Bitcoin Forum
November 23, 2017, 11:55:18 AM *
News: Latest stable version of Bitcoin Core: 0.15.1  [Torrent].
 
   Home   Help Search Donate Login Register  
Pages: « 1 [2] 3 »  All
  Print  
Author Topic: iBITCOINTRADE  (Read 5063 times)
bitcoinisfurture
Hero Member
*****
Offline Offline

Activity: 700



View Profile
November 24, 2013, 08:56:16 AM
 #21

iBITCOINTRADE - By when the site will be up and running? Another thing why dont you display In-Progress or Site under construction on Website so that all know the rates displaying their are just on test and easy of you as well.

1511438118
Hero Member
*
Offline Offline

Posts: 1511438118

View Profile Personal Message (Offline)

Ignore
1511438118
Reply with quote  #2

1511438118
Report to moderator
1511438118
Hero Member
*
Offline Offline

Posts: 1511438118

View Profile Personal Message (Offline)

Ignore
1511438118
Reply with quote  #2

1511438118
Report to moderator
1511438118
Hero Member
*
Offline Offline

Posts: 1511438118

View Profile Personal Message (Offline)

Ignore
1511438118
Reply with quote  #2

1511438118
Report to moderator
Join ICO Now A blockchain platform for effective freelancing
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction. Advertise here.
1511438118
Hero Member
*
Offline Offline

Posts: 1511438118

View Profile Personal Message (Offline)

Ignore
1511438118
Reply with quote  #2

1511438118
Report to moderator
1511438118
Hero Member
*
Offline Offline

Posts: 1511438118

View Profile Personal Message (Offline)

Ignore
1511438118
Reply with quote  #2

1511438118
Report to moderator
bitcoinisfurture
Hero Member
*****
Offline Offline

Activity: 700



View Profile
December 04, 2013, 03:06:17 PM
 #22

How's the progress going on Devansh?
ajax3592
Full Member
***
Offline Offline

Activity: 210

Crypto News & Tutorials - Coinramble.com


View Profile
December 07, 2013, 05:25:39 AM
 #23

I am finally ready to roll out the exchange within 10 days.

So when is the website going to start trading?

Crypto news/tutorials >>CoinRamble<<                            >>Netcodepool<<                >>My graphics<<
BitCoinDream
Legendary
*
Offline Offline

Activity: 1246

The revolution will be digital


View Profile
December 09, 2013, 11:35:11 PM
 #24

Hi devansh. First of all congratulations for your project. Its a really interesting one. I was just checking your site and I have 2 questions...

1. How do u handle NEFT ? Manually check your/company's account and approve or taking some other automated method ? If u r using any automated method I would like to know what it is and how secure it is ?

2. I am interested in a buy offer on your site and as I can see u r going to charge from December 12, 2013. So am I allowed to perform that transaction beforehand ?

Subal_Damudar
Newbie
*
Offline Offline

Activity: 15


View Profile
December 11, 2013, 08:34:12 PM
 #25

Hi
New hopeful bitcoiner here.. Cheesy
I was wondering if you people take in cash with no bank trails ? like some local meet up trade Huh? I want to buy my first coins as anonymously as possible...
BitCoinDream
Legendary
*
Offline Offline

Activity: 1246

The revolution will be digital


View Profile
December 12, 2013, 01:40:51 PM
 #26

Hi
New hopeful bitcoiner here.. Cheesy
I was wondering if you people take in cash with no bank trails ? like some local meet up trade Huh? I want to buy my first coins as anonymously as possible...

Yes we will accept cash for small order(less than Rs. 1 lakh) but you will have to deposit it in our bank acc.No local meet ups. NOTE: We are currently in testing phase and are not functional.

Does acceptance of direct cash comply with Indian AML policy ?

sa1
Newbie
*
Offline Offline

Activity: 3


View Profile
December 15, 2013, 02:28:34 AM
 #27


The site is currently open to only Indian citizens and yes, we will require PAN.We have taken certain measures to protect user details and will keep on improving them. Even if the site is hacked, neither any monetary loss can occur nor PAN details will be compromised.
Security Features(some still to be implemented before the launch)

1.sha1 encryption for passwords
2.encryption for what ever data is transfered
3.ssl keeps data over network secured
4.cookies for maintaining session which is also secured by encryption plus ssl

About Us


Plain hashing is highly insecure for passwords. sha1 is not encryption. The passwords are just begging to be stolen. You have to spend a lot of time learning about security best practices, and you should pause release until then. Please use bcrypt, pbkdf2 or scrypt.
subvolatil
Hero Member
*****
Offline Offline

Activity: 546


Cypherpunk and full-time CryptoAnarchist


View Profile
December 15, 2013, 03:37:39 AM
 #28


The site is currently open to only Indian citizens and yes, we will require PAN.We have taken certain measures to protect user details and will keep on improving them. Even if the site is hacked, neither any monetary loss can occur nor PAN details will be compromised.
Security Features(some still to be implemented before the launch)

1.sha1 encryption for passwords
2.encryption for what ever data is transfered
3.ssl keeps data over network secured
4.cookies for maintaining session which is also secured by encryption plus ssl

About Us


Plain hashing is highly insecure for passwords. sha1 is not encryption. The passwords are just begging to be stolen. You have to spend a lot of time learning about security best practices, and you should pause release until then. Please use bcrypt, pkdf2 or scrypt.

+1
Agreed
dc0ded
Jr. Member
*
Offline Offline

Activity: 41


View Profile
December 16, 2013, 10:57:43 AM
 #29


The site is currently open to only Indian citizens and yes, we will require PAN.We have taken certain measures to protect user details and will keep on improving them. Even if the site is hacked, neither any monetary loss can occur nor PAN details will be compromised.
Security Features(some still to be implemented before the launch)

1.sha1 encryption for passwords
2.encryption for what ever data is transfered
3.ssl keeps data over network secured
4.cookies for maintaining session which is also secured by encryption plus ssl

About Us


Plain hashing is highly insecure for passwords. sha1 is not encryption. The passwords are just begging to be stolen. You have to spend a lot of time learning about security best practices, and you should pause release until then. Please use bcrypt, pbkdf2 or scrypt.

Excellent point. Thumbs up for you!

Ignoring the security of your customers, is not a wise thing to do...

I don't think I have a signature yet! Smiley
Benson Samuel
Moderator
Legendary
*
Offline Offline

Activity: 1792


Landscaping Bitcoin for India!


View Profile WWW
December 21, 2013, 01:49:27 PM
 #30

Iv had the code checked by security experts. They could not find any loop hole !!

Nice, hope to see you'll launch soon.

sa1
Newbie
*
Offline Offline

Activity: 3


View Profile
December 23, 2013, 08:54:02 AM
 #31

Iv had the code checked by security experts. They could not find any loop hole !!

This seems rather vague and uninformative, and people would be right to be very very careful. I would however give you the benefit of doubt for now, till you provide more information. Since the features you claimed such as ssl etc seems to be still missing from your beta site, I am not sure what all measures security experts tested.
subvolatil
Hero Member
*****
Offline Offline

Activity: 546


Cypherpunk and full-time CryptoAnarchist


View Profile
December 23, 2013, 09:18:55 PM
 #32

Just had the SSL certi approved..will install it 2day or latest by 2morow. On being told that the passwords would easily be stolen by hackers I had contacted a web security providing company. They have seen the code and "could not find any loop holes".

I dont  think he is concerned with the  loop holes  on the  website at the moment. Security of a  website  can be  compromised  even  with a  simple  0 day. or  even a sql injection attack .  the  problem  here is that  you dont  have  a contingency  plan  regarding security breach, what if your password  file  gets  stolen, you  have only  hashed you password with a SHA1 hash, which can be broken  using  a rainbow table easily. SHA1 and MD5 is not  recommended  any more.  you can use scrypt hash, or  if you dont  want  to  atleast  Salt  your  hashes.

Remember  an  unsalted hash is like passwords  without cloths. 

By the  way  what type of  pentest  did  the company you talked about  do?

 
Benson Samuel
Moderator
Legendary
*
Offline Offline

Activity: 1792


Landscaping Bitcoin for India!


View Profile WWW
December 24, 2013, 05:17:26 AM
 #33

Just had the SSL certi approved..will install it 2day or latest by 2morow. On being told that the passwords would easily be stolen by hackers I had contacted a web security providing company. They have seen the code and "could not find any loop holes".

I dont  think he is concerned with the  loop holes  on the  website at the moment. Security of a  website  can be  compromised  even  with a  simple  0 day. or  even a sql injection attack .  the  problem  here is that  you dont  have  a contingency  plan  regarding security breach, what if your password  file  gets  stolen, you  have only  hashed you password with a SHA1 hash, which can be broken  using  a rainbow table easily. SHA1 and MD5 is not  recommended  any more.  you can use scrypt hash, or  if you dont  want  to  atleast  Salt  your  hashes.

Remember  an  unsalted hash is like passwords  without cloths. 

By the  way  what type of  pentest  did  the company you talked about  do?

 

There is always more than 1 way to learn Smiley

bitcoinisfurture
Hero Member
*****
Offline Offline

Activity: 700



View Profile
December 26, 2013, 03:47:18 PM
 #34

So are you still working with the site or have stopped for the while before RBI comes with the proper guidelines.
newIndia
Legendary
*
Offline Offline

Activity: 1330


View Profile
December 27, 2013, 03:23:24 PM
 #35

work is still on

Still On ? Good Luck Smiley

bitcoinisfurture
Hero Member
*****
Offline Offline

Activity: 700



View Profile
February 02, 2014, 08:57:25 AM
 #36

No update? What is the status is it still in progress or worked stopped due to regulations?
devansh1991
Full Member
***
Offline Offline

Activity: 139



View Profile
February 02, 2014, 02:29:03 PM
 #37

Never stopped working on the website. A visit to the website should provide a pretty clear picture regarding the status. I won't say anything till I have everything in place.
devansh1991
Full Member
***
Offline Offline

Activity: 139



View Profile
February 06, 2014, 04:08:39 PM
 #38

pls check if the How It Works page is still displaying a crossed out https or not
devansh1991
Full Member
***
Offline Offline

Activity: 139



View Profile
March 01, 2014, 12:18:31 PM
 #39

I have all the pieces in place now. All set to launch tomorrow i.e Sunday, 2nd March
BitCoinDream
Legendary
*
Offline Offline

Activity: 1246

The revolution will be digital


View Profile
March 02, 2014, 03:53:43 PM
 #40

I have all the pieces in place now. All set to launch tomorrow i.e Sunday, 2nd March

Why did u remove all your previous comments from this thread ?

Pages: « 1 [2] 3 »  All
  Print  
 
Jump to:  

Sponsored by , a Bitcoin-accepting VPN.
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!