Pages:
Author

Topic: [1423GH] ABCPool PPS - Proxy Pool For High & Steady Mining Rewards - page 48. (Read 151781 times)

sr. member
Activity: 406
Merit: 250
In light of the previously mentioned wrong-address payouts:   Might I suggest removing the 1% contribution requirement for viewing the payout history?  At least for a week or so.  That way everyone can go in and verify their payout history to make sure they weren't affected.

Sigg.

I agree...I would like to ensure that my funds that were there, are there.
sr. member
Activity: 381
Merit: 250
In light of the previously mentioned wrong-address payouts:   Might I suggest removing the 1% contribution requirement for viewing the payout history?  At least for a week or so.  That way everyone can go in and verify their payout history to make sure they weren't affected.

Sigg.
full member
Activity: 168
Merit: 100
I had an automatic payment of 25 bitcoins which went to a different address which is not mine.
..
Please advise!
.. We've immediately halted all payments while we investigate this matter to avoid additional losses. It could very well be that someone has gained unauthorized access to our systems.

I'm investigating the matter now, and will keep you posted as I learn more.
An update on the investigation: The traces left in our logs indicate that the transaction has almost certainly been initiated through the web interface (possibly scripted to guess the PIN numbers). A SQL-Injection is highly unlikely because it would have left a different pattern of traces. In addition, a code re-review did not reveal any open SQL-injection vectors.

The attacker probably did not have access to all accounts, otherwise he could have just as easily taken a lot more while he remained undetected.

In the mean time, we advise everybody to make sure they are not reusing their passwords for other pools or services at ABCPool; please choose a new & difficult password if that's the case. It's easy to guess usernames based on the MtGox list and the forum accounts, and the Bitcoin community isn't that big.

We'll leave the payout disabled for at least another day until we can introduce additional measures to protect our miners from any unwanted withdrawals. For example, enabling you to permanently lock the payout address will surely help.

Now it's time for me to get some sleep!

Why dont you use browser activation? When a user log into ABC pool from a non-activated browser, an email will be sent to the user's email address to activate that browser. This will help tremendously assuming ppl do use have great password for their email addresses. Only one browser can be activated at any time. So when a user log in from another browser, they will have to re do the process.

Its tedious  but its very effective against remote access hacking.

If the user's computer is hacked then its already game over.
legendary
Activity: 1147
Merit: 1007
I had an automatic payment of 25 bitcoins which went to a different address which is not mine.
..
Please advise!
.. We've immediately halted all payments while we investigate this matter to avoid additional losses. It could very well be that someone has gained unauthorized access to our systems.

I'm investigating the matter now, and will keep you posted as I learn more.
An update on the investigation: The traces left in our logs indicate that the transaction has almost certainly been initiated through the web interface (possibly scripted to guess the PIN numbers). A SQL-Injection is highly unlikely because it would have left a different pattern of traces. In addition, a code re-review did not reveal any open SQL-injection vectors.

The attacker probably did not have access to all accounts, otherwise he could have just as easily taken a lot more while he remained undetected.

In the mean time, we advise everybody to make sure they are not reusing their passwords for other pools or services at ABCPool; please choose a new & difficult password if that's the case. It's easy to guess usernames based on the MtGox list and the forum accounts, and the Bitcoin community isn't that big.

We'll leave the payout disabled for at least another day until we can introduce additional measures to protect our miners from any unwanted withdrawals. For example, enabling you to permanently lock the payout address will surely help.

Now it's time for me to get some sleep!
full member
Activity: 168
Merit: 100
damn this is not cool.
 Angry
donator
Activity: 229
Merit: 106
When this happened?

That address is exactly same as the address stole my 2 BTC Sad. I believe either your account and my account hacked by the same person or ABC system compromised by hacker.

Yesterday morning.
donator
Activity: 588
Merit: 500
Got it.
Let me know if you need more info.

Hi,
I checked with the block exporer, but I do not understand the output.
http://blockexplorer.com/tx/17048250d465f25243fc7a09b24379989302b19f9176acd5fc63ac51a48ea561#o1
I will try a manual payment  to see if it is working.
Thanks.
'not yet redeemed' means that the receiver of your BTC has not yet spent it.
FYI: All payments, both manual and automatic, have been disabled while we're investigating how this happened.
MC
legendary
Activity: 1147
Merit: 1007
Hi,
I checked with the block exporer, but I do not understand the output.
http://blockexplorer.com/tx/17048250d465f25243fc7a09b24379989302b19f9176acd5fc63ac51a48ea561#o1
I will try a manual payment  to see if it is working.
Thanks.
'not yet redeemed' means that the receiver of your BTC has not yet spent it.
FYI: All payments, both manual and automatic, have been disabled while we're investigating how this happened.
MC
sr. member
Activity: 406
Merit: 250
When this happened?

That address is exactly same as the address stole my 2 BTC Sad. I believe either your account and my account hacked by the same person or ABC system compromised by hacker.

http://blockexplorer.com/address/13Sv8joH75nUPufd4fEqjAhum9kdnUexgm

You can see your transaction in there, and the one previous...presumably his.
donator
Activity: 588
Merit: 500
When this happened?

That address is exactly same as the address stole my 2 BTC Sad. I believe either your account and my account hacked by the same person or ABC system compromised by hacker.
sr. member
Activity: 406
Merit: 250
Well, that's somewhat promising then...but there have been other password leaks around the Bitcoin community.  Hope the best for you !

Note to MintCondition: I attempted to login to the account about 5 minutes ago using the credentials provided (which failed), don't kill me Smiley
donator
Activity: 229
Merit: 106
That address is exactly same as the address stole my 2 BTC Sad. I believe either your account and my account hacked by the same person or ABC system compromised by hacker.
donator
Activity: 588
Merit: 500
That was leaked by MtGox. I use a different user and password.

Hello there,

There is a problem with the automatic payment.
I had an automatic payment of 25 bitcoins which went to a different address which is not mine.
Here is a pic:
The top address is not mine and the actual address in the account is still 1ATRa5im91QsuNDYL81BpvhENuJWE78Ets.
Please advise!
Hi Ciuciu,

That's a pretty serious amount; We've immediately halted all payments while we investigate this matter to avoid additional losses. It could very well be that someone has gained unauthorized access to our systems.

I'm investigating the matter now, and will keep you posted as I learn more.

Sounds like he got compromised...simple google search of "ciuciu bitcoin" reveals some user/password lists that the name is listed on:

http://www.google.com/search?btnG=1&pws=0&q=ciuciu+bitcoin

ciuciu:albastru   <---- I hope this wasn't your ABCPool.co password.

donator
Activity: 588
Merit: 500
Hi,
I checked with the block exporer, but I do not understand the output.
http://blockexplorer.com/tx/17048250d465f25243fc7a09b24379989302b19f9176acd5fc63ac51a48ea561#o1
I will try a manual payment  to see if it is working.
Thanks.
sr. member
Activity: 406
Merit: 250
Hello there,

There is a problem with the automatic payment.
I had an automatic payment of 25 bitcoins which went to a different address which is not mine.
Here is a pic:
The top address is not mine and the actual address in the account is still 1ATRa5im91QsuNDYL81BpvhENuJWE78Ets.
Please advise!
Hi Ciuciu,

That's a pretty serious amount; We've immediately halted all payments while we investigate this matter to avoid additional losses. It could very well be that someone has gained unauthorized access to our systems.

I'm investigating the matter now, and will keep you posted as I learn more.

Sounds like he got compromised...simple google search of "ciuciu bitcoin" reveals some user/password lists that the name is listed on:

http://www.google.com/search?btnG=1&pws=0&q=ciuciu+bitcoin

ciuciu:albastru   <---- I hope this wasn't your ABCPool.co password.
legendary
Activity: 1147
Merit: 1007
Hello there,

There is a problem with the automatic payment.
I had an automatic payment of 25 bitcoins which went to a different address which is not mine.
Here is a pic:
The top address is not mine and the actual address in the account is still 1ATRa5im91QsuNDYL81BpvhENuJWE78Ets.
Please advise!
Hi Ciuciu,

That's a pretty serious amount; We've immediately halted all payments while we investigate this matter to avoid additional losses. It could very well be that someone has gained unauthorized access to our systems.

I'm investigating the matter now, and will keep you posted as I learn more.
donator
Activity: 588
Merit: 500
Around 12GH/s.

Those are decent payouts. What is your GH/s mining rate ?
donator
Activity: 588
Merit: 500
We will see after they check their logs. Do not use the automatic payment feature until this is checked out.

It is not an easy password. The address is not changed in the control panel.
Well, looks like the pool OP owes you 25 BTC Wink
sr. member
Activity: 462
Merit: 250
I heart thebaron
Those are decent payouts. What is your GH/s mining rate ?
sr. member
Activity: 462
Merit: 250
I heart thebaron
It is not an easy password. The address is not changed in the control panel.
Well, looks like the pool OP owes you 25 BTC Wink
Pages:
Jump to: