Bitcoin Forum
July 13, 2024, 09:46:37 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Closed  (Read 284 times)
tungaqhd (OP)
Hero Member
*****
Offline Offline

Activity: 1540
Merit: 508


View Profile
December 06, 2017, 06:38:42 AM
Last edit: July 29, 2018, 04:11:36 AM by tungaqhd
 #1

Closed
coin_curious
Full Member
***
Offline Offline

Activity: 409
Merit: 103



View Profile WWW
December 06, 2017, 01:48:23 PM
 #2

how do they steal api key?

do they read or download config file?




◄ freebcc.org ►
tungaqhd (OP)
Hero Member
*****
Offline Offline

Activity: 1540
Merit: 508


View Profile
December 06, 2017, 02:01:54 PM
 #3

how do they steal api key?

do they read or download config file?




I just guess, because i can't find their address in my database. It could be local attack or  Huh Huh Huh
adi016
Member
**
Offline Offline

Activity: 336
Merit: 11


View Profile WWW
December 06, 2017, 02:28:46 PM
 #4

how do they steal api key?

do they read or download config file?




I just guess, because i can't find their address in my database. It could be local attack or  Huh Huh Huh

I think there is some problem in script because one more user asked me that he also facing same issue.. His faucet is draining continuously
taiem1407
Newbie
*
Offline Offline

Activity: 56
Merit: 0


View Profile
December 06, 2017, 02:47:04 PM
 #5

thanks for the warning. Site is no longer secure.
coin_curious
Full Member
***
Offline Offline

Activity: 409
Merit: 103



View Profile WWW
December 06, 2017, 03:08:05 PM
 #6

I have added .htaccess restriction to config.php, faucethub.php and function.php. allowed only server ip access.

then made new database user/pw/name.
regenerated api and changed it all. now only faucet has access to those files.


I hope this will restict and prevent stealing those access codes/api and sending info to thos files.

◄ freebcc.org ►
adi016
Member
**
Offline Offline

Activity: 336
Merit: 11


View Profile WWW
December 06, 2017, 03:36:22 PM
 #7

I have added .htaccess restriction to config.php, faucethub.php and function.php. allowed only server ip access.

then made new database user/pw/name.
regenerated api and changed it all. now only faucet has access to those files.


I hope this will restict and prevent stealing those access codes/api and sending info to thos files.

That's good, but if you see any problem then Change your faucet script
coin_curious
Full Member
***
Offline Offline

Activity: 409
Merit: 103



View Profile WWW
December 06, 2017, 03:44:55 PM
 #8

I have added .htaccess restriction to config.php, faucethub.php and function.php. allowed only server ip access.

then made new database user/pw/name.
regenerated api and changed it all. now only faucet has access to those files.


I hope this will restict and prevent stealing those access codes/api and sending info to thos files.

That's good, but if you see any problem then Change your faucet script

my problem is that every faucet script ive used got botted eventualy. I think ive used 4 diffrent ones by now.

I like how it all works now and just want it more secure. I do get less claims in already now.

Now i like to find out if i close port 3306 for MySQL database will be even better. but just havent figured that out yet.

◄ freebcc.org ►
tungaqhd (OP)
Hero Member
*****
Offline Offline

Activity: 1540
Merit: 508


View Profile
December 06, 2017, 03:49:01 PM
 #9

I have many ideas with this script if it hasn't got hacked. Undecided Undecided Undecided LOL hope someone can help me fix it now.
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!