                          ▄▄▄▄▄▄                           ██
           ██  ██████                ▄██████████▄     ████████████████████▀
          ██  ████████             ▄████▀   ▀████▄    ████▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
         ██  ████  ████           ████▀       ▀██▀    ████
        ██  ████    ████        ▄███▀                 ████

       ██  ████      ████       ███▀                  ████▄▄▄▄▄▄▄▄▄▄
      ██  ████        ████      ███                   ██████████████
     ██  ████          ████     ███▄                  ████▀▀▀▀▀▀▀▀▀▀

    ██  ████████████████████    ▀████                 ████
   ██  ██████████████████████    ▀████▄        ▄██▄   ████

  ██  ████                ████     ▀████▄   ▄████▀    ████▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
 ██  ████                  ████      ▀██████████▀     ████████████████████▄
  ██                                    ▀▀▀▀▀▀                           ██
   ▀█████████████████████████████████████████████████████████████████████▀
theymos
Administrator
Legendary
*
Offline Offline

Activity: 5194
Merit: 12972


View Profile
April 10, 2016, 01:31:44 AM
 #10

I also added that phishing site to the suspicious links blacklist.

1NXYoJ5xU91Jp83XfVMHwwTUyZFK64BoAD
shorena
Copper Member
Legendary
*
Offline Offline

Activity: 1498
Merit: 1499


No I dont escrow anymore.


View Profile WWW
April 10, 2016, 09:59:51 AM
 #11

I also added that phishing site to the suspicious links blacklist.

www.bitcointaIk.org thanks you Smiley

shouldnt this be replaced then?

Im not really here, its just your imagination.
theymos
Administrator
Legendary
*
Offline Offline

Activity: 5194
Merit: 12972


View Profile
April 10, 2016, 04:22:49 PM
 #12

shouldnt this be replaced then?

The suspicious links blacklist only affects newbies.

1NXYoJ5xU91Jp83XfVMHwwTUyZFK64BoAD
SebastianJu (OP)
Legendary
*
Offline Offline

Activity: 2674
Merit: 1082


Legendary Escrow Service - Tip Jar in Profile


View Profile WWW
April 10, 2016, 06:22:57 PM
 #13

Interesting. Hope it helps to stop such things a bit in the future. Though I guess even senior members could be catched by such a masked link. At least I would await that they get a heads up when "bitcointalk" asks to login again. Smiley

Please ALWAYS contact me through bitcointalk pm before sending someone coins.
minifrij
Legendary
*
Offline Offline

Activity: 2324
Merit: 1267


In Memory of Zepher


View Profile WWW
April 11, 2016, 09:18:08 AM
 #14

The suspicious links blacklist only affects newbies.
I'm not quite sure whether this is too great of an idea. In some recent cases it has been Full Members and other groups sending the links from hacked accounts. While the green hover colour does help, it may not be seen by mobile users causing them to perhaps be vulnerable.
Perhaps there should be a seperate blacklist which is forum wide for URLs such as this, and affects all user-groups.
SebastianJu (OP)
Legendary
*
Offline Offline

Activity: 2674
Merit: 1082


Legendary Escrow Service - Tip Jar in Profile


View Profile WWW
April 11, 2016, 11:42:43 AM
 #15

The suspicious links blacklist only affects newbies.
I'm not quite sure whether this is too great of an idea. In some recent cases it has been Full Members and other groups sending the links from hacked accounts. While the green hover colour does help, it may not be seen by mobile users causing them to perhaps be vulnerable.
Perhaps there should be a seperate blacklist which is forum wide for URLs such as this, and affects all user-groups.

It makes sense when experienced users can see the blocked url... though it would be better to take out the link setting and change it to a simple text and add some text behind like [Suspicious link] or so.

Please ALWAYS contact me through bitcointalk pm before sending someone coins.
minifrij
Legendary
*
Offline Offline

Activity: 2324
Merit: 1267


In Memory of Zepher


View Profile WWW
April 12, 2016, 11:38:58 PM
 #16

It makes sense when experienced users can see the blocked url...
The problem is that with the trend of selling accounts, rank is no longer correspondent to how experienced the user is. This is proven by the amount of Senior-Hero members that don't understand something simple such as the Activity system.

Now I can't get to my account "losmilos" anymore, they changed my password and email address. Is there a way to get my account back?

I can't find a support page.
If you have an unedited post from before you were hacked containing a Bitcoin address, you can follow the instructions posted here. If you do this, don't expect a response very quickly.

If you do not have such a post, you should start posting from a new account. You aren't going to get your old one back.
SebastianJu (OP)
Legendary
*
Offline Offline

Activity: 2674
Merit: 1082


Legendary Escrow Service - Tip Jar in Profile


View Profile WWW
April 13, 2016, 12:35:31 AM
 #17

minifrij


It makes sense when experienced users can see the blocked url...
The problem is that with the trend of selling accounts, rank is no longer correspondent to how experienced the user is. This is proven by the amount of Senior-Hero members that don't understand something simple such as the Activity system.

Exactly... sometimes it looks like users on here tell their mom and their uncle about how to earn big money on a forum. They might even earn more than they could earn working in their country fulltime. Or at least it's a great addition.



Lectori


Now I can't get to my account "losmilos" anymore, they changed my password and email address.

You are lucky they only did that. And it's a pity that this same url still is in bad use. I had a lot of conversation with the scammer that owns that website from the time where a user lost 260$ because of him stealing the account and then starting a trade... stealing funds that way. So you are lucky he only changed pass.

Please ALWAYS contact me through bitcointalk pm before sending someone coins.
Lectori
Newbie
*
Offline Offline

Activity: 5
Merit: 0


View Profile
April 13, 2016, 05:03:39 PM
 #18

minifrij


It makes sense when experienced users can see the blocked url...
The problem is that with the trend of selling accounts, rank is no longer correspondent to how experienced the user is. This is proven by the amount of Senior-Hero members that don't understand something simple such as the Activity system.

Exactly... sometimes it looks like users on here tell their mom and their uncle about how to earn big money on a forum. They might even earn more than they could earn working in their country fulltime. Or at least it's a great addition.



Lectori


Now I can't get to my account "losmilos" anymore, they changed my password and email address.

You are lucky they only did that. And it's a pity that this same url still is in bad use. I had a lot of conversation with the scammer that owns that website from the time where a user lost 260$ because of him stealing the account and then starting a trade... stealing funds that way. So you are lucky he only changed pass.

Thanks for your reply.

I never posted a message which an address to my bitcoin wallet. But can't an admin see which email adres was originally used to create my losmilos account? It was losmilos@hotmail.com. Isn't that sufficient to get my account back? 

After they got my Bitcointalk account, I also received a phishing mail to verify my account at Hotmail and one to verify my Poloniex account. But those were very poor phishing sites using a hacked website. I'm very glad to use different passwords for all my logins, otherwise my Poloniex account would have been emptied too...
SebastianJu (OP)
Legendary
*
Offline Offline

Activity: 2674
Merit: 1082


Legendary Escrow Service - Tip Jar in Profile


View Profile WWW
April 13, 2016, 08:47:15 PM
 #19

Never heard of an account reinstated only because of a previous email address.

Account could have changed ownership maybe and the new user changed the email. And did not know or care about getting a signature as proof of a non hacked account.

Most probably the account was sold already. Should be seen in seclog.

minifrij


It makes sense when experienced users can see the blocked url...
The problem is that with the trend of selling accounts, rank is no longer correspondent to how experienced the user is. This is proven by the amount of Senior-Hero members that don't understand something simple such as the Activity system.

Exactly... sometimes it looks like users on here tell their mom and their uncle about how to earn big money on a forum. They might even earn more than they could earn working in their country fulltime. Or at least it's a great addition.



Lectori


Now I can't get to my account "losmilos" anymore, they changed my password and email address.

You are lucky they only did that. And it's a pity that this same url still is in bad use. I had a lot of conversation with the scammer that owns that website from the time where a user lost 260$ because of him stealing the account and then starting a trade... stealing funds that way. So you are lucky he only changed pass.

Thanks for your reply.

I never posted a message which an address to my bitcoin wallet. But can't an admin see which email adres was originally used to create my losmilos account? It was losmilos@hotmail.com. Isn't that sufficient to get my account back? 

After they got my Bitcointalk account, I also received a phishing mail to verify my account at Hotmail and one to verify my Poloniex account. But those were very poor phishing sites using a hacked website. I'm very glad to use different passwords for all my logins, otherwise my Poloniex account would have been emptied too...

Please ALWAYS contact me through bitcointalk pm before sending someone coins.
Lectori
Newbie
*
Offline Offline

Activity: 5
Merit: 0


View Profile
April 13, 2016, 10:25:56 PM
 #20

Never heard of an account reinstated only because of a previous email address.

Account could have changed ownership maybe and the new user changed the email. And did not know or care about getting a signature as proof of a non hacked account.

Most probably the account was sold already. Should be seen in seclog.


I understand. I'm not a regular poster, so I do not care much about the loss of my account. But on the internet I often use the nick Losmilos and it will be strange to see someone posting using my nick... Until now they haven't used my account for posting and I don't think they will. I think they just wanted to get to my Poloniex account.

Why would someone buy my account? It's cheaper to create one.

Thanks for tipping me on the seclog. I can see they changed my password on march the 31st.
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!