Bitcoin Forum
May 05, 2024, 10:37:23 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Despite email confirmation, accounts still got hacked  (Read 134 times)
Dorkie (OP)
Member
**
Offline Offline

Activity: 420
Merit: 13


View Profile
December 14, 2017, 12:40:05 PM
 #1

Despite email confirmation in place, accounts still got hacked.

Man, you admin and mod guys at Bitcointalk forum are truly genuinely sinful and corrupt.

If I were in charge of this forum, I would have killed ALL account hacks within the very first year itself.

Either you guys are purely incompetent or else all the persistent account hacks are deliberate and endorsed by the admin themselves.
1714905443
Hero Member
*
Offline Offline

Posts: 1714905443

View Profile Personal Message (Offline)

Ignore
1714905443
Reply with quote  #2

1714905443
Report to moderator
1714905443
Hero Member
*
Offline Offline

Posts: 1714905443

View Profile Personal Message (Offline)

Ignore
1714905443
Reply with quote  #2

1714905443
Report to moderator
1714905443
Hero Member
*
Offline Offline

Posts: 1714905443

View Profile Personal Message (Offline)

Ignore
1714905443
Reply with quote  #2

1714905443
Report to moderator
If you want to be a moderator, report many posts with accuracy. You will be noticed.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
mprep
Global Moderator
Legendary
*
Offline Offline

Activity: 3766
Merit: 2610


In a world of peaches, don't ask for apple sauce


View Profile WWW
December 14, 2017, 01:11:59 PM
 #2

There is no email confirmation (you can set your email to pretty much anything AFAIK). Ask theymos why; I'm not quite sure myself. It'd stop most of these recent hacks.

Dorkie (OP)
Member
**
Offline Offline

Activity: 420
Merit: 13


View Profile
December 14, 2017, 01:45:35 PM
 #3

There is no email confirmation (you can set your email to pretty much anything AFAIK). Ask theymos why; I'm not quite sure myself. It'd stop most of these recent hacks.

I found this previous post by theymos himself on email security notification @ https://bitcointalk.org/index.php?topic=2282758

I added email notifications for some security events:

Whenever your password is changed (except by an administrator), you will get an email about it.

Whenever your email is changed (except by an administrator), your old email will get an email about it with a link to lock your account. The link is valid for 14 days.

Let me know if you find any bugs.

Are you telling me this email security notification was just a show (i.e. lip service)? And that nothing significant was really implemented / put in place to secure the account?

My goodness. How deep does the admins' corruption goes.
mprep
Global Moderator
Legendary
*
Offline Offline

Activity: 3766
Merit: 2610


In a world of peaches, don't ask for apple sauce


View Profile WWW
December 14, 2017, 01:52:34 PM
 #4

There is no email confirmation (you can set your email to pretty much anything AFAIK). Ask theymos why; I'm not quite sure myself. It'd stop most of these recent hacks.

I found this previous post by theymos himself on email security notification @ https://bitcointalk.org/index.php?topic=2282758

I added email notifications for some security events:

Whenever your password is changed (except by an administrator), you will get an email about it.

Whenever your email is changed (except by an administrator), your old email will get an email about it with a link to lock your account. The link is valid for 14 days.

Let me know if you find any bugs.

Are you telling me this email security notification was just a show (i.e. lip service)? And that nothing significant was really implemented / put in place to secure the account?

My goodness. How deep does the admins' corruption goes.
As it's written within the thread, it notifies a user and allows him to block the account within 14 days. Afterwhich the user has to go through the stickied procedure (signed message) to recover their account.

Dorkie (OP)
Member
**
Offline Offline

Activity: 420
Merit: 13


View Profile
December 14, 2017, 01:54:06 PM
 #5

As it's written within the thread, it notifies a user and allows him to block the account within 14 days.

Why then do we still see accounts getting hacked and the original owners reporting the hacks here?
mprep
Global Moderator
Legendary
*
Offline Offline

Activity: 3766
Merit: 2610


In a world of peaches, don't ask for apple sauce


View Profile WWW
December 14, 2017, 02:00:38 PM
 #6

As it's written within the thread, it notifies a user and allows him to block the account within 14 days.

Why then do we still see accounts getting hacked and the original owners reporting the hacks here?
Because they either haven't checked their email, have checked it after the 14 days have passed, have set their email to a random bit of text / lost access over their email account, had their account hacked before the notification was implemented or blocked it via the aforementioned means and have not posted / PMed a BTC address or PGP public key in order to recover it.

Dorkie (OP)
Member
**
Offline Offline

Activity: 420
Merit: 13


View Profile
December 14, 2017, 02:11:49 PM
 #7

Because they either haven't checked their email, have checked it after the 14 days have passed, have set their email to a random bit of text / lost access over their email account, had their account hacked before the notification was implemented or blocked it via the aforementioned means and have not posted / PMed a BTC address or PGP public key in order to recover it.

Since I never stake any bitcoin address here, so I guess my hacked account is 100% unrecoverable.
Yes, I can email/pm theymos and every other person in charge but I don't think they will entertain me.

They will probably laugh in their hearts and say within themselves, "Ha ha haaa, serves you right, Dorky, for not staking your bitcoin address here. Tough luck for you. There is nothing I can/will do about it."
ibminer
Legendary
*
Offline Offline

Activity: 1819
Merit: 2792


Goonies never say die.


View Profile WWW
December 14, 2017, 02:27:48 PM
 #8

If you had never posted a BTC address in the past on that account, you are not likely to get it recovered. However, the account does appear to have changed hands to me and I've left feedback to warn others.

Dorkie (OP)
Member
**
Offline Offline

Activity: 420
Merit: 13


View Profile
December 14, 2017, 02:29:57 PM
 #9

If you had never posted a BTC address in the past on that account, you are not likely to get it recovered. However, the account does appear to have changed hands to me and I've left feedback to warn others.

Thank you, thank you, thank you, thank you, thank you, and thank you for your gesture of support.
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!