Bitcoin Forum
May 11, 2024, 10:49:10 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: .  (Read 2165 times)
ingrownpocket (OP)
Legendary
*
Offline Offline

Activity: 952
Merit: 1000


View Profile
.
August 12, 2013, 03:52:49 PM
Last edit: January 12, 2018, 02:58:43 PM by Carlos L.
 #1

.
1715467750
Hero Member
*
Offline Offline

Posts: 1715467750

View Profile Personal Message (Offline)

Ignore
1715467750
Reply with quote  #2

1715467750
Report to moderator
1715467750
Hero Member
*
Offline Offline

Posts: 1715467750

View Profile Personal Message (Offline)

Ignore
1715467750
Reply with quote  #2

1715467750
Report to moderator
The forum strives to allow free discussion of any ideas. All policies are built around this principle. This doesn't mean you can post garbage, though: posts should actually contain ideas, and these ideas should be argued reasonably.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1715467750
Hero Member
*
Offline Offline

Posts: 1715467750

View Profile Personal Message (Offline)

Ignore
1715467750
Reply with quote  #2

1715467750
Report to moderator
1715467750
Hero Member
*
Offline Offline

Posts: 1715467750

View Profile Personal Message (Offline)

Ignore
1715467750
Reply with quote  #2

1715467750
Report to moderator
BurtW
Legendary
*
Offline Offline

Activity: 2646
Merit: 1136

All paid signature campaigns should be banned.


View Profile WWW
August 12, 2013, 03:54:01 PM
 #2

No.

Our family was terrorized by Homeland Security.  Read all about it here:  http://www.jmwagner.com/ and http://www.burtw.com/  Any donations to help us recover from the $300,000 in legal fees and forced donations to the Federal Asset Forfeiture slush fund are greatly appreciated!
John (John K.)
Global Troll-buster and
Legendary
*
Offline Offline

Activity: 1288
Merit: 1226


Away on an extended break


View Profile
August 12, 2013, 03:57:52 PM
 #3

LOL. Theymos sounds like my Nigerian prince promising me my own island!
Jan
Legendary
*
Offline Offline

Activity: 1043
Merit: 1002



View Profile
August 12, 2013, 04:07:35 PM
 #4

LOL. Theymos sounds like my Nigerian prince promising me my own island!
Hey you got the same donation address as me. Must be a coincidence related to the bad random generator on Android

Mycelium let's you hold your private keys private.
John (John K.)
Global Troll-buster and
Legendary
*
Offline Offline

Activity: 1288
Merit: 1226


Away on an extended break


View Profile
August 12, 2013, 04:09:28 PM
 #5

PS: Can you post the entire email header here (taking out your email addy if you want)


LOL. Theymos sounds like my Nigerian prince promising me my own island!
Hey you got the same donation address as me. Must be a coincidence related to the bad random generator on Android

What? Huh
pedrog
Legendary
*
Offline Offline

Activity: 2786
Merit: 1031



View Profile
August 12, 2013, 04:59:58 PM
 #6

I haven't receive it (yet), people who receive this email have their email address made public? Any reports of a database compromised or BitcoinTalk?

nimda
Hero Member
*****
Offline Offline

Activity: 784
Merit: 1000


0xFB0D8D1534241423


View Profile
August 12, 2013, 05:00:19 PM
 #7

Simple address spoof; not legitimate.

Also the forum is drowning in BTC right now.
theymos
Administrator
Legendary
*
Offline Offline

Activity: 5194
Merit: 12983


View Profile
August 12, 2013, 05:43:29 PM
 #8

No, I didn't send that.

1NXYoJ5xU91Jp83XfVMHwwTUyZFK64BoAD
qwk
Donator
Legendary
*
Offline Offline

Activity: 3542
Merit: 3411


Shitcoin Minimalist


View Profile
August 12, 2013, 05:52:35 PM
 #9

That's one of the reasons why I'd not recommend making your email address public on a web forum.
IT just makes you an easy target for SCAM-SPAM.


CONTRIBUTOR BENEFITS
- 0.1+ BTC = Donors crown before nick (everywhere your username is shown)

A Donator's crown would suit me nice, though Cheesy

And while I'm dreaming, I'd like to have a pony.

Yeah, well, I'm gonna go build my own blockchain. With blackjack and hookers! In fact forget the blockchain.
theymos
Administrator
Legendary
*
Offline Offline

Activity: 5194
Merit: 12983


View Profile
August 12, 2013, 06:01:43 PM
 #10

Surprisingly, no one tried actually replying to the email. If they had, they would have reached me. (This is not a good way of contacting me, though -- I may disable theymos@bitcointalk.org in the future.)

1NXYoJ5xU91Jp83XfVMHwwTUyZFK64BoAD
escrow.ms
Legendary
*
Offline Offline

Activity: 1274
Merit: 1004


View Profile
August 12, 2013, 06:04:54 PM
 #11

If it's a mass mail, someone should send 0.00000001 without fees to that address with a warning note like "IT'S A SCAM" and this thread's link. Grin
vgo
Legendary
*
Offline Offline

Activity: 2072
Merit: 1019



View Profile
August 12, 2013, 09:41:47 PM
 #12

I've received in Gmail.
escrow.ms
Legendary
*
Offline Offline

Activity: 1274
Merit: 1004


View Profile
August 12, 2013, 10:06:43 PM
 #13

I've received in Gmail.
Because your email is on your profile.
vgo
Legendary
*
Offline Offline

Activity: 2072
Merit: 1019



View Profile
August 12, 2013, 10:42:54 PM
 #14

I've received in Gmail.
Because your email is on your profile.

Obvious.
Anduck
Legendary
*
Offline Offline

Activity: 1511
Merit: 1072


quack


View Profile
August 13, 2013, 04:47:09 AM
 #15

PS: Can you post the entire email header here (taking out your email addy if you want)


LOL. Theymos sounds like my Nigerian prince promising me my own island!
Hey you got the same donation address as me. Must be a coincidence related to the bad random generator on Android

What? Huh

I'm afraid you missed a joke...

Mike Hearn
Legendary
*
Offline Offline

Activity: 1526
Merit: 1129


View Profile
August 13, 2013, 01:54:34 PM
 #16

There's a simple way to shut down this kind of phish: implement DKIM and DMARC.

Firstly, you make sure all mail being sent by bitcointalk.org is DKIM signed. It just boils down to configuring your SMTP server and DNS, more or less. Then all mail is cryptographically signed automatically.

Secondly, add another DNS TXT record that specifies a DMARC policy:

http://www.dmarc.org/overview.html

That tells mail engines that understand the protocol that bitcointalk.org should only be sending DKIM signed mail. You can also request reporting. Once you have that configured, compliant mail systems (like gmail and yahoo mail) can be told to automatically spamfolder any forged mail and mail a copy back to you, so you find out about phishing attempts immediately.

WuLabsWuTecH
Sr. Member
****
Offline Offline

Activity: 252
Merit: 250


View Profile
August 15, 2013, 07:38:04 AM
 #17

I didn't realize we could contact theymos by email! (not that I would ever have occasion to)
HeroC
Legendary
*
Offline Offline

Activity: 858
Merit: 1000



View Profile
August 15, 2013, 01:42:30 PM
 #18

I wish donator stats were that cheap.  Tongue
Raize
Donator
Legendary
*
Offline Offline

Activity: 1419
Merit: 1015


View Profile
August 15, 2013, 03:20:50 PM
 #19

Quote
Received: from wl23-f168.wedos.net (wl23-f168.wedos.net. [2a02:2b88:1:4::27])
        by mx.google.com with ESMTPS id t9si28084548eeo.35.2013.08.12.08.32.26
        for <info@carloslago.com>
        (version=TLSv1 cipher=RC4-SHA bits=128/128);
        Mon, 12 Aug 2013 08:32:26 -0700 (PDT)
Received-SPF: pass (google.com: best guess record for domain of w32382@wedos.net designates 2a02:2b88:1:4::27 as permitted sender) client-ip=2a02:2b88:1:4::27;
Authentication-Results: mx.google.com;
       spf=pass (google.com: best guess record for domain of w32382@wedos.net designates 2a02:2b88:1:4::27 as permitted sender) smtp.mail=w32382@wedos.net

Why is Google accepting a random IPv6 address as a legitimate sender for @bitcointalk.org when the spf record for bitcointalk.org only designates its MX servers (presumably IPv4 addresses) as valid?

Bitcointalk.org SPF:
Quote
v=spf1 mx a ~all

For what its worth, I didn't receive this email and I've checked my spam folders to verify.

Maybe this is an argument for going back to doing a hard fail using "-all" instead of the soft fail on "~all".

It's weird Google doesn't even consider this email the least bit suspicious though. It just says "spf-pass" like there's nothing wrong, using wedos.net as the authenticating domain even though the Reply-To: and From: are clearly from a domain NOT associated with wedos.net.
John (John K.)
Global Troll-buster and
Legendary
*
Offline Offline

Activity: 1288
Merit: 1226


Away on an extended break


View Profile
August 15, 2013, 03:44:27 PM
 #20

PS: Can you post the entire email header here (taking out your email addy if you want)


LOL. Theymos sounds like my Nigerian prince promising me my own island!
Hey you got the same donation address as me. Must be a coincidence related to the bad random generator on Android

What? Huh

I'm afraid you missed a joke...

Oops, was too tired when I posted this. Tongue
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!