Bitcoin Forum
April 27, 2026, 08:36:34 PM *
News: Latest Bitcoin Core release: 30.2 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 [2]  All
  Print  
Author Topic: Bitsler casino phishing attack underway  (Read 329 times)
jamyr
Sr. Member
****
Offline Offline

Activity: 1918
Merit: 406


404' -- NOT FOUND. . . yet


View Profile
January 09, 2025, 02:04:36 PM
 #21

Hi ovcijisir,
Again, there is no problem with false alarms. However, I agree that the email template is a bit sloppy, and I’m happy to get feedback to improve it.
Indeed, we changed some settings with our email provider so players using our mirror domains to log in (like bitsler.gg) can still click our emails, but this leads to the issue you described. We made some adjustments, and you should now see only bitsler.com links (or whatever mirror you’re using) on transactional email CTAs.
About the urgency, if you received this email, it means you also received the 1st one 1 month ago, explaining that after 6months of inactivity, your account was now considered dormant. Then, after that, you will receive 1 email every month (like this one) until your account gets closed. We will give more context so it makes more sense to players who did not get/read the first email. Obviously, if you have any doubts you can always log in to Bitsler on your side without clicking that link in the email. Would it sound safer if we wrote that option in the email?
The amount of your balance was correct. When your account becomes dormant, all your balances are converted into USDT. That said, I agree it makes no sense to mention so many decimals for USDT (old crypto habits :sweat_smile:). We will fix that asap.
Also, as others have mentioned, it’s kind of dumb to mention that more fees will be charged next month if the balance is already empty. As a quick fix, we will mention, “and if you still have balance.” Then, when time permits, we’ll try to make the mailing process more dynamic based on account balances, so we send those emails only if the balance is not empty yet.
I hope this helps answer your worries. If you guys have any other (doable:stuck_out_tongue:) suggestions, we’ll be happy to review them, but preferably in a more constructive section than the scam one.
Best,
Gabriel

1st, welcome back boss Gabriel.

Yeah this if already resolved should either be closed or moved to, scam-accusation (not guilty section).

To Theymos, maybe thats a good suggestion.

ovcijisir (OP)
Legendary
*
Offline Offline

Activity: 2240
Merit: 1208


Spinly.io - Next-gen Crypto iGaming Platform


View Profile WWW
January 10, 2025, 09:56:44 PM
 #22


Indeed, we changed some settings with our email provider so players using our mirror domains to log in (like bitsler.gg) can still click our emails, but this leads to the issue you described. We made some adjustments, and you should now see only bitsler.com links (or whatever mirror you’re using) on transactional email CTAs.

Hello Gabriel. This is great if e-mail shows links of just main domain and not mirror domains. But if, for the reason you described, you must use mirror domain I suggest that you make note in e-mail that explains that the links are from mirror domain. Highlighting this will not come across like someone is trying to hide a phishing link in e-mail. Also it would be good idea to make domains of mirror links on main domain(bitsler.com), and and reference to this list in e-mail, just making a note that you are sending links from mirror domain and users can check that everything is legit on main bitsler domain.


Obviously, if you have any doubts you can always log in to Bitsler on your side without clicking that link in the email. Would it sound safer if we wrote that option in the email?
This would definitely sound safer, and it would also promote good practice of avoiding of link clicking to your users.



The amount of your balance was correct. When your account becomes dormant, all your balances are converted into USDT.

Sorry this was my mistake, I read the mail too quick and understood it wrong.


That said, I agree it makes no sense to mention so many decimals for USDT (old crypto habits :sweat_smile:). We will fix that asap.
Also, as others have mentioned, it’s kind of dumb to mention that more fees will be charged next month if the balance is already empty. As a quick fix, we will mention, “and if you still have balance.” Then, when time permits, we’ll try to make the mailing process more dynamic based on account balances, so we send those emails only if the balance is not empty yet.
These are good improvements, the message would be sent just to those who have balance, so it would be less space for misunderstanding.


I hope this helps answer your worries. If you guys have any other (doable:stuck_out_tongue:) suggestions, we’ll be happy to review them, but preferably in a more constructive section than the scam one.
Best,
Gabriel

Thanks for your clarifications and feedback, I will now lock the topic.


░▄████████████▀▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▄██
████████████░█▀
████░▄▄▄███████
████▄▄▄▄▄▄▄▄░▄██
▀▀▀▀▀▀▀▀████░███
████████████░███
████████████░█▀

░▄████████████▀▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▄██
████████████░███
████████████░███
████████████░███
████▄▄▄▄████░██▀
████▀▀▀▀▀▀▀▀░▀
████░█▀

░▄████████████▀▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▄██
████████████░█▀
█████████░▄▄▄
█████████░███
░▄░██████░██▀██
▀▀░██████░▀██▄██
████████████░█▀

░▄███████▀░▄██▀▄
▀▀▀▀▀▀▀▀██▀▀▀▄██
████████████░███
████████████░███
██░▄░███████░███
██░█░███████░███
████████████░███
████████████░█▀

░▄██████▀▄
▀▀▀▀▀▀▀▄██
██████░███
██████░███
██████░███
██████░███████▀▄
██████░▀▀▀▀▀▀▄██
████████████░█▀

░▄████▀██▄█████▀▄
▀▀▀▀▀███▀▀▀▀▀▀▄██
█████████████░███
█████░█░█████░███
█████░▀░█████░███
█████████████░█▀
██████████░▄▄▄
██████████░█▀
 
.....  Next−Gen Crypto iGaming  .....
| 
     Play now      
jamyr
Sr. Member
****
Offline Offline

Activity: 1918
Merit: 406


404' -- NOT FOUND. . . yet


View Profile
January 10, 2025, 10:00:06 PM
 #23

No you did not lock. :p

Pages: « 1 [2]  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!