Bitcoin Forum
April 30, 2024, 10:51:29 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  

Warning: Moderators do not remove likely scams. You must use your own brain: caveat emptor. Watch out for Ponzi schemes. Do not invest more than you can afford to lose.

Warning: One or more bitcointalk.org users have reported that they strongly believe that the creator of this topic is a scammer. (Login to see the detailed trust ratings.) While the bitcointalk.org administration does not verify such claims, you should proceed with extreme caution.
Pages: « 1 ... 806 807 808 809 810 811 812 813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828 829 830 831 832 833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 [856] 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895 896 897 898 899 900 901 902 903 904 905 906 ... 1348 »
  Print  
Author Topic: ASICMINER: Entering the Future of ASIC Mining by Inventing It  (Read 3916337 times)
robix
Sr. Member
****
Offline Offline

Activity: 360
Merit: 250


View Profile
February 14, 2014, 12:12:47 PM
 #17101

I'd guess his mail account got compromised. It's simply the biggest hole you can get through. I guess it's futile to discuss what is 'probable' because why would someone do something improbable - because it is improbable. Circular logic, we'll have to wait and see...
Is 2FA disabled when you request a new password? I don't think so.
1714517489
Hero Member
*
Offline Offline

Posts: 1714517489

View Profile Personal Message (Offline)

Ignore
1714517489
Reply with quote  #2

1714517489
Report to moderator
The Bitcoin software, network, and concept is called "Bitcoin" with a capitalized "B". Bitcoin currency units are called "bitcoins" with a lowercase "b" -- this is often abbreviated BTC.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714517489
Hero Member
*
Offline Offline

Posts: 1714517489

View Profile Personal Message (Offline)

Ignore
1714517489
Reply with quote  #2

1714517489
Report to moderator
1714517489
Hero Member
*
Offline Offline

Posts: 1714517489

View Profile Personal Message (Offline)

Ignore
1714517489
Reply with quote  #2

1714517489
Report to moderator
1714517489
Hero Member
*
Offline Offline

Posts: 1714517489

View Profile Personal Message (Offline)

Ignore
1714517489
Reply with quote  #2

1714517489
Report to moderator
minerpumpkin
Hero Member
*****
Offline Offline

Activity: 686
Merit: 500


A pumpkin mines 27 hours a night


View Profile
February 14, 2014, 12:44:06 PM
 #17102

I'd guess his mail account got compromised. It's simply the biggest hole you can get through. I guess it's futile to discuss what is 'probable' because why would someone do something improbable - because it is improbable. Circular logic, we'll have to wait and see...
Is 2FA disabled when you request a new password? I don't think so.

But in case of Google Mail you could have control over the 2FA authenticating entity...

I should have gotten into Bitcoin back in 1992...
robix
Sr. Member
****
Offline Offline

Activity: 360
Merit: 250


View Profile
February 14, 2014, 02:01:58 PM
 #17103

I'd guess his mail account got compromised. It's simply the biggest hole you can get through. I guess it's futile to discuss what is 'probable' because why would someone do something improbable - because it is improbable. Circular logic, we'll have to wait and see...
Is 2FA disabled when you request a new password? I don't think so.

But in case of Google Mail you could have control over the 2FA authenticating entity...
ok
dmcdad
Sr. Member
****
Offline Offline

Activity: 302
Merit: 250



View Profile
February 14, 2014, 02:08:52 PM
 #17104

empoweoqwj: very sorry to hear about this, and I hope you or havelock track down exactly what happened. Man, this has been a really crappy week for BTC.
shawshankinmate37927
Hero Member
*****
Offline Offline

Activity: 854
Merit: 1000


Bitcoin: The People's Bailout


View Profile
February 14, 2014, 04:19:35 PM
 #17105

nope - Mac - and no, I didn't install that "Stealth Bit" malware

That's the only computer you've used to logon to Havelock?

Yep. Just my Macbook

Did you have Google Authenticator installed on this or a different device?

"It is well enough that people of the nation do not understand our banking and monetary system, for if they did, I believe there would be a revolution before tomorrow morning."   - Henry Ford
silverfuture
Legendary
*
Offline Offline

Activity: 947
Merit: 1008


central banking = outdated protocol


View Profile
February 14, 2014, 04:37:54 PM
 #17106

I'd guess his mail account got compromised. It's simply the biggest hole you can get through. I guess it's futile to discuss what is 'probable' because why would someone do something improbable - because it is improbable. Circular logic, we'll have to wait and see...
Is 2FA disabled when you request a new password? I don't think so.

But in case of Google Mail you could have control over the 2FA authenticating entity...

Compromised gmail account seems like the simplest and most likely scenario.

-----------------------------------------------------------------------------------------------------------------------
NastyFans - The Fan Club for Bitcoin Enthusiasts | MININGCOINS | POOL | ESCROW
-----------------------------------------------------------------------------------------------------------------------
havelock
Sr. Member
****
Offline Offline

Activity: 328
Merit: 250



View Profile WWW
February 14, 2014, 04:50:22 PM
 #17107

Here at Havelock we take security issues very seriously.

We have never had any issues with users that enabled 2FA on their account. We have contacted the person that has made the claim that is account has been compromised and are looking to resolve the matter has soon as possible.

Trying to balance ease of use and security is never easy, especially in the Bitcoin realm. We can always add additional security features but those will always slow down the user experience.

So we turn to you, our valued customers, what features would like us to add to our platform?

1. Confirmation email before any action is taken; some but not all actions.

2. Pending withdrawal of your Bitcoins; time lock?

3. Lock account by IP address?

We always value your opinions and we strive to serve the Bitcoin community to the best of our ability.

Also we can assure everyone that it was not an "inside rogue employee"

Thank you,

Support Team
Havelock Investments

Caesium
Hero Member
*****
Offline Offline

Activity: 546
Merit: 500


View Profile
February 14, 2014, 04:54:02 PM
 #17108


2. Pending withdrawal of your Bitcoins; time lock?


How about allowing us to specify a withdrawal address that is then locked; coins can only be sent to this address. It can be unlocked, but upon doing so an email is sent notifying me that it's been unlocked and it takes a further 7 days or so before a new address can be entered?

Tired of annoying signature ads? Ad block for signatures
jimmothy
Hero Member
*****
Offline Offline

Activity: 770
Merit: 509



View Profile
February 14, 2014, 04:56:02 PM
 #17109

Here at Havelock we take security issues very seriously.

We have never had any issues with users that enabled 2FA on their account. We have contacted the person that has made the claim that is account has been compromised and are looking to resolve the matter has soon as possible.

Trying to balance ease of use and security is never easy, especially in the Bitcoin realm. We can always add additional security features but those will always slow down the user experience.

So we turn to you, our valued customers, what features would like us to add to our platform?

1. Confirmation email before any action is taken; some but not all actions.

2. Pending withdrawal of your Bitcoins; time lock?

3. Lock account by IP address?

We always value your opinions and we strive to serve the Bitcoin community to the best of our ability.

Also we can assure everyone that it was not an "inside rogue employee"

Thank you,

Support Team
Havelock Investments

Yes to every one of those. (Instant bitcoin withdrawals worries me a bit)

Also maybe requiring a pin before placing orders/doing anything like btct.co would be nice.
michaelGedi
Sr. Member
****
Offline Offline

Activity: 364
Merit: 250


"to be or not to be, that is the bitcoin"


View Profile
February 14, 2014, 05:01:24 PM
 #17110

Here at Havelock we take security issues very seriously.

We have never had any issues with users that enabled 2FA on their account. We have contacted the person that has made the claim that is account has been compromised and are looking to resolve the matter has soon as possible.

Trying to balance ease of use and security is never easy, especially in the Bitcoin realm. We can always add additional security features but those will always slow down the user experience.

So we turn to you, our valued customers, what features would like us to add to our platform?

1. Confirmation email before any action is taken; some but not all actions.

2. Pending withdrawal of your Bitcoins; time lock?

3. Lock account by IP address?

We always value your opinions and we strive to serve the Bitcoin community to the best of our ability.

Also we can assure everyone that it was not an "inside rogue employee"

Thank you,

Support Team
Havelock Investments

Yes to every one of those. (Instant bitcoin withdrawals worries me a bit)

Also maybe requiring a pin before placing orders/doing anything like btct.co would be nice.

I somewhat agree, you can never have too many security options at this stage with bitcoin...

perhaps a poll should be offered via email or on the forum to put possible security additions in order of priority?

TRADE FOREX, STOCKS AND COMMODITIES without the paperwork with Bitcoin: https://1broker.com/m/r.php?i=3589

1BROKER has been around since 2012 and is going strong
hdbuck
Legendary
*
Offline Offline

Activity: 1260
Merit: 1002



View Profile
February 14, 2014, 05:11:47 PM
 #17111

Here at Havelock we take security issues very seriously.

We have never had any issues with users that enabled 2FA on their account. We have contacted the person that has made the claim that is account has been compromised and are looking to resolve the matter has soon as possible.

Trying to balance ease of use and security is never easy, especially in the Bitcoin realm. We can always add additional security features but those will always slow down the user experience.

So we turn to you, our valued customers, what features would like us to add to our platform?

1. Confirmation email before any action is taken; some but not all actions.

2. Pending withdrawal of your Bitcoins; time lock?

3. Lock account by IP address?

We always value your opinions and we strive to serve the Bitcoin community to the best of our ability.

Also we can assure everyone that it was not an "inside rogue employee"

Thank you,

Support Team
Havelock Investments

Yes to every one of those. (Instant bitcoin withdrawals worries me a bit)

Also maybe requiring a pin before placing orders/doing anything like btct.co would be nice.

yes to every of those + YUBIKEY!!!!
runam0k
Legendary
*
Offline Offline

Activity: 1092
Merit: 1001


Touchdown


View Profile
February 14, 2014, 05:18:28 PM
 #17112

Here at Havelock we take security issues very seriously.

We have never had any issues with users that enabled 2FA on their account. We have contacted the person that has made the claim that is account has been compromised and are looking to resolve the matter has soon as possible.

Trying to balance ease of use and security is never easy, especially in the Bitcoin realm. We can always add additional security features but those will always slow down the user experience.

So we turn to you, our valued customers, what features would like us to add to our platform?

1. Confirmation email before any action is taken; some but not all actions.

2. Pending withdrawal of your Bitcoins; time lock?

3. Lock account by IP address?

We always value your opinions and we strive to serve the Bitcoin community to the best of our ability.

Also we can assure everyone that it was not an "inside rogue employee"

Thank you,

Support Team
Havelock Investments
PIN for orders or withdrawals, perhaps, or lock the BTC withrawal address for x days.

Instant BTC withdrawals to any old BTC address is a problem.
shawshankinmate37927
Hero Member
*****
Offline Offline

Activity: 854
Merit: 1000


Bitcoin: The People's Bailout


View Profile
February 14, 2014, 05:20:54 PM
 #17113

Here at Havelock we take security issues very seriously.

We have never had any issues with users that enabled 2FA on their account. We have contacted the person that has made the claim that is account has been compromised and are looking to resolve the matter has soon as possible.

Trying to balance ease of use and security is never easy, especially in the Bitcoin realm. We can always add additional security features but those will always slow down the user experience.

So we turn to you, our valued customers, what features would like us to add to our platform?

1. Confirmation email before any action is taken; some but not all actions.

2. Pending withdrawal of your Bitcoins; time lock?

3. Lock account by IP address?

We always value your opinions and we strive to serve the Bitcoin community to the best of our ability.

Also we can assure everyone that it was not an "inside rogue employee"

Thank you,

Support Team
Havelock Investments

2FA via e-mail, like on blockchain.info.

"It is well enough that people of the nation do not understand our banking and monetary system, for if they did, I believe there would be a revolution before tomorrow morning."   - Henry Ford
Herp
Sr. Member
****
Offline Offline

Activity: 294
Merit: 250


View Profile
February 14, 2014, 05:26:18 PM
 #17114


2. Pending withdrawal of your Bitcoins; time lock?


How about allowing us to specify a withdrawal address that is then locked; coins can only be sent to this address. It can be unlocked, but upon doing so an email is sent notifying me that it's been unlocked and it takes a further 7 days or so before a new address can be entered?

Yep, this would be a great feature.


███████████████████████████████████████
███████████████████████████████████████
█████████████████████████████
██████████████████████████
████████████████████████
███████████████████████
█████████████████▐████
███████████████████████
████████████████████████
██████████████████████████
█████████████████████████████
███████████████████████████████████████
███████████████████████████████████████
DECENT
FOUNDATION



██
██
██
██
██
██
██
██
██

██
██
██


[D]ecentralized application
[E]liminated third parties
[C]ontent distribution



██
██
██
██
██
██
██
██
██

██
██
██


[E]ncrypted & secure
[N]o borders
[T]imeless reputation



██
██
██
██
██
██
██
██
██

██
██
██



██
██
██
██
██
██
██
██
██

██
██
██

Fabrizio89
Hero Member
*****
Offline Offline

Activity: 924
Merit: 1000


View Profile
February 14, 2014, 05:34:17 PM
 #17115


How about allowing us to specify a withdrawal address that is then locked; coins can only be sent to this address. [...]

+1
elasticband
Legendary
*
Offline Offline

Activity: 1036
Merit: 1000


Nighty Night Don't Let The Trolls Bite Nom Nom Nom


View Profile
February 14, 2014, 06:07:46 PM
 #17116


2. Pending withdrawal of your Bitcoins; time lock?


How about allowing us to specify a withdrawal address that is then locked; coins can only be sent to this address. It can be unlocked, but upon doing so an email is sent notifying me that it's been unlocked and it takes a further 7 days or so before a new address can be entered?

Yep, this would be a great feature.

Does not stop a hacker selling your shares for dirt cheap to himself.
silverfuture
Legendary
*
Offline Offline

Activity: 947
Merit: 1008


central banking = outdated protocol


View Profile
February 14, 2014, 06:10:44 PM
 #17117


2. Pending withdrawal of your Bitcoins; time lock?


How about allowing us to specify a withdrawal address that is then locked; coins can only be sent to this address. It can be unlocked, but upon doing so an email is sent notifying me that it's been unlocked and it takes a further 7 days or so before a new address can be entered?

Yep, this would be a great feature.

Does not stop a hacker selling your shares for dirt cheap to himself.

...or transferring them to another account for free.

-----------------------------------------------------------------------------------------------------------------------
NastyFans - The Fan Club for Bitcoin Enthusiasts | MININGCOINS | POOL | ESCROW
-----------------------------------------------------------------------------------------------------------------------
twentyseventy
Legendary
*
Offline Offline

Activity: 1386
Merit: 1000


View Profile
February 14, 2014, 06:34:41 PM
 #17118

Here at Havelock we take security issues very seriously.

We have never had any issues with users that enabled 2FA on their account. We have contacted the person that has made the claim that is account has been compromised and are looking to resolve the matter has soon as possible.

Trying to balance ease of use and security is never easy, especially in the Bitcoin realm. We can always add additional security features but those will always slow down the user experience.

So we turn to you, our valued customers, what features would like us to add to our platform?

1. Confirmation email before any action is taken; some but not all actions.

2. Pending withdrawal of your Bitcoins; time lock?

3. Lock account by IP address?

We always value your opinions and we strive to serve the Bitcoin community to the best of our ability.

Also we can assure everyone that it was not an "inside rogue employee"

Thank you,

Support Team
Havelock Investments
PIN for orders or withdrawals, perhaps, or lock the BTC withrawal address for x days.

Instant BTC withdrawals to any old BTC address is a problem.

I like that idea - PIN for withdrawals, BTC withdrawal address can only be changed after 7-day waiting period. You could even make the second part optional.
havelock
Sr. Member
****
Offline Offline

Activity: 328
Merit: 250



View Profile WWW
February 14, 2014, 06:48:12 PM
 #17119

Thank you for all of your quick replies,

We will start to work on the following security implementations:

1. The option to Lock your account to a specific IP

2. Required 2FA for withdrawal / optional for order execution

3. Once 2FA is enabled, you will be required to enter your 2FA to view the private key or to disable 2FA on your account.


Once again thank you for all of your support,

Havelock Investments


electerium
Full Member
***
Offline Offline

Activity: 179
Merit: 100


View Profile
February 14, 2014, 07:06:41 PM
 #17120

2fa on withdraw is a decent roadblock to mitm attacks that can circumvent the initial 2fa sign in. Additionally I think the 2fa email is also a decent idea but less robust for obvious reasons
Pages: « 1 ... 806 807 808 809 810 811 812 813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828 829 830 831 832 833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 [856] 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895 896 897 898 899 900 901 902 903 904 905 906 ... 1348 »
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!