Bitcoin Forum
June 19, 2024, 12:03:14 PM *
News: Voting for pizza day contest
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: My Crypsty Account was just hacked  (Read 776 times)
EvertonFan (OP)
Newbie
*
Offline Offline

Activity: 35
Merit: 0


View Profile
January 14, 2014, 12:52:49 AM
 #1

Just to let you know someone has logged in, changed my password and tried to process a withdraw of my coins...

heads up if anyone has btc/ltc sat in a cryptsy account - i would suggest you remove it!
Xaltotun
Sr. Member
****
Offline Offline

Activity: 371
Merit: 252



View Profile
January 14, 2014, 12:55:45 AM
 #2

How did they get past your 2 factor authorization?

███████▀▄▄███████▄▄
█████▀▄████▀▀▀▀▀▀▀███▄
███▀▄███▀▄▄███████▄▄▄▀█
██▀▄███▀██▀▀     ▀▀███▄
██ ███▀           █▄▀███
██▄███             ██▄███
███▄▀   ▄▄███████▄▄ ██ ██
▀█▀▄ ▄█████▀▀▀▀▄▄▄  ██ ██
  █▀▄██▀▀▄▄█████▀▄█▄██ ██
 █▀▄██ █▀▀     ▄██▄███▄█
██ ██ █▀▄███████▀▄███▄█
██ ███ ▀▀▀▀▀▀▄▄▄███▀ ▀ ▄█
██ ███▀▀█████████▀ ▄█ ███
▀██ ██             ██ ███
█▄██▄▀█           ███ ███
██▄███▄▀▄▄     ▄ ████ ██
███▄▀▀███████▀▀▀▄███ ██
██████▄▄▄▄▄▄▄▄████▀▄█▀
█████████████████▀

    ████▀
█  ███▀  ▀
█  ██▀  ▀
█  █▀  ▀
█  ▀  ▀
█  ▄  ▄
█  █▄  ▄
█  ██▄  ▄
█  ███▄  ▄
    ████▄
||  Ann Thread  ||  Discord  ||  Facebook  ||  Twitter  ||   Github  ||
THE FIRST PYTHON BLOCKCHAIN

  ▀████
▀  ▀███  █
  ▀  ▀██  █
    ▀  ▀█  █
      ▀  ▀  █
      ▄  ▄  █
    ▄  ▄█  █
  ▄  ▄██  █
▄  ▄███  █
  ▄████
tokyoghetto
Legendary
*
Offline Offline

Activity: 1232
Merit: 1000


View Profile
January 14, 2014, 12:55:57 AM
 #3

you said "tried".

I assume that when they "tried" to withdrawal coins, they needed to confirm via your email. So unless they had access your email account, they can't withdrawal any coins.

Cryptsy stays winning.
kelsey
Legendary
*
Offline Offline

Activity: 1876
Merit: 1000


View Profile
January 14, 2014, 01:03:32 AM
 #4

but they could dump your coins on the cheap......oh then with the fees cryptsy stays winning  Wink


you said "tried".

I assume that when they "tried" to withdrawal coins, they needed to confirm via your email. So unless they had access your email account, they can't withdrawal any coins.

Cryptsy stays winning.
evoked22
Sr. Member
****
Offline Offline

Activity: 308
Merit: 250


View Profile
January 14, 2014, 01:05:08 AM
 #5

- Create a 2 step authentication (requires your password + your google authentication code)

In this case it would be extremely hard for someone to hack your account. The email confirmation on top of that ensures a third step to finalise the transaction.

In all those three steps should keep you fairly safe. Please let anyone who is using crypty know to do that. The safer we are the safer the world feels about it all Smiley

Cheers

SnZN5o2ePUgtr9roQyavBC3r41vz7p63ne
EvertonFan (OP)
Newbie
*
Offline Offline

Activity: 35
Merit: 0


View Profile
January 14, 2014, 01:08:11 AM
 #6

2 step will be done in as soon as i have cleared this up, they tried to withdraw not sell, so i havent clicked the link - im hoping it will get resolved...glad it was only a small amount from todays trading! but i will not be leaving things on there anymore!
tokyoghetto
Legendary
*
Offline Offline

Activity: 1232
Merit: 1000


View Profile
January 14, 2014, 01:10:50 AM
 #7

but they could dump your coins on the cheap......oh then with the fees cryptsy stays winning  Wink


you said "tried".

I assume that when they "tried" to withdrawal coins, they needed to confirm via your email. So unless they had access your email account, they can't withdrawal any coins.

Cryptsy stays winning.

Very true. If I was the hacker I would just sell the coins into my account.
Thorgrim
Sr. Member
****
Offline Offline

Activity: 336
Merit: 250


View Profile WWW
January 14, 2014, 01:12:12 AM
 #8

I didn't even know cryptsy had 2fa. Guess I am not very observant.

KeyserSozeMC
Hero Member
*****
Offline Offline

Activity: 742
Merit: 500


I'm dying.


View Profile WWW
January 14, 2014, 01:12:57 AM
 #9

SMS 2nd auth ftw.

Use it, it's useful.

Hey, smexy. Don't waste your time. Time's precious.
Mortimer452
Hero Member
*****
Offline Offline

Activity: 532
Merit: 500


View Profile
January 14, 2014, 01:39:14 AM
 #10

Coin exchange accounts are pretty popular with hackers.  Coin transfers take seconds and are irreversible.   I use a ridiculously complex password on all the exchanges, more complex even than my bank passwords.
Thorgrim
Sr. Member
****
Offline Offline

Activity: 336
Merit: 250


View Profile WWW
January 14, 2014, 02:15:15 AM
 #11

I have a question. Can I use google authenticator at cryptsy or just Authy?

xaml
Member
**
Offline Offline

Activity: 62
Merit: 10

Byber


View Profile
January 14, 2014, 02:30:31 AM
 #12

Me too.All my coins has trades to cat and doge,and withdraw to doge and cat wallet,buy not mine.
I think it's safe,so i have not set 2 step auth.

Withdrawals
Currency   Send to Address                              Conf   Request Date
CatCoin   9nsVQXE8tf3JLnVFuxKvAaV1oWLymehZEt       Yes   2014-01-11 13:08:31
Pending
Dogecoin   DP9913E7xSKwkjMkBBoswq6hBgCMVuysBp       Yes   2014-01-11 13:07:45

CoolCoin - Free+IPO POS 30%. CenXRac9GdjzwLTQB5DnjSwnqaaFoar3eC
Mr.V
Full Member
***
Offline Offline

Activity: 182
Merit: 100


View Profile
January 14, 2014, 02:33:05 AM
 #13

but they could dump your coins on the cheap......oh then with the fees cryptsy stays winning  Wink


you said "tried".

I assume that when they "tried" to withdrawal coins, they needed to confirm via your email. So unless they had access your email account, they can't withdrawal any coins.

Cryptsy stays winning.

your scenario is not possible because you have to dump on the higher buy orders first and by the time you would get to your cheap buy order the coins would be all spent

BTC:1NwEE7C2hVLSNGwSrFvsYgTrKddCvfhRwY
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!