neha (OP)
|
|
August 14, 2014, 09:00:30 PM |
|
Challenge accepted, been looking for a place to hone my skills Awesome, make sure you review the instructions of sending the email and communicating with the server. The only way you can reach the server is to send an email to hack@nuovocard.com with subject as 'transfer' and you will get a Testnet Transaction ID back. Also, currently we have the server set to check mail every 30 seconds as we dont expect too much traffic. So please wait for 30 seconds to get a reply.
|
|
|
|
neha (OP)
|
|
August 14, 2014, 09:21:05 PM |
|
Well, I'll give it a shot. I'm not a hacker, but I have lots of experience with MS paint. If a poorly drawn MS paint picture of goatse shows up on your site you know who did it.
Hey, remember the challenge is not to hack the webserver. If you are able to hack the app server...make sure you leave a text file in the home folder with you email address.
|
|
|
|
deydod
Newbie
Offline
Activity: 22
Merit: 0
|
|
August 14, 2014, 09:42:30 PM |
|
IP is: 64.233.166.121
Location: City: Mountain View Country: United States State: California
Am I right?
|
|
|
|
neha (OP)
|
|
August 14, 2014, 09:47:21 PM |
|
IP is: 64.233.166.121
Location: City: Mountain View Country: United States State: California
Am I right?
Nope. Thats Google I think. Update : Yeah that is google. http://64.233.166.121.ipaddress.com/. Please check who does the IP belong to before you post. Our server currently is not on Google.
|
|
|
|
BitCoinDream
Legendary
Offline
Activity: 2394
Merit: 1216
The revolution will be digital
|
|
August 14, 2014, 10:29:10 PM |
|
Hi Neha, HappY Independence Day You have chosen a great day to kickstart the hackathon. As I understand, u dont want us to find where Nuovocard.com is running, i.e. the web server. U want us to find out the server IP from where the mail is originating. Am I wrong ?
|
|
|
|
MakeBelieve
|
|
August 14, 2014, 10:45:39 PM |
|
Hi Neha, HappY Independence Day You have chosen a great day to kickstart the hackathon. As I understand, u dont want us to find where Nuovocard.com is running, i.e. the web server. U want us to find out the server IP from where the mail is originating. Am I wrong ? That's what he is asking you to do...I'm going to give this a shot!
|
On a mission to make Bitcointalk.org Marketplace a safer place to Buy/Sell/Trade
|
|
|
|
cooldgamer
Legendary
Offline
Activity: 1218
Merit: 1003
We are the champions of the night
|
|
August 14, 2014, 10:52:27 PM |
|
|
|
|
|
BitCoinDream
Legendary
Offline
Activity: 2394
Merit: 1216
The revolution will be digital
|
|
August 14, 2014, 11:00:55 PM |
|
Oops ...sorry. Missed it. Feeling sleepy. By the way, they are most likely using Google server to sign mails, as it appears from the mail header. Can we get IP behind Google ? Most probably no by any known technology, but may be possible by social engineering.
|
|
|
|
ForgottenPassword
|
|
August 14, 2014, 11:22:25 PM Last edit: August 14, 2014, 11:33:49 PM by ForgottenPassword |
|
nuovocard.com is registered to use Google Apps. The emails are arriving into gmail and their server is SMTP'ing in and getting them.
Only way to get the IP would be to hack their Google Apps account.
|
|
|
|
virtualx
|
|
August 14, 2014, 11:48:07 PM |
|
Is it 10.229.74.74 ?
|
...loteo...
DIGITAL ERA LOTTERY | ║ ║ ║ | | r | ▄▄███████████▄▄ ▄███████████████████▄ ▄███████████████████████▄ ▄██████████████████████████▄ ▄██ ███████▌ ▐██████████████▄ ▐██▌ ▐█▀ ▀█ ▐█▀ ▀██▀ ▀██▌ ▐██ █▌ █▌ ██ ██▌ ██▌ █▌ █▌ ██▌ ▐█▌ ▐█ ▐█ ▐█▌ ▐██ ▄▄▄██ ▐█ ▐██▌ ▐█ ██▄ ▄██ █▄ ██▄ ▄███▌ ▀████████████████████████████▀ ▀██████████████████████████▀ ▀███████████████████████▀ ▀███████████████████▀ ▀▀███████████▀▀
| r | | ║ ║ ║ | RPLAY NOWR
BE A MOON VISITOR! |
[/center]
|
|
|
neha (OP)
|
|
August 15, 2014, 07:30:01 AM Last edit: August 15, 2014, 11:29:47 AM by neha |
|
We Wish A Happy Independence Day to all Indians.Is it 10.229.74.74 ?
Nope. Ill give a hint, the IP Address ends with 13. nuovocard.com is registered to use Google Apps. The emails are arriving into gmail and their server is SMTP'ing in and getting them.
Only way to get the IP would be to hack their Google Apps account.
If thats what it takes, please try that too.
|
|
|
|
Nico205
|
|
August 15, 2014, 11:35:21 AM |
|
I cannot view the transaction in the testnet blockchain explorer.
|
|
|
|
neha (OP)
|
|
August 15, 2014, 11:41:53 AM |
|
|
|
|
|
Nico205
|
|
August 15, 2014, 11:42:17 AM |
|
thx
|
|
|
|
Nico205
|
|
August 15, 2014, 11:56:07 AM |
|
Is your server located by hetzner ?
|
|
|
|
neha (OP)
|
|
August 15, 2014, 11:58:02 AM |
|
Nope...amazon. Already disclosed that earlier.
All the best.
|
|
|
|
Nico205
|
|
August 15, 2014, 12:27:01 PM |
|
Can you please sent me the jar file of your application ?
|
|
|
|
neha (OP)
|
|
August 15, 2014, 12:33:05 PM |
|
Can you please sent me the jar file of your application ?
There is still time for that part of the contest. There are atleast 23 people trying and it wont be fair to them. Also, I have discussed with the team and jar wont be necessary. We will post the instructions and server config later and you would be able to simulate our server. Lets give everyone the time promised. Who knows, someone might just hack our email address and get the IP. You would not believe this but earlier this whole system was designed using a Web Interface with app and everything and then everything was scrapped by my partner as he thought that whatever we do, we cannot be as safe as Google and so he made us do everything again just to keep security as the highest concern. Moreover, he found 2fa on phone apps too cumbersome. I guess thats why most companies dont have 2fa on their mobile apps.
|
|
|
|
neha (OP)
|
|
August 15, 2014, 05:22:05 PM |
|
Tor is used with Bitcoind.
|
|
|
|
|