Bitcoin Forum
April 26, 2024, 08:24:25 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 [2]  All
  Print  
Author Topic: Correspondence with the XCP White Hat  (Read 5426 times)
Warren
Member
**
Offline Offline

Activity: 112
Merit: 10


View Profile
February 28, 2014, 04:07:54 AM
 #21

As many of you know, about a week ago, a hacker found a major security hole in the Counterparty protocol that enabled him to send XCP from anyone's address. He used this to send 35,000 XCP from the Poloniex wallet to himself, which he then deposited into his own Poloniex account. He then sold the XCP for 150 BTC and withdrew 115 BTC. Following that, he explained the security hole and offered to return the BTC. He has still not returned the BTC, but my correspondence with him is ongoing.

Users have asked to see the correspondence and the Counterparty developers have all given the OK on publishing it, so here it is: https://poloniex.com/correspondence.pdf

There was more to his message from today, which I have not included because it arrived after the developers gave the OK.

Wow! Reading through the correspondence all I can say is that this guy is awesome! We SO need him to become part of the Counterparty development team!

1714163065
Hero Member
*
Offline Offline

Posts: 1714163065

View Profile Personal Message (Offline)

Ignore
1714163065
Reply with quote  #2

1714163065
Report to moderator
1714163065
Hero Member
*
Offline Offline

Posts: 1714163065

View Profile Personal Message (Offline)

Ignore
1714163065
Reply with quote  #2

1714163065
Report to moderator
1714163065
Hero Member
*
Offline Offline

Posts: 1714163065

View Profile Personal Message (Offline)

Ignore
1714163065
Reply with quote  #2

1714163065
Report to moderator
According to NIST and ECRYPT II, the cryptographic algorithms used in Bitcoin are expected to be strong until at least 2030. (After that, it will not be too difficult to transition to different algorithms.)
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714163065
Hero Member
*
Offline Offline

Posts: 1714163065

View Profile Personal Message (Offline)

Ignore
1714163065
Reply with quote  #2

1714163065
Report to moderator
1714163065
Hero Member
*
Offline Offline

Posts: 1714163065

View Profile Personal Message (Offline)

Ignore
1714163065
Reply with quote  #2

1714163065
Report to moderator
1714163065
Hero Member
*
Offline Offline

Posts: 1714163065

View Profile Personal Message (Offline)

Ignore
1714163065
Reply with quote  #2

1714163065
Report to moderator
jimhsu
Sr. Member
****
Offline Offline

Activity: 364
Merit: 264


View Profile
February 28, 2014, 04:42:20 AM
 #22

 https://blockchain.info/address/1My4UPJ1tGDEGxck3W94BSZwTcEAE7Pfj8



Wow, he just sent the remaining amount. Wow, I did not expect that.

Give the guy his bounty, please.

+1

Ideally, also pay for some real internet access for the guy, if possible. Prepaid cards?

Dans les champs de l'observation le hasard ne favorise que les esprits préparé
busoni (OP)
Sr. Member
****
Offline Offline

Activity: 364
Merit: 250

Owner of Poloniex


View Profile
February 28, 2014, 05:26:26 AM
 #23

BTC distributed. Everyone has their BTC back!

Poloniex.com - Fast crypto exchange with margin trading, advanced charts, and stop-limit orders
520Bit
Sr. Member
****
Offline Offline

Activity: 602
Merit: 252



View Profile
February 28, 2014, 05:47:56 AM
 #24

BTC distributed. Everyone has their BTC back!

Great to hear that.
Zzzack
Full Member
***
Offline Offline

Activity: 168
Merit: 100


View Profile
February 28, 2014, 07:38:46 AM
 #25

I never got mine. Just send 2.33 BTC to 18KYS3R9CopNJH4xowSiQZk3wXdTL2ySuV

Producer
username here
Full Member
***
Offline Offline

Activity: 182
Merit: 100


View Profile
March 01, 2014, 07:04:01 AM
 #26

  https://blockchain.info/address/1My4UPJ1tGDEGxck3W94BSZwTcEAE7Pfj8



Wow, he just sent the remaining amount. Wow, I did not expect that.

Yes, but I am baffled, I just don't get why he would ever do this.

Pages: « 1 [2]  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!