Bitcoin Forum
May 07, 2024, 02:34:00 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 ... 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 [177] 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 ... 661 »
  Print  
Author Topic: [ANN][XCP] Counterparty - Pioneering Peer-to-Peer Finance - Official Thread  (Read 1276301 times)
This is a self-moderated topic. If you do not want to be moderated by the person who started this topic, create a new topic.
bitwhizz
Legendary
*
Offline Offline

Activity: 910
Merit: 1000



View Profile
February 19, 2014, 06:08:45 PM
 #3521

Attention: Please see this post.

Phantom Phreak , you the man
Busoni, your cool too

XCP Version 6.0

I like it
1715092440
Hero Member
*
Offline Offline

Posts: 1715092440

View Profile Personal Message (Offline)

Ignore
1715092440
Reply with quote  #2

1715092440
Report to moderator
1715092440
Hero Member
*
Offline Offline

Posts: 1715092440

View Profile Personal Message (Offline)

Ignore
1715092440
Reply with quote  #2

1715092440
Report to moderator
There are several different types of Bitcoin clients. The most secure are full nodes like Bitcoin Core, but full nodes are more resource-heavy, and they must do a lengthy initial syncing process. As a result, lightweight clients with somewhat less security are commonly used.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1715092440
Hero Member
*
Offline Offline

Posts: 1715092440

View Profile Personal Message (Offline)

Ignore
1715092440
Reply with quote  #2

1715092440
Report to moderator
1715092440
Hero Member
*
Offline Offline

Posts: 1715092440

View Profile Personal Message (Offline)

Ignore
1715092440
Reply with quote  #2

1715092440
Report to moderator
1715092440
Hero Member
*
Offline Offline

Posts: 1715092440

View Profile Personal Message (Offline)

Ignore
1715092440
Reply with quote  #2

1715092440
Report to moderator
Tirapon
Hero Member
*****
Offline Offline

Activity: 898
Merit: 1000



View Profile
February 19, 2014, 06:10:16 PM
 #3522

Attention: Please see this post.

Hey look, they fixed it. Well done devs  Smiley
PhantomPhreak (OP)
Sr. Member
****
Offline Offline

Activity: 476
Merit: 300

Counterparty Chief Scientist and Co-Founder


View Profile
February 19, 2014, 06:11:30 PM
 #3523

As someone said before--do NOT buy XCP from anyone until this is fixed. Not on the DEX, not privately, not anywhere.

It sounds like the hacker is being cooperative, so probably a good guy and aligned with the success of the project and helping us to harden the code.

To resolve the situation, maybe devs could offer to pay the hacker a 'security bounty' to reward him for isolating this vulnerability and because he's been cooperative / good guy, and also create a standing "security bounty" for anyone else in the wider community who finds exploits in the future.

Yes. Setting up a formal bug bounty system is definitely on our 'to do' list.
davidpbrown
Sr. Member
****
Offline Offline

Activity: 531
Merit: 260


Vires in Numeris


View Profile WWW
February 19, 2014, 06:11:47 PM
 #3524

> rolled XCP balances back

Is that unclear about when it's rolled back to or perhaps which block?.. Can we trust http://www.blockscan.com to confirm current balances??

฿://12vxXHdmurFP3tpPk7bt6YrM3XPiftA82s
flayway
Full Member
***
Offline Offline

Activity: 219
Merit: 102


View Profile
February 19, 2014, 06:12:44 PM
 #3525

Nice work.

XCP:     19zzpgk3oakH2b7zd63mw3DadtNkvefVfo    BTC:     1ASSkiRsqRUUp5Y8YQYnuc41fBbYR3iRD2
kdrop22
Full Member
***
Offline Offline

Activity: 238
Merit: 100


View Profile
February 19, 2014, 06:13:55 PM
 #3526

> rolled XCP balances back

Is that unclear about when it's rolled back to or perhaps which block?.. Can we trust http://www.blockscan.com to confirm current balances??
Blockscan is being reindexing the database as we speak.
Patel
Legendary
*
Offline Offline

Activity: 1321
Merit: 1007



View Profile WWW
February 19, 2014, 06:14:00 PM
 #3527

> rolled XCP balances back

Is that unclear about when it's rolled back to or perhaps which block?.. Can we trust http://www.blockscan.com to confirm current balances??

I think after they update, get up to date on blocks, then do a purge, it will be accurate
mtbitcoin
Legendary
*
Offline Offline

Activity: 876
Merit: 1000


Etherscan.io


View Profile
February 19, 2014, 06:14:08 PM
 #3528

> rolled XCP balances back

Is that unclear about when it's rolled back to or perhaps which block?.. Can we trust http://www.blockscan.com to confirm current balances??

Looks like we are .7 counterparty DB .... this will take awhile to rebuild all the blocks. I will revert to the latest DB once the rebuild has been completed

EtherScan::Ethereum Block Explorer | BlockScan::Coming Soon
savithau68
Newbie
*
Offline Offline

Activity: 28
Merit: 0


View Profile
February 19, 2014, 06:17:38 PM
 #3529

Very much SORRY Busoni.

You did a great job. Thanks very much
kdrop22
Full Member
***
Offline Offline

Activity: 238
Merit: 100


View Profile
February 19, 2014, 06:21:35 PM
 #3530

Everyone capable of reading the code, please assist the developers with code review and security review.
peled1986
Legendary
*
Offline Offline

Activity: 882
Merit: 1002


View Profile
February 19, 2014, 06:23:37 PM
Last edit: February 19, 2014, 06:40:36 PM by peled1986
 #3531

It would be nice if the next person that discoveres a vulnerability reports it straight to the DEVs insteading of proving it by selling 35K xcp Grin
Chang Hum
Hero Member
*****
Offline Offline

Activity: 714
Merit: 502


View Profile
February 19, 2014, 06:25:00 PM
 #3532

I don't understand where the 35k XCP sold came from?
kdrop22
Full Member
***
Offline Offline

Activity: 238
Merit: 100


View Profile
February 19, 2014, 06:32:05 PM
 #3533

Attention: Please see this post.

Just a reminder to people, who haven't seen the previous posts. Please, upgrade.
supervine
Member
**
Offline Offline

Activity: 93
Merit: 10


View Profile
February 19, 2014, 06:32:27 PM
 #3534

busoni +1
PhantomPhreak +1

Best android app for crypto: Crypto Coins Manager
All coins, prices, tendencies, price change alerts, favorite coins, mining profitability &much more
Geenstijl
Legendary
*
Offline Offline

Activity: 1232
Merit: 1000



View Profile
February 19, 2014, 06:32:43 PM
 #3535

Absolutely fabulous. Will the massive sell-off be rolled back now?
ddink7
Legendary
*
Offline Offline

Activity: 1120
Merit: 1000



View Profile
February 19, 2014, 06:32:48 PM
 #3536

Great work devs and Busoni!

Any ETA when Poloniex will be back up?

Dash - Digital Cash
https://www.dash.org/
riceberry
Hero Member
*****
Offline Offline

Activity: 491
Merit: 500



View Profile
February 19, 2014, 06:34:14 PM
 #3537

Did the attacker actually own the initial 35000 ?
freedomfighter
Full Member
***
Offline Offline

Activity: 210
Merit: 100


View Profile
February 19, 2014, 06:36:12 PM
 #3538

Busoni-- I didnt trade with your exchange yet but now you just demonstrated that you are trustworthy and dependable so it is all for the best. you made a good name for yourself- will not hesitate using your exchange in the future
ginko-B
Member
**
Offline Offline

Activity: 82
Merit: 10


View Profile
February 19, 2014, 06:39:32 PM
 #3539

As someone said before--do NOT buy XCP from anyone until this is fixed. Not on the DEX, not privately, not anywhere.

It sounds like the hacker is being cooperative, so probably a good guy and aligned with the success of the project and helping us to harden the code.

To resolve the situation, maybe devs could offer to pay the hacker a 'security bounty' to reward him for isolating this vulnerability and because he's been cooperative / good guy, and also create a standing "security bounty" for anyone else in the wider community who finds exploits in the future.

Yes. Setting up a formal bug bounty system is definitely on our 'to do' list.

Cityglut, I know you have a lot on your plate, but when you have some time perhaps you can send out a wallet address for a security bounty fund?  

If it turns out the "roll back" is 100% retroactive (and I get all of my XCP back on Poloniex), I will happily contribute 100 XCP to the bounty fund to get it started.

As a proposal for the community, perhaps we could send the first, say, [1000] XCP raised to the whitehat who exposed this exploit?

Will anyone else make a pledge to contribute alongside me?    

peled1986
Legendary
*
Offline Offline

Activity: 882
Merit: 1002


View Profile
February 19, 2014, 06:42:32 PM
 #3540

Will anyone else make a pledge to contribute alongside me?    

I will pledge -security is a top priority
Pages: « 1 ... 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 [177] 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 ... 661 »
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!