riceberry
|
|
February 19, 2014, 05:38:24 PM |
|
What will happen to the orders and balances on poloniex?
|
|
|
|
ddink7
Legendary
Offline
Activity: 1120
Merit: 1000
|
|
February 19, 2014, 05:38:43 PM |
|
This is as good a time as any to make a plug for the DEX.
Let's fix the issue with trolling orders so we don't have to worry about centralized points of failure ever again.
+1 Why would a hacker wanting to make a demonstration have done the deed on Poloniex and not the DEX? If he really wanted to show a problem with the protocol he would have hacked the DEX. Maybe he's a white hat who wants to help, rather than a black hat who wants to destroy. Better to do it on an honest exchange where it can be fixed easily than on the DEX.
|
|
|
|
roede94105
|
|
February 19, 2014, 05:43:43 PM |
|
What will happen to the orders and balances on poloniex?
+1, I had a few hundreds over there
|
|
|
|
riceberry
|
|
February 19, 2014, 05:46:23 PM |
|
Can we halt all orders on xcp or somehow rollback? Is it even possible to rollback?
|
|
|
|
lonsharim
|
|
February 19, 2014, 05:46:34 PM |
|
What will happen to the orders and balances on poloniex?
+1, I had a few hundreds over there Presumably it is suspended until it can be fixed and there is more certainty. Its going to take sometime until the smoke clears out.
|
|
|
|
busoni
Sr. Member
Offline
Activity: 364
Merit: 250
Owner of Poloniex
|
|
February 19, 2014, 05:49:45 PM |
|
Wow, that disappointing... That said, I'm happy that it happened so early, before XCP has spread to other exchanges.
Also, seems that it will boost the Dex (as it should), as it seems to be much safer (or so I hope!).
No, the Dex is not safer from this attack. Devs are on it now.
|
Poloniex.com - Fast crypto exchange with margin trading, advanced charts, and stop-limit orders
|
|
|
roede94105
|
|
February 19, 2014, 05:50:02 PM |
|
What will happen to the orders and balances on poloniex?
+1, I had a few hundreds over there Presumably it is suspended until it can be fixed and there is more certainty. Its going to take sometime until the smoke clears out. I just lost 300 million TIPS yesterday, because of a fucking bug in the paper wallet algorithm, I hope I haven't lost some of my XCPs as well, or that could be more than a third of all my investments that I lost in a very short time, without me being at fault (hacked,..). Fuck my life :/
|
|
|
|
busoni
Sr. Member
Offline
Activity: 364
Merit: 250
Owner of Poloniex
|
|
February 19, 2014, 05:52:00 PM |
|
As someone said before--do NOT buy XCP from anyone until this is fixed. Not on the DEX, not privately, not anywhere.
|
Poloniex.com - Fast crypto exchange with margin trading, advanced charts, and stop-limit orders
|
|
|
Chang Hum
|
|
February 19, 2014, 05:53:12 PM |
|
What will happen to the orders and balances on poloniex?
+1, I had a few hundreds over there Presumably it is suspended until it can be fixed and there is more certainty. Its going to take sometime until the smoke clears out. I just lost 300 million TIPS yesterday, because of a fucking bug in the paper wallet algorithm, I hope I haven't lost some of my XCPs as well, or that could be more than a third of all my investments that I lost in a very short time, without me being at fault (hacked,..). Fuck my life :/ You must be a bloody good waiter!
|
|
|
|
Tirapon
|
|
February 19, 2014, 05:53:52 PM |
|
Hey guys, I just double checked the OP and found this:
Disclaimer: The code being released here is of alpha-quality and under heavy development. You should expect to encounter significant bugs when using it. It is even possible that a bug might cause you might lose some money. The Counterparty team will do everything in its power to prevent this from happening, but this technology is very new, and the implementation is not yet well-tested. In particular, we may at some point have to change the Counterparty protocol in a not backwards-compatible way, if such a change is necessary to fix a bad bug or an exploit. As always, don't invest more than you can afford to lose.
I wish they'd made it stand out more by making the text red or something.
|
|
|
|
|
|
davidpbrown
|
|
February 19, 2014, 05:59:14 PM |
|
I've not read this thread but note that the Poloniex link to Counterparty XCP from its homepage is tripping through to NXT rather than any error or statement about this.
|
฿://12vxXHdmurFP3tpPk7bt6YrM3XPiftA82s
|
|
|
PhantomPhreak (OP)
Sr. Member
Offline
Activity: 476
Merit: 300
Counterparty Chief Scientist and Co-Founder
|
|
February 19, 2014, 06:01:58 PM |
|
Attention: Please see this post.
|
|
|
|
roede94105
|
|
February 19, 2014, 06:02:16 PM |
|
What will happen to the orders and balances on poloniex?
+1, I had a few hundreds over there Presumably it is suspended until it can be fixed and there is more certainty. Its going to take sometime until the smoke clears out. I just lost 300 million TIPS yesterday, because of a fucking bug in the paper wallet algorithm, I hope I haven't lost some of my XCPs as well, or that could be more than a third of all my investments that I lost in a very short time, without me being at fault (hacked,..). Fuck my life :/ You must be a bloody good waiter! Deep inside, I find it funny, but I'm not in the mood to laugh right now..
|
|
|
|
HinnomTX
|
|
February 19, 2014, 06:03:16 PM |
|
I've not read this thread but note that the Poloniex link to Counterparty XCP from its homepage is tripping through to NXT rather than any error or statement about this.
That's a subtle plug to buy NXT.
|
"One can only solve so much with cryptography. The rest of the solution will prove to be economic in nature." -Evan Duffield Dash is Digital Cash. https://www.dash.org
|
|
|
|
Patel
Legendary
Offline
Activity: 1320
Merit: 1007
|
|
February 19, 2014, 06:04:16 PM |
|
Sorry for criticizing you Busoni
|
|
|
|
bitme
|
|
February 19, 2014, 06:05:13 PM |
|
great job. You're the man !!!(or woman?)
|
NXT makes the Difference My nxtforum account : bitme
|
|
|
ginko-B
Member
Offline
Activity: 82
Merit: 10
|
|
February 19, 2014, 06:06:54 PM |
|
As someone said before--do NOT buy XCP from anyone until this is fixed. Not on the DEX, not privately, not anywhere.
It sounds like the hacker is being cooperative, so probably a good guy and aligned with the success of the project and helping us to harden the code. To resolve the situation, maybe devs could offer to pay the hacker a 'security bounty' to reward him for isolating this vulnerability and because he's been cooperative / good guy, and also create a standing "security bounty" for anyone else in the wider community who finds exploits in the future.
|
|
|
|
|