Bitcoin Forum
June 03, 2024, 11:06:06 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 ... 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 [76] 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 »
  Print  
Author Topic: [ANN] NEX :: Nxt Reimagined - Industrial Strength - Imagine Fairness!  (Read 101932 times)
cryptoknightt
Sr. Member
****
Offline Offline

Activity: 1189
Merit: 251


View Profile
February 01, 2014, 09:07:47 PM
 #1501

I am real!! this is so funny.

Who would waste such a great name

CRYPTOKNIGHTT on a sock puppet!!

You guys just dont get it.

You are so out of control

Actually can you list the coins I should stay away from?

That's the list I want to know. Ether and NEX. what else LOL
Come-from-Beyond
Legendary
*
Offline Offline

Activity: 2142
Merit: 1009

Newbie


View Profile
February 01, 2014, 09:11:27 PM
 #1502

I am real!!

Of coz u r real.

My mom told me to never argue with a crazy person...
instacalm
Hero Member
*****
Offline Offline

Activity: 798
Merit: 500



View Profile
February 01, 2014, 09:14:44 PM
 #1503

https://web.archive.org/web/20110208043650/http://codeaudit.com/
-- scroll down for the Carlosses in all their glory.

Carlos, you don't look unfriendly! Frankly I imagined you look more like Gollum.

Why so mad, you could be a nice and sane guy after all, perhaps think about it for a while.

I wish you all the best
Come-from-Beyond
Legendary
*
Offline Offline

Activity: 2142
Merit: 1009

Newbie


View Profile
February 01, 2014, 09:22:08 PM
 #1504

https://web.archive.org/web/20110208043650/http://codeaudit.com/
-- scroll down for the Carlosses in all their glory.

Carlos, you don't look unfriendly! Frankly I imagined you look more like Gollum.

Why so mad, you could be a nice and sane guy after all, perhaps think about it for a while.

I wish you all the best

Hell, I thought FC was ~15 y.o. taking into account his level of mentality. But that guy in the photo is 30+ y.o. Looks like only a psychoanalist is able to help him. Now it's not even funny...
EvilDave
Hero Member
*****
Offline Offline

Activity: 854
Merit: 1001



View Profile
February 01, 2014, 10:50:48 PM
 #1505

I am real!! this is so funny.

Who would waste such a great name

CRYPTOKNIGHTT on a sock puppet!!

You guys just dont get it.

You are so out of control

Actually can you list the coins I should stay away from?

That's the list I want to know. Ether and NEX. what else LOL

If u do invest in NEX, make sure u ask the FCs for their corporate info, as they claim to be a Delaware corporation, it would be nice to see some info about their corporate activities.........

And there is a very long history of the FCs investor threads being full of very recently created accounts with almost no activity that somehow find their way to the FC and offer him lots of money for no real reason.
Sock puppets, or are the FCs a new Messiah?

I like to use poetry as a turing test: so throw down an original limerick/haiku/sonnet or whatever and I'll declare u human.

Nulli Dei, nulli Reges, solum NXT
Love your money: www.nxt.org  www.ardorplatform.org
www.nxter.org  www.nxtfoundation.org
EvilDave
Hero Member
*****
Offline Offline

Activity: 854
Merit: 1001



View Profile
February 01, 2014, 10:54:34 PM
 #1506

https://web.archive.org/web/20110208043650/http://codeaudit.com/
-- scroll down for the Carlosses in all their glory.

Carlos, you don't look unfriendly! Frankly I imagined you look more like Gollum.

Why so mad, you could be a nice and sane guy after all, perhaps think about it for a while.

I wish you all the best

Hell, I thought FC was ~15 y.o. taking into account his level of mentality. But that guy in the photo is 30+ y.o. Looks like only a psychoanalist is able to help him. Now it's not even funny...

That pic looks very unhappy.....it's a real possibilty that the FCs do have some actual issues.
We've all seen how he/it/whatever flips between almost sane and obviously intellligent(ish) to complete lunatic idiot.
I'd almost feel sorry for him, if he wasn't so much trouble for everyone.  

EDIT:
carlos quote: Venture - Covers ideas and principles of how to make a buck in an increasingly deflationary world.

Nulli Dei, nulli Reges, solum NXT
Love your money: www.nxt.org  www.ardorplatform.org
www.nxter.org  www.nxtfoundation.org
city19akro
Newbie
*
Offline Offline

Activity: 26
Merit: 0


View Profile
February 01, 2014, 10:58:31 PM
 #1507

Is the giveaway still running? If so, i'm in!
visaco
Sr. Member
****
Offline Offline

Activity: 359
Merit: 250


View Profile
February 01, 2014, 11:40:41 PM
 #1508

Interested
add me to stakeholder list plz Grin

I have told you NEM will make you a millionaire and we have made it ...IOST is the new baby Money making machine.  keep an eye on this little Monster...
FrictionlessCoin (OP)
Legendary
*
Offline Offline

Activity: 868
Merit: 1000


Cryptotalk.org - Get paid for every post!


View Profile
February 02, 2014, 12:17:04 AM
 #1509

Quote

Fun fact: the genesis account http://www.mynxt.info/blockexplorer/details.php?action=ac&ac=1739068987193023818 that credited all the original stakeholders used this passphrase:

Quote from: 1984 - George Orwell
It was a bright cold day in April, and the clocks were striking thirteen.

As I've pointed out in my first post https://nextcoin.org/index.php/topic,3608.msg34002.html

1.5% of NXT accounts are trivially crackable with a 15 line script and a widely-available passphrase list (the rockyou leak dataset).

I've let my script keep running on more lists since then and at current measure have recovered the passphrases of a little more than 3% of all accounts that have ever been used.  Since genesis ~8M NXT has been sent to these "weak" accounts.

As I pointed out in my original post, my motivation for doing this was to investigate the root cause of the rash of thefts that had been reported (since I suspected weak passphrases) as well as prod the devs to drop the brainwallet-based key management scheme as the default option.  I actually cracked the genesis account a few days ago but originally thought my code was just buggy when I saw it's balance was negative ... LOL.

As a side note, I should point out that widespread knowledge of the genesis account key isn't a security issue per se.  Although I'd advise devs to be defensive moving forward about the possibility of integer overflow/underflow whenever dealing with amounts/fees now that the whole world has access to an account with a negative balance.



Breaking news... Nxt genesis account compromised.  3% of all Nxt accounts already compromised. 

 
                                . ██████████.
                              .████████████████.
                           .██████████████████████.
                        -█████████████████████████████
                     .██████████████████████████████████.
                  -█████████████████████████████████████████
               -███████████████████████████████████████████████
           .-█████████████████████████████████████████████████████.
        .████████████████████████████████████████████████████████████
       .██████████████████████████████████████████████████████████████.
       .██████████████████████████████████████████████████████████████.
       ..████████████████████████████████████████████████████████████..
       .   .██████████████████████████████████████████████████████.
       .      .████████████████████████████████████████████████.

       .       .██████████████████████████████████████████████
       .    ██████████████████████████████████████████████████████
       .█████████████████████████████████████████████████████████████.
        .███████████████████████████████████████████████████████████
           .█████████████████████████████████████████████████████
              .████████████████████████████████████████████████
                   ████████████████████████████████████████
                      ██████████████████████████████████
                          ██████████████████████████
                             ████████████████████
                               ████████████████
                                   █████████
.CryptoTalk.org.|.MAKE POSTS AND EARN BTC!.🏆
EvilDave
Hero Member
*****
Offline Offline

Activity: 854
Merit: 1001



View Profile
February 02, 2014, 01:24:16 AM
 #1510

Quote

Fun fact: the genesis account http://www.mynxt.info/blockexplorer/details.php?action=ac&ac=1739068987193023818 that credited all the original stakeholders used this passphrase:

Quote from: 1984 - George Orwell
It was a bright cold day in April, and the clocks were striking thirteen.

As I've pointed out in my first post https://nextcoin.org/index.php/topic,3608.msg34002.html

1.5% of NXT accounts are trivially crackable with a 15 line script and a widely-available passphrase list (the rockyou leak dataset).

I've let my script keep running on more lists since then and at current measure have recovered the passphrases of a little more than 3% of all accounts that have ever been used.  Since genesis ~8M NXT has been sent to these "weak" accounts.

As I pointed out in my original post, my motivation for doing this was to investigate the root cause of the rash of thefts that had been reported (since I suspected weak passphrases) as well as prod the devs to drop the brainwallet-based key management scheme as the default option.  I actually cracked the genesis account a few days ago but originally thought my code was just buggy when I saw it's balance was negative ... LOL.

As a side note, I should point out that widespread knowledge of the genesis account key isn't a security issue per se.  Although I'd advise devs to be defensive moving forward about the possibility of integer overflow/underflow whenever dealing with amounts/fees now that the whole world has access to an account with a negative balance.



Breaking news... Nxt genesis account compromised.  3% of all Nxt accounts already compromised. 

Breaking news...FCs spread their usual FUD.
And don't acknowledge the source:
https://nextcoin.org/index.php/topic,3752.0.html

In other words, don't worry too much.

Nulli Dei, nulli Reges, solum NXT
Love your money: www.nxt.org  www.ardorplatform.org
www.nxter.org  www.nxtfoundation.org
whitepaper
Newbie
*
Offline Offline

Activity: 4
Merit: 0


View Profile
February 02, 2014, 03:56:21 AM
 #1511

interested
topluto
Newbie
*
Offline Offline

Activity: 5
Merit: 0


View Profile
February 02, 2014, 06:16:54 AM
 #1512

interested
robinfx
Newbie
*
Offline Offline

Activity: 4
Merit: 0


View Profile
February 02, 2014, 06:33:39 AM
 #1513

interested
bitadem
Newbie
*
Offline Offline

Activity: 1
Merit: 0


View Profile
February 02, 2014, 11:35:25 AM
 #1514

interested
FrictionlessCoin (OP)
Legendary
*
Offline Offline

Activity: 868
Merit: 1000


Cryptotalk.org - Get paid for every post!


View Profile
February 02, 2014, 11:51:18 AM
 #1515

Quote

Fun fact: the genesis account http://www.mynxt.info/blockexplorer/details.php?action=ac&ac=1739068987193023818 that credited all the original stakeholders used this passphrase:

Quote from: 1984 - George Orwell
It was a bright cold day in April, and the clocks were striking thirteen.

As I've pointed out in my first post https://nextcoin.org/index.php/topic,3608.msg34002.html

1.5% of NXT accounts are trivially crackable with a 15 line script and a widely-available passphrase list (the rockyou leak dataset).

I've let my script keep running on more lists since then and at current measure have recovered the passphrases of a little more than 3% of all accounts that have ever been used.  Since genesis ~8M NXT has been sent to these "weak" accounts.

As I pointed out in my original post, my motivation for doing this was to investigate the root cause of the rash of thefts that had been reported (since I suspected weak passphrases) as well as prod the devs to drop the brainwallet-based key management scheme as the default option.  I actually cracked the genesis account a few days ago but originally thought my code was just buggy when I saw it's balance was negative ... LOL.

As a side note, I should point out that widespread knowledge of the genesis account key isn't a security issue per se.  Although I'd advise devs to be defensive moving forward about the possibility of integer overflow/underflow whenever dealing with amounts/fees now that the whole world has access to an account with a negative balance.



Breaking news... Nxt genesis account compromised.  3% of all Nxt accounts already compromised. 

Breaking news...FCs spread their usual FUD.
And don't acknowledge the source:
https://nextcoin.org/index.php/topic,3752.0.html

In other words, don't worry too much.

I really don't thing you understand by the statement:

Quote
I've let my script keep running on more lists since then and at current measure have recovered the passphrases of a little more than 3% of all accounts that have ever been used.  Since genesis ~8M NXT has been sent to these "weak" accounts.

What he said was that after running his 15 line script since January 27th, he has discovered the secret phrase for 3% of all Nxt accounts.  He is saying that 8million NXT has been compromised by his simple 15 line script. 

He has of course said that he has not drained those accounts.   However, he did publish the code, so someone else could do so.   Furthermore,  a more sophisticated script running longer could compromise over time even more Nxt accounts.

If the genesis account can be compromised in such a short time, then almost every Nxt account can be compromised.

 
                                . ██████████.
                              .████████████████.
                           .██████████████████████.
                        -█████████████████████████████
                     .██████████████████████████████████.
                  -█████████████████████████████████████████
               -███████████████████████████████████████████████
           .-█████████████████████████████████████████████████████.
        .████████████████████████████████████████████████████████████
       .██████████████████████████████████████████████████████████████.
       .██████████████████████████████████████████████████████████████.
       ..████████████████████████████████████████████████████████████..
       .   .██████████████████████████████████████████████████████.
       .      .████████████████████████████████████████████████.

       .       .██████████████████████████████████████████████
       .    ██████████████████████████████████████████████████████
       .█████████████████████████████████████████████████████████████.
        .███████████████████████████████████████████████████████████
           .█████████████████████████████████████████████████████
              .████████████████████████████████████████████████
                   ████████████████████████████████████████
                      ██████████████████████████████████
                          ██████████████████████████
                             ████████████████████
                               ████████████████
                                   █████████
.CryptoTalk.org.|.MAKE POSTS AND EARN BTC!.🏆
EvilDave
Hero Member
*****
Offline Offline

Activity: 854
Merit: 1001



View Profile
February 02, 2014, 12:50:04 PM
 #1516

The genesis account passphrase was spectacularly weak, although long.

The opening line of 1984 ?
I'm surprised it wasn't cracked in December, TBH.

So, there's no real surprise here, DoctorEvil has simply highlighted a known issue. Password security needs to be ramped up, either by making users choose better passphrases or by beefing up password security in the client. or both...

So stop waving your arms around and claiming that the sky is falling, FC.

Nulli Dei, nulli Reges, solum NXT
Love your money: www.nxt.org  www.ardorplatform.org
www.nxter.org  www.nxtfoundation.org
smdino
Newbie
*
Offline Offline

Activity: 2
Merit: 0


View Profile
February 02, 2014, 12:52:47 PM
 #1517

Interested
EvilDave
Hero Member
*****
Offline Offline

Activity: 854
Merit: 1001



View Profile
February 02, 2014, 01:06:26 PM
 #1518

Interested

How did u find this thread, possible sock puppet dude?

Nulli Dei, nulli Reges, solum NXT
Love your money: www.nxt.org  www.ardorplatform.org
www.nxter.org  www.nxtfoundation.org
FrictionlessCoin (OP)
Legendary
*
Offline Offline

Activity: 868
Merit: 1000


Cryptotalk.org - Get paid for every post!


View Profile
February 02, 2014, 01:07:02 PM
 #1519

The genesis account passphrase was spectacularly weak, although long.

The opening line of 1984 ?
I'm surprised it wasn't cracked in December, TBH.

So, there's no real surprise here, DoctorEvil has simply highlighted a known issue. Password security needs to be ramped up, either by making users choose better passphrases or by beefing up password security in the client. or both...

Security is obviously not a top priority for Nxt.

Explains why there is a demand for NEX.

 
                                . ██████████.
                              .████████████████.
                           .██████████████████████.
                        -█████████████████████████████
                     .██████████████████████████████████.
                  -█████████████████████████████████████████
               -███████████████████████████████████████████████
           .-█████████████████████████████████████████████████████.
        .████████████████████████████████████████████████████████████
       .██████████████████████████████████████████████████████████████.
       .██████████████████████████████████████████████████████████████.
       ..████████████████████████████████████████████████████████████..
       .   .██████████████████████████████████████████████████████.
       .      .████████████████████████████████████████████████.

       .       .██████████████████████████████████████████████
       .    ██████████████████████████████████████████████████████
       .█████████████████████████████████████████████████████████████.
        .███████████████████████████████████████████████████████████
           .█████████████████████████████████████████████████████
              .████████████████████████████████████████████████
                   ████████████████████████████████████████
                      ██████████████████████████████████
                          ██████████████████████████
                             ████████████████████
                               ████████████████
                                   █████████
.CryptoTalk.org.|.MAKE POSTS AND EARN BTC!.🏆
EvilDave
Hero Member
*****
Offline Offline

Activity: 854
Merit: 1001



View Profile
February 02, 2014, 01:17:53 PM
 #1520

Interesting use of the word "demand"

Anyone apart from the FCs and freshly created, no activity accounts want to weigh in on the demand for nex?

Come on, lets see that demand, kids.

Nulli Dei, nulli Reges, solum NXT
Love your money: www.nxt.org  www.ardorplatform.org
www.nxter.org  www.nxtfoundation.org
Pages: « 1 ... 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 [76] 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 »
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!