Bitcoin Forum
November 16, 2024, 02:49:58 PM *
News: Latest Bitcoin Core release: 28.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 ... 640 641 642 643 644 645 646 647 648 649 650 651 652 653 654 655 656 657 658 659 660 661 662 663 664 665 666 667 668 669 670 671 672 673 674 675 676 677 678 679 680 681 682 683 684 685 686 687 688 689 [690] 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707 708 709 710 711 712 713 714 715 716 717 718 719 720 721 722 723 724 725 726 727 728 729 730 731 732 733 734 735 736 737 738 739 740 ... 2127 »
  Print  
Author Topic: [XMR] Monero - A secure, private, untraceable cryptocurrency  (Read 4670995 times)
ArticMine
Legendary
*
Offline Offline

Activity: 2282
Merit: 1050


Monero Core Team


View Profile
September 17, 2014, 06:14:57 PM
 #13781

Hahem am I the only one that think BCX's findings are worrisome?

Claiming to have something and providing evidence thereof are two different things.

If you have an exploit for a (genuine, not-scammy) FOSS project, not releasing it *at least* to the developers is unconscionable - you aren't hurting a corporation or a bunch of fat cats, you're hurting a small group of developers who work - unpaid - on a software development project for the presumed betterment of everyone. You're hurting altruists who are giving of themselves for little or no reward, but I guess there are people who are so ethically imbalanced that they don't even consider this.

At a minimum some technical details about it would be nice.

The ethical question I see here is that there is fierce competition among the CN coins so who does he release it to without picking favourites. If he releases the technical information to all the CN coin developers he could be providing the exploit to the attacker (black hat) as well as the defender (white hat). It is not as simple as a case where the white hats are easily identifiable.

Concerned that blockchain bloat will lead to centralization? Storing less than 4 GB of data once required the budget of a superpower and a warehouse full of punched cards. https://upload.wikimedia.org/wikipedia/commons/8/87/IBM_card_storage.NARA.jpg https://en.wikipedia.org/wiki/Punched_card
aminorex
Legendary
*
Offline Offline

Activity: 1596
Merit: 1030


Sine secretum non libertas


View Profile
September 17, 2014, 06:20:06 PM
 #13782

It is not as simple as a case where the white hats are easily identifiable.

I beg to differ.  That seems a false balance to me.  It takes a pretty bad lie detector to misplace those boundaries in this case. 

Anyhow, it doesn't matter:  Just release the exploit publicly.  The only reason I can comprehend not to do so is a plan to use it personally in future, for extortion or malice.  But I may be missing something.


Give a man a fish and he eats for a day.  Give a man a Poisson distribution and he eats at random times independent of one another, at a constant known rate.
cAPSLOCK
Legendary
*
Offline Offline

Activity: 3836
Merit: 5299


Note the unconventional cAPITALIZATION!


View Profile
September 17, 2014, 06:26:06 PM
 #13783

It is not as simple as a case where the white hats are easily identifiable.

I beg to differ.  That seems a false balance to me.  It takes a pretty bad lie detector to misplace those boundaries in this case. 

Anyhow, it doesn't matter:  Just release the exploit publicly.  The only reason I can comprehend not to do so is a plan to use it personally in future, for extortion or malice.  But I may be missing something.

I think you may be.  He may just be not interested and also have no desire to be involved.

If he is mistaken, then he is setting an annoying trap for bears.
If he is lying, well then... he is acting unethically.
If he is telling the truth he is giving a warning for devs and investors.

I hope he explains the exploit.
Ultros
Sr. Member
****
Offline Offline

Activity: 471
Merit: 250



View Profile
September 17, 2014, 06:29:07 PM
 #13784

It is not as simple as a case where the white hats are easily identifiable.

I beg to differ.  That seems a false balance to me.  It takes a pretty bad lie detector to misplace those boundaries in this case. 

Anyhow, it doesn't matter:  Just release the exploit publicly.  The only reason I can comprehend not to do so is a plan to use it personally in future, for extortion or malice.  But I may be missing something.


You might be missing the power of trolling. BCX have been taunted, he enraged and made some damaging move. Now he's just glad XMR's community took a nice FUD-bomb in the face. Sometimes the most obvious explanation can be the best.

Anyway we can all applause our favorite fake-shill troll moneroman88 for his very well executed provocation.
cAPSLOCK
Legendary
*
Offline Offline

Activity: 3836
Merit: 5299


Note the unconventional cAPITALIZATION!


View Profile
September 17, 2014, 06:29:19 PM
 #13785

Eek.  I was about to say at least there has been no dump...
GreekBitcoin
Legendary
*
Offline Offline

Activity: 1428
Merit: 1001


getmonero.org


View Profile WWW
September 17, 2014, 06:32:20 PM
 #13786

Eek.  I was about to say at least there has been no dump...

too soon Tongue
Jshank
Member
**
Offline Offline

Activity: 75
Merit: 10


View Profile
September 17, 2014, 06:52:40 PM
 #13787

who is on damage control  Undecided
krawallmining
Member
**
Offline Offline

Activity: 65
Merit: 10


View Profile
September 17, 2014, 06:54:48 PM
 #13788

Maybe BitcoinEXpress should code his own coin if he's of such skill?
fluffypony
Donator
Legendary
*
Offline Offline

Activity: 1274
Merit: 1060


GetMonero.org / MyMonero.com


View Profile WWW
September 17, 2014, 06:56:25 PM
 #13789

who is on damage control  Undecided

What damage? Should we react every time someone claims something? At this stage, given that there are no technical details, we can only assume that it may be true or it may be false. And, thus, do nothing until something tips the evidence either way.

macsga
Legendary
*
Offline Offline

Activity: 1484
Merit: 1002


Strange, yet attractive.


View Profile
September 17, 2014, 07:23:52 PM
 #13790

who is on damage control  Undecided

What damage? Should we react every time someone claims something? At this stage, given that there are no technical details, we can only assume that it may be true or it may be false. And, thus, do nothing until something tips the evidence either way.

FUD is the most used drug within the cryptocoin world. This is not new; no evidence? Does not exist.

Chaos could be a form of intelligence we cannot yet understand its complexity.
Globb0
Legendary
*
Offline Offline

Activity: 2702
Merit: 2053


Free spirit


View Profile
September 17, 2014, 07:31:55 PM
 #13791



Whirlwind missives updated.

https://bitcointalk.org/index.php?topic=583449.msg8488694#msg8488694



Regards all,


Globb0
mmortal03
Legendary
*
Offline Offline

Activity: 1762
Merit: 1011


View Profile
September 17, 2014, 07:35:56 PM
 #13792

Also obviously this would have to be temporary. The devs would need to commit to weaning off of such a system after given features are implemented or a given period of time.

I would suggest exhausting all possible external options for raising funds before building something into the software. I think going this other route would be more scandalized and trolled than you're considering.

I don't think that it's fundamentally bad to build something into the software. Not sure if you saw the Missive, but in the last wizard screenshot there's an idea for an auto-donation system we want to implement: https://i.imgur.com/ACDmOFJ.jpg

The basic idea is that it's completely user-selectable, based on a % of your tx fee (cumulative to avoid adding dust outputs) that is added on top of the tx fee, so it'll never have a major impact. In the GUI we'd most likely have it on at 50% by default.

Making it opt-in is definitely important.

Look, one can argue that having good developers is just as important to a cryptocurrency's future as the security provided by the miners, and so, too, deserve compensation. The problem with open source projects is how to implement this compensation in such a way that it doesn't centralize the development funds to one particular individual or set of individuals. If there was some way to trustlessly and fairly direct funds to each individual developer based on their perceived contributions to the development work, using some sort of algorithm, that would be the ideal. This may be an intractable problem.

It's no wonder that projects where there is no opposition to investment in a centralization of effort (say, closed source startups) at least don't have this problem. They do have other problems, of course.
Bassica
Sr. Member
****
Offline Offline

Activity: 283
Merit: 250


View Profile
September 17, 2014, 08:37:27 PM
 #13793

New day, new drama  Grin gotta love the world of crypto
wachtwoord
Legendary
*
Offline Offline

Activity: 2338
Merit: 1136


View Profile
September 17, 2014, 08:55:29 PM
 #13794

My virus scanner (F-secure) just reported that bitmonerod.exe contained a trojan. It's the version I downloaded on this site.

What's up? False positive?
blaaaaacksuit
Sr. Member
****
Offline Offline

Activity: 280
Merit: 250

Who cares?


View Profile
September 17, 2014, 08:59:33 PM
 #13795

My virus scanner (F-secure) just reported that bitmonerod.exe contained a trojan. It's the version I downloaded on this site.

What's up? False positive?

What happened to dev?  Why is the price down? SCAM!
Ultros
Sr. Member
****
Offline Offline

Activity: 471
Merit: 250



View Profile
September 17, 2014, 08:59:45 PM
 #13796

My virus scanner (F-secure) just reported that bitmonerod.exe contained a trojan. It's the version I downloaded on this site.

What's up? False positive?

My scanner (Kaskpersky Pure) doesn't report anything special. Latest version, just downloaded from OP to be sure.
cAPSLOCK
Legendary
*
Offline Offline

Activity: 3836
Merit: 5299


Note the unconventional cAPITALIZATION!


View Profile
September 17, 2014, 08:59:52 PM
 #13797

My virus scanner (F-secure) just reported that bitmonerod.exe contained a trojan. It's the version I downloaded on this site.

What's up? False positive?

Use your own common sense, but yes false positive, just like minerd.exe and other bitcoin executables.

The reason is Monero has been a CPU minable coin from the beginning.  So botnets distribute the daemon for mining via trojans.
klee
Legendary
*
Offline Offline

Activity: 1498
Merit: 1000



View Profile
September 17, 2014, 09:00:04 PM
 #13798

https://bitcointalk.org/index.php?topic=577267.msg8865517#msg8865517
wachtwoord
Legendary
*
Offline Offline

Activity: 2338
Merit: 1136


View Profile
September 17, 2014, 09:02:35 PM
 #13799

I downloaded the newest version and it is no longer detected as a trojan. (it is incredibly slow though Tongue)
mmortal03
Legendary
*
Offline Offline

Activity: 1762
Merit: 1011


View Profile
September 17, 2014, 09:03:49 PM
 #13800

Regarding donations - we already have about 20% of the Monero owners joining MEW. If we get this number to about 50%, then it will be easier to fund development as a community effort because there is no free riding.

how to get in there?


a third idea and that is basically how mike hear financed his project is to convince very rich anarchists/libertarians that this project has a lot of value. finding these guys in the bitcoin environment should be easy Cheesy convincing them that there is place for a second major currency is hard. first because the person probably thinks it shoots its own leg, second because there needs to be an incentive for him. that said I think there are people who see besides their own profit, moral reasons to invest in a project like this.

I agree with this. There needs to be more moral arguments promoted in the direction of voluntary donation.
Pages: « 1 ... 640 641 642 643 644 645 646 647 648 649 650 651 652 653 654 655 656 657 658 659 660 661 662 663 664 665 666 667 668 669 670 671 672 673 674 675 676 677 678 679 680 681 682 683 684 685 686 687 688 689 [690] 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707 708 709 710 711 712 713 714 715 716 717 718 719 720 721 722 723 724 725 726 727 728 729 730 731 732 733 734 735 736 737 738 739 740 ... 2127 »
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!