Bitcoin Forum
May 17, 2024, 05:26:41 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 ... 546 547 548 549 550 551 552 553 554 555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578 579 580 581 582 583 584 585 586 587 588 589 590 591 592 593 594 595 [596] 597 598 599 600 601 602 603 604 605 606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621 622 623 624 625 626 627 628 629 630 631 632 633 634 635 636 637 638 639 640 641 642 643 644 645 646 ... 2557 »
  Print  
Author Topic: NXT :: descendant of Bitcoin - Updated Information  (Read 2761532 times)
Anon136
Legendary
*
Offline Offline

Activity: 1722
Merit: 1217



View Profile
January 01, 2014, 06:50:28 PM
 #11901

if you just reduce the cost of forging down to ~0 than the low incentive wont matter. thats the point im trying to make. of course this can only come with time as third party developers make better client applications but this is what we should be focusing on. not pooled mining.

Good idea. As I wrote on Twitter, Pooled Forging may be added, not is being added.

good to hear. i think pools are a big weakness in bitcoin and the absence of them in nxt will be one of the key arguments in the case for why nxt is the next generation crypto. And the beauty of forging instead of mining is that at some point in the future, with the right apps/hardware devices reducing the barriers to entry to forging to ~0, we could end up with ~100% participation rate even without pools. This is a HUGE selling point because pools kill decentralization.

Rep Thread: https://bitcointalk.org/index.php?topic=381041
If one can not confer upon another a right which he does not himself first possess, by what means does the state derive the right to engage in behaviors from which the public is prohibited?
mr_random
Legendary
*
Offline Offline

Activity: 1302
Merit: 1001


View Profile
January 01, 2014, 06:50:39 PM
 #11902

offline mining of all NXT accounts in parallel
problem gets worse the more NXT accounts there are
this attracts more hackers the more NXT is worth
This will create an equilibrium effect like a boat anchor to a hot air balloon. The more NXT succeeds, the more it will be hacked.

CfB, tell me there is a solution that is more effective than the user needs to not be unlucky

James

If they can do this with NXT why can't they do it with Bitcoin?
BitAddict
Legendary
*
Offline Offline

Activity: 1190
Merit: 1001



View Profile
January 01, 2014, 06:52:07 PM
 #11903

if you just reduce the cost of forging down to ~0 than the low incentive wont matter. thats the point im trying to make. of course this can only come with time as third party developers make better client applications but this is what we should be focusing on. not pooled mining.

Good idea. As I wrote on Twitter, Pooled Forging may be added, not is being added.

good to hear. i think pools are a big weakness in bitcoin and the absence of them in nxt will be one of the key arguments in the case for why nxt is the next generation crypto. And the beauty of forging instead of mining is that at some point in the future, with the right apps/hardware devices reducing the barriers to entry to forging to ~0, we could end up with ~100% participation rate even without pools. This is a HUGE selling point because pools kill decentralization.

+1
PaulyC
Member
**
Offline Offline

Activity: 82
Merit: 10


View Profile WWW
January 01, 2014, 06:52:43 PM
 #11904

just wanted to add. this is found for the recipient's address in google cached view of the NXT blockchain.
16204974692852323982

not that it will help me get my NXT back I'm sure..
real lame, how my PW was cracked is beyond me.. really.

http://webcache.googleusercontent.com/search?q=cache:xOs0TPi1UPcJ:87.230.14.1/nxt/nxt.cgi%3Faction%3D3000%26acc%3D3727742886551973110+&cd=2&hl=en&ct=clnk&gl=us
if it's a thief, then there are more thefts:
http://22k.io/-account/16204974692852323982

Had to try and get a couple hours sleep.. Ok so I know I seem like small potatoes after someone says they lost more than me this morning...

But can someone please actually try and help instead of calling my loss...tricks or a bad pr scheme??

How am I this guy's big catch?..
16204974692852323982

Why hasn't he tried to get rid of the NXT from this account? wouldn't a hacker do that?
Is there anyway to stop this person from selling my NXT (that they stole from me the 7808 transaction) on Dgex.com? Put a block on it? Send it back to me!!?

Finally, I know this is decentralized.. so it would be difficult to have a two factor auth. system as some as suggested, but I can't emphasize enough
that I had a 35 Char totally random, Uppers, Lowers, #'s, entire keyboard etc. style pass, never put it out in the open (never went into my client except locally,
never used my PW somewhere else, mistakenly, etc..)

Believe me.. I'm trying to figure it out myself!..

I almost feel like this had something to do with a glitch or a fork in the blockchain? something, believe me.. I woulda slept a lot better had it just been something as simple as... "oh I put my PW out there, dumb of me".. but I really didn't and I can't figure out how it was taken..

In the end, i know it's gone and it was stolen, I know it's not much, but it was my entire lot, and I haven't sold
or given any coins to anyone, etc. only to another client of mine to get a 1 NXT confirmation etc.

Doge Mars Landing Foundation
(founder) Coined the phrase, "Doge to the Mars" and "Check that Hash!". Discoverer of the 2013 NXT nefarious wallet.  Admin. FameMom [FAMOM]
Come-from-Beyond
Legendary
*
Offline Offline

Activity: 2142
Merit: 1009

Newbie


View Profile
January 01, 2014, 06:54:00 PM
 #11905

CfB, tell me there is a solution that is more effective than the user needs to not be unlucky

Use 30+ random passwords and u'll be fine. Noone is able to pick such passwords.
Come-from-Beyond
Legendary
*
Offline Offline

Activity: 2142
Merit: 1009

Newbie


View Profile
January 01, 2014, 06:55:30 PM
 #11906

How am I this guy's big catch?..
16204974692852323982

Tell us ur password.
EvilDave
Hero Member
*****
Offline Offline

Activity: 854
Merit: 1001



View Profile
January 01, 2014, 06:57:29 PM
 #11907

offline mining of all NXT accounts in parallel
problem gets worse the more NXT accounts there are
this attracts more hackers the more NXT is worth
This will create an equilibrium effect like a boat anchor to a hot air balloon. The more NXT succeeds, the more it will be hacked.

CfB, tell me there is a solution that is more effective than the user needs to not be unlucky

James

If they can do this with NXT why can't they do it with Bitcoin?

Need to have access to your wallet.dat file to attack it.

Correct me if I'm wrong, but all account numbers and passwords are encoded into the NXT blockchain, and it is this that is being brute forced, if there really is an attack.

Nulli Dei, nulli Reges, solum NXT
Love your money: www.nxt.org  www.ardorplatform.org
www.nxter.org  www.nxtfoundation.org
PaulyC
Member
**
Offline Offline

Activity: 82
Merit: 10


View Profile WWW
January 01, 2014, 06:58:27 PM
 #11908

Edit @ CfB
How am I this guy's big catch?..
16204974692852323982

Tell us ur password.


My account # is
16821029889165561706

That account is the guy who stole it from me.
1/1/2014 4:04:50 AM      16204974692852323982

I at this point have very little need so I could give it (to be honest being asked it seems crazy to me)
BUT, as i asked earlier, don't I still own my twelve or so Aliases? They're still in there..
Can I transfer them? before I give my PW I'd like to know that. thanks.

Doge Mars Landing Foundation
(founder) Coined the phrase, "Doge to the Mars" and "Check that Hash!". Discoverer of the 2013 NXT nefarious wallet.  Admin. FameMom [FAMOM]
relm9
Hero Member
*****
Offline Offline

Activity: 840
Merit: 1000



View Profile
January 01, 2014, 07:01:25 PM
 #11909

offline mining of all NXT accounts in parallel
problem gets worse the more NXT accounts there are
this attracts more hackers the more NXT is worth
This will create an equilibrium effect like a boat anchor to a hot air balloon. The more NXT succeeds, the more it will be hacked.

CfB, tell me there is a solution that is more effective than the user needs to not be unlucky

James

If they can do this with NXT why can't they do it with Bitcoin?

Need to have access to your wallet.dat file to attack it.

Correct me if I'm wrong, but all account numbers and passwords are encoded into the NXT blockchain, and it is this that is being brute forced, if there really is an attack.

Don't need wallet.dat, someone could try brute forcing the private key of any given address. Statistically it's near impossible to brute force though.

NXT should just generate the passphrase itself, don't give the user an option to enter one - user generated passphrases are always going to be less secure than a truly random one.
laowai80
Member
**
Offline Offline

Activity: 98
Merit: 10


View Profile
January 01, 2014, 07:03:04 PM
 #11910

NXT should just generate the passphrase itself, don't give the user an option to enter one - user generated passphrases are always going to be less secure than a truly random one.

Yeah, and print 'if you don't use this random pass phrase you can be hacked' message.
Won't save from key-loggers though.
BitAddict
Legendary
*
Offline Offline

Activity: 1190
Merit: 1001



View Profile
January 01, 2014, 07:03:39 PM
 #11911

offline mining of all NXT accounts in parallel
problem gets worse the more NXT accounts there are
this attracts more hackers the more NXT is worth
This will create an equilibrium effect like a boat anchor to a hot air balloon. The more NXT succeeds, the more it will be hacked.

CfB, tell me there is a solution that is more effective than the user needs to not be unlucky

James

If they can do this with NXT why can't they do it with Bitcoin?

Need to have access to your wallet.dat file to attack it.

Correct me if I'm wrong, but all account numbers and passwords are encoded into the NXT blockchain, and it is this that is being brute forced, if there really is an attack.

Don't need wallet.dat, someone could try brute forcing the private key of any given address. Statistically it's near impossible to brute force though.

NXT should just generate the passphrase itself, don't give the user an option to enter one - user generated passphrases are always going to be less secure than a truly random one.

Or not allowing to create accounts without secure password. For example you can't create one account with less than 40 random characters.
Come-from-Beyond
Legendary
*
Offline Offline

Activity: 2142
Merit: 1009

Newbie


View Profile
January 01, 2014, 07:06:16 PM
 #11912

Edit @ CfB
How am I this guy's big catch?..
16204974692852323982

Tell us ur password.


My account # is
16821029889165561706

That account is the guy who stole it from me.
1/1/2014 4:04:50 AM      16204974692852323982

I at this point have very little need so I could give it (to be honest being asked it seems crazy to me)
BUT, as i asked earlier, don't I still own my twelve or so Aliases? They're still in there..
Can I transfer them? before I give my PW I'd like to know that. thanks.

U can't transfer aliases, but the hacker already has access to ur account so u can reveal ur password, this will change nothing.
PaulyC
Member
**
Offline Offline

Activity: 82
Merit: 10


View Profile WWW
January 01, 2014, 07:11:38 PM
 #11913

@Cfb

Good point, is it the consensus of the forum folk, I should do this? haha

sorry seems crazy but everything I said is true, so i have nothing to hide.

I'm just thinking what if someday say someone develops a way and people agree aliases should be transferable, and the hacker just happens
to be sleeping when it is announced, and I'm able to transfer my aliases!? just wondering.? hope hope.

Doge Mars Landing Foundation
(founder) Coined the phrase, "Doge to the Mars" and "Check that Hash!". Discoverer of the 2013 NXT nefarious wallet.  Admin. FameMom [FAMOM]
laowai80
Member
**
Offline Offline

Activity: 98
Merit: 10


View Profile
January 01, 2014, 07:12:05 PM
 #11914

CfB,

so how many times larger should the network be than what it is now, in your opinion?
At least some numbers would be great.
Of course, it's the larger the better, but still?
laowai80
Member
**
Offline Offline

Activity: 98
Merit: 10


View Profile
January 01, 2014, 07:13:41 PM
 #11915

@Cfb

Good point, is it the consensus of the forum folk, I should do this? haha

sorry seems crazy but everything I said is true, so i have nothing to hide.

I'm just thinking what if someday say someone develops a way and people agree aliases should be transferable, and the hacker just happens
to be sleeping when it is announced, and I'm able to transfer my aliases!? just wondering.? hope hope.

I would say, the future policy on hack claims should be:

No password revealed = no hack happened.

Everyone can say they were hacked, prove it.

Otherwise, hundreds of black PR artists all could claim they were hacked and post some obscure transaction.
Come-from-Beyond
Legendary
*
Offline Offline

Activity: 2142
Merit: 1009

Newbie


View Profile
January 01, 2014, 07:13:59 PM
 #11916

@Cfb

Good point, is it the consensus of the forum folk, I should do this? haha

sorry seems crazy but everything I said is true, so i have nothing to hide.

I'm just thinking what if someday say someone develops a way and people agree aliases should be transferable, and the hacker just happens
to be sleeping when it is announced, and I'm able to transfer my aliases!? just wondering.? hope hope.

Password or this didn't happen. Smiley
Come-from-Beyond
Legendary
*
Offline Offline

Activity: 2142
Merit: 1009

Newbie


View Profile
January 01, 2014, 07:15:35 PM
 #11917

CfB,

so how many times larger should the network be than what it is now, in your opinion?
At least some numbers would be great.
Of course, it's the larger the better, but still?

We should be ready for legit DDoS attack when millions newcomers want to try new features... No idea about numbers.
laowai80
Member
**
Offline Offline

Activity: 98
Merit: 10


View Profile
January 01, 2014, 07:17:08 PM
 #11918


We should be ready for legit DDoS attack when millions newcomers want to try new features... No idea about numbers.

What's a legit DDoS attack? You mean newcomers doing something legit all at the same time and overloading the network?

Or hackers DDoSing the network when newcomers try new features to show NXT in unfavorable light?
BitAddict
Legendary
*
Offline Offline

Activity: 1190
Merit: 1001



View Profile
January 01, 2014, 07:18:06 PM
 #11919


We should be ready for legit DDoS attack when millions newcomers want to try new features... No idea about numbers.

What's a legit DDoS attack? You mean newcomers doing something legit all at the same time and overloading the network?

Or hackers DDoSing the network when newcomers try new features to show NXT in unfavorable light?

Both things will happen at the same time.
xyzzyx
Sr. Member
****
Offline Offline

Activity: 490
Merit: 250


I don't really come from outer space.


View Profile
January 01, 2014, 07:18:20 PM
Last edit: January 01, 2014, 07:28:43 PM by xyzzyx
 #11920

Password or this didn't happen. Smiley

One of my accounts was hacked: 2980315497189667873

Totally, absolutely, cross-my-fingers randomly generated password: boobs

Of course, I think it is hilarious he had to send in 1 NXT to spend the 1 NXT that was there.  I was saving that to register the alias 2girls1cup.

Edit: all joking aside, a great article, one which opened my eyes, is How the Bible and YouTube are fueling the next frontier of password cracking at Ars Technica

"An awful lot of code is being written ... in languages that aren't very good by people who don't know what they're doing." -- Barbara Liskov
Pages: « 1 ... 546 547 548 549 550 551 552 553 554 555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578 579 580 581 582 583 584 585 586 587 588 589 590 591 592 593 594 595 [596] 597 598 599 600 601 602 603 604 605 606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621 622 623 624 625 626 627 628 629 630 631 632 633 634 635 636 637 638 639 640 641 642 643 644 645 646 ... 2557 »
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!