Bitcoin Forum
April 20, 2024, 04:30:52 AM *
News: Latest Bitcoin Core release: 26.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: SOME CASINO WAS HACKED. CHANGE YOUR PASSWORDS!  (Read 622 times)
dogedice.me (OP)
Hero Member
*****
Offline Offline

Activity: 776
Merit: 522



View Profile WWW
November 27, 2017, 05:40:33 PM
 #1

Hello,

Our system alerted us that someone tried to sign in to around ~200 accounts with a VALID password! Most accounts are safe as we require to confirm new device with email. However, it means that some casino was hacked and those data were used to sign in to our system.

Currently, we block those accounts proactively. Unfortunately, one user was affected as it seems that password was the same for email as well and the hacker was able to withdraw funds.

We recommend changing the passwords ASAP and turn on 2FA.

Regards,
BitDice Team.

.BitDice.               ▄▄███▄▄
           ▄▄██▀▀ ▄ ▀▀██▄▄
      ▄▄█ ▀▀  ▄▄█████▄▄  ▀▀ █▄▄
  ▄▄██▀▀     ▀▀ █████ ▀▀     ▀▀██▄▄
██▀▀ ▄▄██▀      ▀███▀      ▀██▄▄ ▀▀██
██  ████▄▄       ███       ▄▄████  ██
██  █▀▀████▄▄  ▄█████▄  ▄▄████▀▀█  ██
██  ▀     ▀▀▀███████████▀▀▀     ▀  ██
             ███████████
██  ▄     ▄▄▄███████████▄▄▄     ▄  ██
██  █▄▄████▀▀  ▀█████▀  ▀▀████▄▄█  ██
██  ████▀▀       ███       ▀▀████  ██
██▄▄ ▀▀██▄      ▄███▄      ▄██▀▀ ▄▄██
  ▀▀██▄▄     ▄▄ █████ ▄▄     ▄▄██▀▀
      ▀▀█ ▄▄  ▀▀█████▀▀  ▄▄ █▀▀
           ▀▀██▄▄ ▀ ▄▄██▀▀
               ▀▀███▀▀
        ▄▄███████▄▄
     ▄███████████████▄
    ████▀▀       ▀▀████
   ████▀           ▀████
   ████             ████
   ████ ▄▄▄▄▄▄▄▄▄▄▄ ████
▄█████████████████████████▄
██████████▀▀▀▀▀▀▀██████████
████                   ████
████                   ████
████                   ████
████                   ████
████                   ████
████▄                 ▄████
████████▄▄▄     ▄▄▄████████
  ▀▀▀█████████████████▀▀▀
        ▀▀▀█████▀▀▀
▄▄████████████████████████████████▄▄
██████████████████████████████████████
█████                            █████
█████                            █████
█████                            █████
█████                            █████
█████                     ▄▄▄▄▄▄▄▄▄▄
█████                   ▄█▀▀▀▀▀▀▀▀▀▀█▄
█████                   ██          ██
█████                   ██          ██
█████                   ██          ██
██████████████████▀▀███ ██          ██
 ████████████████▄  ▄██ ██          ██
   ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀ ██          ██
             ██████████ ██          ██
           ▄███████████ ██████▀▀██████
          █████████████  ▀████▄▄████▀
[/]
1713587452
Hero Member
*
Offline Offline

Posts: 1713587452

View Profile Personal Message (Offline)

Ignore
1713587452
Reply with quote  #2

1713587452
Report to moderator
1713587452
Hero Member
*
Offline Offline

Posts: 1713587452

View Profile Personal Message (Offline)

Ignore
1713587452
Reply with quote  #2

1713587452
Report to moderator
Be very wary of relying on JavaScript for security on crypto sites. The site can change the JavaScript at any time unless you take unusual precautions, and browsers are not generally known for their airtight security.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1713587452
Hero Member
*
Offline Offline

Posts: 1713587452

View Profile Personal Message (Offline)

Ignore
1713587452
Reply with quote  #2

1713587452
Report to moderator
milewilda
Legendary
*
Offline Offline

Activity: 3094
Merit: 1127



View Profile
November 27, 2017, 05:50:01 PM
 #2

Hello,

Our system alerted us that someone tried to sign in to around ~200 accounts with a VALID password! Most accounts are safe as we require to confirm new device with email. However, it means that some casino was hacked and those data were used to sign in to our system.

Currently, we block those accounts proactively. Unfortunately, one user was affected as it seems that password was the same for email as well and the hacker was able to withdraw funds.

We recommend changing the passwords ASAP and turn on 2FA.

Regards,
BitDice Team.
Thanks for the warning. 200 accounts with valid password thats really a serious breach. This is why i do really have confidence on having those email verification specially when an account been logged into a different IP. For Co-gamblers that do have similar credentials on most accounts being used better to changed password before its too late.

Thank you again for the information given.

s0lidus
Full Member
***
Offline Offline

Activity: 909
Merit: 118


CryptoGames: Revamped Games, Multiple Coins


View Profile WWW
November 27, 2017, 06:39:04 PM
 #3

2FA ftw! Always turn on 2FA security on accounts where money is involved.

btc_angela
Hero Member
*****
Offline Offline

Activity: 2590
Merit: 542



View Profile
November 27, 2017, 06:45:40 PM
 #4

Hello,

Our system alerted us that someone tried to sign in to around ~200 accounts with a VALID password! Most accounts are safe as we require to confirm new device with email. However, it means that some casino was hacked and those data were used to sign in to our system.

Currently, we block those accounts proactively. Unfortunately, one user was affected as it seems that password was the same for email as well and the hacker was able to withdraw funds.

We recommend changing the passwords ASAP and turn on 2FA.

Regards,
BitDice Team.

Thanks for the warning. This is a serious breach indeed and good thing that Bitdice system can immediately alerted with this kind of attempt. This news should get out quickly to other members around to make appropriate actions. And 2FA may add another layer of security for us that's why it is important to really enabled it.

███████████████████████
████████████████████
██████████████████
████████████████████
███▀▀▀█████████████████
███▄▄▄█████████████████
██████████████████████
██████████████████████
███████████████████████
█████████████████████
███████████████████
███████████████
████████████████████████
███████████████████████████
███████████████████████████
███████████████████████████
█████████▀▀██▀██▀▀█████████
█████████████▄█████████████
███████████████████████
████████████████████████
████████████▄█▄█████████
████████▀▀███████████
██████████████████
▀███████████████████▀
▀███████████████▀
█████████████████████████
O F F I C I A L   P A R T N E R S
▬▬▬▬▬▬▬▬▬▬
ASTON VILLA FC
BURNLEY FC
BK8?.
..PLAY NOW..
devans
Sr. Member
****
Offline Offline

Activity: 528
Merit: 368


View Profile
November 27, 2017, 08:25:15 PM
 #5

What makes you believe that a casino was hacked? The breach could have occurred on any other site as well, could it not?

Unfortunately many people tend to reuse just a few familiar passwords across all of their accounts. This is the reason bustadice forces users to use a randomly generated password rather than allowing them to choose one themselves.
marlboroza
Legendary
*
Offline Offline

Activity: 1932
Merit: 2270


View Profile
November 27, 2017, 08:25:24 PM
 #6

Do you have info which one?
What makes you believe that a casino was hacked? The breach could have occurred on any other site as well, could it not?

Unfortunately many people tend to reuse just a few familiar passwords across all of their accounts. This is the reason bustadice forces users to use a randomly generated password rather than allowing them to choose one themselves.
Something similar happened few months ago https://bitcointalk.org/index.php?topic=1902543.0, passwords were stolen from bitsler.
jpcfan
Hero Member
*****
Offline Offline

Activity: 905
Merit: 502

I miss dooglus


View Profile
November 27, 2017, 09:25:48 PM
 #7

damn these guys are good. they got my 13 doge from a site

120%50%    ████████
    ████████
  ████████
  ████████
████████
████████
████████
  ████████
  ████████
    ████████
    ████████
DUCK
▄▄█████████▄▄
▄██████████████████▄
▄█████████████████████████▄
▄█████████████████████████████▄
█████████████████████████████████
███████████████████████████████████
█████████████████████████████████████
█████████████████████████████████████
█████████████████████████████████████
█████████████████████████████████████
█████████████████████████████████████
█████████████████████████████████
█████████████████████████████████
▀█████████████████████████████▀
▀█████████████████████████▀
▀███████████████████▀
▀▀█████████▀▀
DICE████████
████████
  ████████
  ████████
    ████████
    ████████
    ████████
  ████████
  ████████
████████
████████
iluvbitcoins
Legendary
*
Offline Offline

Activity: 2198
Merit: 1150


Freedom&Honor


View Profile
November 27, 2017, 10:48:56 PM
 #8

Do you have info which one?
What makes you believe that a casino was hacked? The breach could have occurred on any other site as well, could it not?

Unfortunately many people tend to reuse just a few familiar passwords across all of their accounts. This is the reason bustadice forces users to use a randomly generated password rather than allowing them to choose one themselves.
Something similar happened few months ago https://bitcointalk.org/index.php?topic=1902543.0, passwords were stolen from bitsler.

Don't forget BetCoin.Ag
Got breached myself too, never used the same password on multiple websites again.

@BitDice
Thanks for the heads up Smiley

People need to be aware how easily websites get hacked.

Use password managers!

Looking for a signature campaign.
icanscript
Hero Member
*****
Offline Offline

Activity: 686
Merit: 502



View Profile
November 28, 2017, 06:28:59 AM
 #9

I think that Google Authenticator of 2FA is more effective and safe.
Phone, quite another device. And it is unlikely to be hacked with a computer.
On many websites this works!
Bitinity
Legendary
*
Offline Offline

Activity: 3052
Merit: 1310



View Profile
November 28, 2017, 06:29:19 AM
 #10

This is why we should have strong password with complicated combination and obviously setting 2fa will be the best thing to do. Using the same password and email to register is some sites is also not recommended. Indeed it is easy to remember if we use same email and password, that's the only reason why people do it but they forget about safety.

.
.DuelbitsSPORTS.
▄▄▄███████▄▄▄
▄▄█████████████████▄▄
▄██████████████████████▄
██████████████████████████
███████████████████████████
██████████████████████████████
██████████████████████████████
█████████████████████████████
███████████████████████████
█████████████████████████
▀████████████████████████
▀▀███████████████████
██████████████████████████████
██
██
██
██

██
██
██
██

██
██
██
████████▄▄▄▄██▄▄▄██
███▄█▀▄▄▀███▄█████
█████████████▀▀▀██
██▀ ▀██████████████████
███▄███████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
▀█████████████████████▀
▀▀███████████████▀▀
▀▀▀▀█▀▀▀▀
OFFICIAL EUROPEAN
BETTING PARTNER OF
ASTON VILLA FC
██
██
██
██

██
██
██
██

██
██
██
10%   CASHBACK   
          100%   MULTICHARGER   
lite
Legendary
*
Offline Offline

Activity: 1400
Merit: 1009


View Profile
November 28, 2017, 04:25:06 PM
 #11

Hello,

Our system alerted us that someone tried to sign in to around ~200 accounts with a VALID password! Most accounts are safe as we require to confirm new device with email. However, it means that some casino was hacked and those data were used to sign in to our system.

Currently, we block those accounts proactively. Unfortunately, one user was affected as it seems that password was the same for email as well and the hacker was able to withdraw funds.

We recommend changing the passwords ASAP and turn on 2FA.

Regards,
BitDice Team.
Thanks for the heads up! i never use same password on sites and i always have 2fa enabled, i feel safe.  Cheesy

i always choose 2 fa, what do you think guys  this is good choise right?
Yes, absolutely. although 2fa based on phone call/sms is insecure, it's better to use google authenticator.
LEINADbtc
Member
**
Offline Offline

Activity: 240
Merit: 10


View Profile
November 28, 2017, 04:32:18 PM
 #12

Damn this is crazy.
I never leave coins on a casino without 2fa.
You shouldn't too.

Glad u had 2fa..

——< Datecoin | The fastest successful match. The hottest ICO ever. >——
ANN | Medium | Twitter Facebook | LinkdedIn | Telegram
badjacks99
Hero Member
*****
Offline Offline

Activity: 1050
Merit: 502


View Profile
November 28, 2017, 05:28:09 PM
 #13

i always choose 2 fa, what do you think guys  this is good choise right?

 Oh yeah any small steps you can take to secure your account is always a bonus. Unique password with words, numbers and characters can still be very vulnerable. I would always recommend to use two factor authentication when available.
adaseb
Legendary
*
Offline Offline

Activity: 3738
Merit: 1708



View Profile
November 28, 2017, 06:34:41 PM
 #14

I don't think it was a casino or bitcointalk forum. I think this is the Bitmain breach that happened a few months ago.

They barely released any details of the hack but if you used the same username or email, you would get many failed logging attempts to many bitcoin exchanges and services.

.BEST..CHANGE.███████████████
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
███████████████
..BUY/ SELL CRYPTO..
TengoNakagata
Newbie
*
Offline Offline

Activity: 2
Merit: 0


View Profile
November 28, 2017, 10:20:54 PM
 #15

My password is too strong to be destroyed. password1337 is too powerful for the hackers out there!
That's a problem of the common user, they mostly use the same password for everything. at least add the 2FA, I know it's a little bothering, but it's still something that saves your cash.
Lionidas
Hero Member
*****
Offline Offline

Activity: 1008
Merit: 1012


View Profile
November 29, 2017, 01:43:19 AM
 #16

This is a warning to most people who hold their funds in their casino accounts to withdraw them as soon as they can so not to have themselves fall victim to these type of hacker attacks on the bitcoin casinos where they go to.

It can happen to any casino site and not just this one mentioned.
MinerHQ
Legendary
*
Offline Offline

Activity: 1456
Merit: 1023


View Profile
November 29, 2017, 01:49:29 AM
 #17

This is a warning to most people who hold their funds in their casino accounts to withdraw them as soon as they can so not to have themselves fall victim to these type of hacker attacks on the bitcoin casinos where they go to.

It can happen to any casino site and not just this one mentioned.

Nothing wrong in holding your money on a trusted gambling sites for some time if you plan to gamble again. But before you load your money to any online site you should enable 2fa function which will protect from these kinds of hacks. Also, don't keep the same password for your casino account and email id.
Stunna
Legendary
*
Offline Offline

Activity: 3192
Merit: 1278


Primedice.com, Stake.com


View Profile
November 29, 2017, 02:02:36 AM
 #18

I think that Google Authenticator of 2FA is more effective and safe.
Phone, quite another device. And it is unlikely to be hacked with a computer.
On many websites this works!

Cheers for heads up, another reason to use 2FA and not re-use passwords.

Stake.com Fastest growing crypto casino & sportsbook
Primedice.com The original bitcoin instant dice game
chris200x9
Legendary
*
Offline Offline

Activity: 1316
Merit: 1011


View Profile
November 29, 2017, 06:27:50 AM
 #19

i always choose 2 fa, what do you think guys  this is good choise right?

 Oh yeah any small steps you can take to secure your account is always a bonus. Unique password with words, numbers and characters can still be very vulnerable. I would always recommend to use two factor authentication when available.

How strong your pass is not so important if you enable 2fa security feature in your account because it will protect from the hackers to login into your account. The main reason for these things to happen is people use the same combination of email and pass to many sites to remember easily. Need to learn from these mistakes.
veleten
Legendary
*
Offline Offline

Activity: 2016
Merit: 1106



View Profile
November 29, 2017, 11:34:57 AM
 #20

it can't be a casino,usually they do not store passwords in a plain form,just the hashes
also "bitsler hack" was not proven,since there was no evidence to confirm it,just the "hacker's" claim
never ever reuse your passwords
invest in a simple password manager or even get one for free (like lastpass,for example)
and don't register at  dubious mining,free bitcoin doublers etc. sites

          ▄▄████▄▄
      ▄▄███▀    ▀███▄▄
   ▄████████▄▄▄▄████████▄
  ▀██████████████████████▀
▐█▄▄ ▀▀████▀    ▀████▀▀ ▄▄██
▐█████▄▄ ▀██▄▄▄▄██▀ ▄▄██▀  █
▐██ ▀████▄▄ ▀██▀ ▄▄████  ▄██
▐██  ███████▄  ▄████████████
▐██  █▌▐█ ▀██  ██████▀  ████
▐██  █▌▐█  ██  █████  ▄█████
 ███▄ ▌▐█  ██  ████████████▀
  ▀▀████▄ ▄██  ██▀  ████▀▀
      ▀▀█████  █  ▄██▀▀
         ▀▀██  ██▀▀
.WINDICE.████
██
██
██
██
██
██
██
██
██
██
██
██
████
      ▄████████▀
     ▄████████
    ▄███████▀
   ▄███████▀
  ▄█████████████
 ▄████████████▀
▄███████████▀
     █████▀
    ████▀
   ████
  ███▀
 ██▀
█▀

██
██
██
██
██
██
██
██
██
██
██
██
     ▄▄█████▄   ▄▄▄▄
    ██████████▄███████▄
  ▄████████████████████▌
 ████████████████████████
▐████████████████████████▌
 ▀██████████████████████▀
     ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
     ▄█     ▄█     ▄█
   ▄██▌   ▄██▌   ▄██▌
   ▀▀▀    ▀▀▀    ▀▀▀
       ▄█     ▄█
     ▄██▌   ▄██▌
     ▀▀▀    ▀▀▀

██
██
██
██
██
██
██
██
██
██
██
██
                   ▄█▄
                 ▄█████▄
                █████████▄
       ▄       ██ ████████▌
     ▄███▄    ▐█▌▐█████████
   ▄███████▄   ██ ▀███████▀
 ▄███████████▄  ▀██▄▄████▀
▐█ ▄███████████    ▀▀▀▀
█ █████████████▌      ▄
█▄▀████████████▌    ▄███▄
▐█▄▀███████████    ▐█▐███▌
 ▀██▄▄▀▀█████▀      ▀█▄█▀
   ▀▀▀███▀▀▀
████
  ██
  ██
  ██
  ██
  ██
  ██
  ██
  ██
  ██
  ██
  ██
  ██
████


▄▄████████▄▄
▄████████████████▄
▄████████████████████▄
███████████████▀▀  █████
████████████▀▀      ██████
▐████████▀▀   ▄▄     ██████▌
▐████▀▀    ▄█▀▀     ███████▌
▐████████ █▀        ███████▌
████████ █ ▄███▄   ███████
████████████████▄▄██████
▀████████████████████▀
▀████████████████▀
▀▀████████▀▀
iePlay NoweiI
I
I
I
[/t
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!