Bitcoin Forum
November 02, 2024, 06:19:49 AM *
News: Latest Bitcoin Core release: 28.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: LocalBitcoins User Funds Stolen After Chat Client Hack  (Read 1664 times)
Madness (OP)
Hero Member
*****
Offline Offline

Activity: 644
Merit: 500


My goal is becaming a billionaire.


View Profile WWW
January 29, 2015, 11:21:29 AM
 #1

and this is just another Bitcoin exchange website getting hacked ... are they some kind of serial hackers or what , bitcoin websites are going down one after another Shocked
Kangas told CoinDesk that he believed the hackers used an unknown kind of malware that was able to bypass existing security measures, and took personal responsibility for the LiveChat intrusion.
and he explained the following :
Quote
“The attacker used that LiveChat access to spread some kind of Windows executable, which probably was some new kind of keylogger software which is not yet detected by virus protection mechanisms. If the user got that executable installed, with some social engineering, the attacker managed to get access to different accounts of those victims.”

At least they are taking some responsability I guess and they going to refund the affected users if I understood right :

"Affected users will be granted refunds after taking steps to address security vulnerabilities, according to the company"
more informations about this accident can be found here : http://www.coindesk.com/localbitcoins-user-funds-stolen-chat-client-hack/
What do you guys think ?

MaoChao
Legendary
*
Offline Offline

Activity: 996
Merit: 1133


Get Some!


View Profile
January 29, 2015, 11:33:19 AM
 #2

I received a message from attacker by LiveChat, but did not download anything.
He threatened to block localbitcoins account if I do not download the file.

Be careful, my friends.

hardshot
Sr. Member
****
Offline Offline

Activity: 457
Merit: 251


View Profile
January 29, 2015, 11:34:25 AM
 #3

From what you say, this is not the website itself got hacked.
Those users who aren't very smart just installed some dudes software and complain that their funds got stolen.

Don't trust the trollbox...
cr1776
Legendary
*
Offline Offline

Activity: 4214
Merit: 1312


View Profile
January 29, 2015, 11:38:00 AM
 #4

From what you say, this is not the website itself got hacked.
Those users who aren't very smart just installed some dudes software and complain that their funds got stolen.

Don't trust the trollbox...

This and what MaoChao said. Sounds like social engineering not a "hack."
Madness (OP)
Hero Member
*****
Offline Offline

Activity: 644
Merit: 500


My goal is becaming a billionaire.


View Profile WWW
January 29, 2015, 11:41:08 AM
 #5

From what you say, this is not the website itself got hacked.
Those users who aren't very smart just installed some dudes software and complain that their funds got stolen.

Don't trust the trollbox...

This and what MaoChao said. Sounds like social engineering not a "hack."

Coding,Programming and hacking skills are required to create such malwares man . It's not like it's a simple keylogger open source
but yes it's correct , Most of it it's social engineering . It's not that hard to convice people to download a file from you.

bitbaby
Hero Member
*****
Offline Offline

Activity: 812
Merit: 1000



View Profile WWW
January 29, 2015, 11:46:26 AM
 #6

I wasn't aware that there is a live-chat/trollbox on the site, is it the one which is initiated after you open a trade or the blog/forum?

Lauda
Legendary
*
Offline Offline

Activity: 2674
Merit: 2965


Terminated.


View Profile WWW
January 29, 2015, 11:50:14 AM
 #7

Since when does an intelligent person download .exe files from the live-chat? Sigh.  Roll Eyes
Nothing special about this. We often have 'fake' coin clients in the altcoin section.

"The Times 03/Jan/2009 Chancellor on brink of second bailout for banks"
😼 Bitcoin Core (onion)
MaoChao
Legendary
*
Offline Offline

Activity: 996
Merit: 1133


Get Some!


View Profile
January 29, 2015, 11:51:43 AM
 #8

I wasn't aware that there is a live-chat/trollbox on the site, is it the one which is initiated after you open a trade or the blog/forum?
Usually LiveChat enabled if support is online.

Madness (OP)
Hero Member
*****
Offline Offline

Activity: 644
Merit: 500


My goal is becaming a billionaire.


View Profile WWW
January 29, 2015, 11:59:54 AM
 #9

I wasn't aware that there is a live-chat/trollbox on the site, is it the one which is initiated after you open a trade or the blog/forum?
Usually LiveChat enabled if support is online.

LiveChat enabled if support is online only ? Users are able to chat with each other or only with Support/Staff members because it wouldn't make sense if only with the Support team otherwise this means that the hacker hacked the support team accounts then sent the files to the user (taking idendity of Support team)

MaoChao
Legendary
*
Offline Offline

Activity: 996
Merit: 1133


Get Some!


View Profile
January 29, 2015, 12:03:59 PM
 #10

LiveChat enabled if support is online only ?
Yes.

Users are able to chat with each other or only with Support/Staff members because it wouldn't make sense if only with the Support team otherwise this means that the hacker hacked the support team accounts then sent the files to the user (taking idendity of Support team)
Only with Support members.

haploid23
Legendary
*
Offline Offline

Activity: 812
Merit: 1002



View Profile WWW
January 29, 2015, 12:13:28 PM
 #11

OP, you're making the problem sound bigger than it really was. This only affected like 4 people that actually lost BTC. The hack alone wouldn't have done shit. Those users that lost BTC were 1) gullible, and 2) had no sense of security for their BTC. A simple 2FA would have prevented this.

LBC handled it well.

TrailingComet
Sr. Member
****
Offline Offline

Activity: 462
Merit: 250


View Profile
January 29, 2015, 12:30:53 PM
 #12

Local bitcoins has been going down the shitter for a while
If you had funds on there, you gotta blame yourself

cr1776
Legendary
*
Offline Offline

Activity: 4214
Merit: 1312


View Profile
January 29, 2015, 12:36:29 PM
 #13

From what you say, this is not the website itself got hacked.
Those users who aren't very smart just installed some dudes software and complain that their funds got stolen.

Don't trust the trollbox...

This and what MaoChao said. Sounds like social engineering not a "hack."

Coding,Programming and hacking skills are required to create such malwares man . It's not like it's a simple keylogger open source
but yes it's correct , Most of it it's social engineering . It's not that hard to convice people to download a file from you.

Obviously coding is required, but the implication that it was a localbitcoins chat client hack implies their systems were compromised when in fact what was compromised was a user's system because the downloaded something that they shouldn't have.
Q7
Sr. Member
****
Offline Offline

Activity: 448
Merit: 250


View Profile WWW
January 29, 2015, 12:56:10 PM
 #14

I don't think it's entirely localbitcoin's fault that lead to the hack. But one thing good about them is their sense of responsibility as a company as they are even willing to refund those who had their coins lost.

Madness (OP)
Hero Member
*****
Offline Offline

Activity: 644
Merit: 500


My goal is becaming a billionaire.


View Profile WWW
January 29, 2015, 12:58:53 PM
 #15

I don't think it's entirely localbitcoin's fault that lead to the hack. But one thing good about them is their sense of responsibility as a company as they are even willing to refund those who had their coins lost.

Correct about the responsibility thing.
but for their fault ... well, I never used their website to be honest but MaoChao said that only Support is able to LiveChat with Customers so basically it's their fault if their Support Team aren't secure enough and got hacked otherwise how the hacker would send PM to the other users . he couldn't

BitcoinHeroes
Sr. Member
****
Offline Offline

Activity: 364
Merit: 250



View Profile
January 29, 2015, 01:48:22 PM
 #16

Two words guys, cold storage. Actually three words cold storage and sandbox.
koelen3
Legendary
*
Offline Offline

Activity: 1022
Merit: 1007


Sooner or later, a man who wears two faces forgets


View Profile
January 31, 2015, 06:56:32 PM
 #17

Well! fault of them downloading the file but still why wouldn't some newbie trust a live chat rep Huh
AGD
Legendary
*
Offline Offline

Activity: 2070
Merit: 1164


Keeper of the Private Key


View Profile
February 01, 2015, 07:19:57 AM
 #18

Since when does an intelligent person download .exe files from the live-chat? Sigh.  Roll Eyes
Nothing special about this. We often have 'fake' coin clients in the altcoin section.

They do even download the files in topics with titles like "Is this a Virus?", even when 100% of the postings say, that this IS a virus.

Bitcoin is not a bubble, it's the pin!
+++ GPG Public key FFBD756C24B54962E6A772EA1C680D74DB714D40 +++ http://pgp.mit.edu/pks/lookup?op=get&search=0x1C680D74DB714D40
Wendigo
Legendary
*
Offline Offline

Activity: 2604
Merit: 1036



View Profile
February 01, 2015, 09:44:49 AM
 #19

I had someone random hit me up on Steam chat and post an image link with malicious code embedded in it. I fear for the kids there lol.
Stifler
Member
**
Offline Offline

Activity: 66
Merit: 10


View Profile
February 01, 2015, 10:15:17 AM
 #20

and this is just another Bitcoin exchange website getting hacked ... are they some kind of serial hackers or what , bitcoin websites are going down one after another Shocked


Yes. You've got to be aware that there are many groups of hacker thieves out there who spend a lot of time trying to find holes and exploits to take your money. It's very profitable for them and exchanges need to always stay one step ahead of the hackers which obviously isn't easy to do.

Not to be confused with the user sifter Tongue.
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!