Author

Topic: [4+ EH] Slush Pool (slushpool.com); Overt AsicBoost; World First Mining Pool - page 820. (Read 4382671 times)

full member
Activity: 169
Merit: 100
2. Passwords are generally low entropy.  If you've used your mining pw elsewhere change it now.

I use a securely generated random password for every slave and every pool. Even if the passwords aren't hashed there's no way any attacker can get into any other pool account.
newbie
Activity: 17
Merit: 0
Good effort, slush, thanks.  I wish there was a 'thanks' button for posts, so we could share the sentiments of other posts without bloating the lone, long thread.   Thanks.
+1
++1

Keep up the great work.  If you ever come to my town, I will gladly buy you a beer (or whatever you drink).
newbie
Activity: 14
Merit: 0
Good effort, slush, thanks.  I wish there was a 'thanks' button for posts, so we could share the sentiments of other posts without bloating the lone, long thread.   Thanks.
+1
member
Activity: 87
Merit: 10
Good effort, slush, thanks.  I wish there was a 'thanks' button for posts, so we could share the sentiments of other posts without bloating the lone, long thread.   Thanks.
full member
Activity: 193
Merit: 100
Hum ... pretty strange

OVH Block my website (on a mutualized server) too due to suspect activity on my website, except ownCloud and a static website was hosted on it ... nothing suspect in the httplog, nor the ftp log ...

Look like there are false alarm, or hack come from inside ...
member
Activity: 76
Merit: 10
When people ask me what is the best pool, the dedication and communication of it's admin is the case I always make for Slush's pool. Kudos Slush - thanks for keeping us online.

will be nice to see how we have been doing, noticed quite a few found blocks for slush's pool.

hope he can get the shares sorted out for us all.

joolz
full member
Activity: 163
Merit: 100
When people ask me what is the best pool, the dedication and communication of it's admin is the case I always make for Slush's pool. Kudos Slush - thanks for keeping us online.
member
Activity: 98
Merit: 10
Strange, ewitte. But DNS's live their own lives sometimes. Looks like all stratum records have several IP's so one of these should be valid:
    stratum.bitcoin.cz, A, 54.214.10.150
    stratum.bitcoin.cz, A, 54.214.4.50
    stratum.bitcoin.cz, A, 54.214.10.101
    stratum.bitcoin.cz, A, 54.214.10.134
    stratum.bitcoin.cz, A, 54.214.10.135

And slush: Keep up the great work! Hope you'll get some sleep eventually. I'm sure the Amazon cloud will be a safe solution.

As long as its mining on a correct address I'll not touch it for now let them breathe a bit.  We always assume 24h for certain changes though most places usually go through in less than 1h... there are occasional holdouts with certain servers.
member
Activity: 98
Merit: 10

1. Great job slush! 

2. Passwords are generally low entropy.  If you've used your mining pw elsewhere change it now.

They are welcome to mine for me if they wish its not the same as my login Wink
newbie
Activity: 37
Merit: 0
Strange, ewitte. But DNS's live their own lives sometimes. Looks like all stratum records have several IP's so one of these should be valid:
    stratum.bitcoin.cz, A, 54.214.10.150
    stratum.bitcoin.cz, A, 54.214.4.50
    stratum.bitcoin.cz, A, 54.214.10.101
    stratum.bitcoin.cz, A, 54.214.10.134
    stratum.bitcoin.cz, A, 54.214.10.135

And slush: Keep up the great work! Hope you'll get some sleep eventually. I'm sure the Amazon cloud will be a safe solution.
sr. member
Activity: 350
Merit: 250
What about the user database?  Was it compromised?  I'd hate to see bitcoins sent to the wrong address.

I have a database snapshot taken before bad guys overtook the database. So there's no reason to think payout addresses have been modified. Any change of wallet on pool profile requires email confirmation by account owner so I think we're on safe side here.

Unfortunately the user database can be considered as compromised, so the attacker knows user's emails :-(.
How were the passwords hashed?

1. Great job slush! 

2. Passwords are generally low entropy.  If you've used your mining pw elsewhere change it now.
legendary
Activity: 1386
Merit: 1097
Slush, do you use IRC at all?

I do use IRC, but currently I don't have a time hanging on chat, sorry Sad.
newbie
Activity: 13
Merit: 0
Slush, do you use IRC at all?
member
Activity: 98
Merit: 10
Everyone mining with Slush, restart your mining clients and make sure the stratum domain resolves to an address in the Amazon cloud. It's 54.214.10.135 when I check here.
Before I restarted mine it still used the old compromised server which is still running. I'm not sure they will be able to use the bitcoins mined there but I hate the thought of it.

Hmm for stratum.bitcoin.cz its reporting a 77.93 address for me.  I did a flush DNS and complete reboot.  Was mining LTC all night.  Its connected and accepting.

EDIT guiminer uses api2.bitcoin.cz which redirects to stratum.bitcoin.cz.  I tried stratum2.bitcoin.cz directly and it wouldn't work.  Updated hosts file for now hopefully no DNS changes coming up soon Smiley
newbie
Activity: 56
Merit: 0
The pool has been hacked. Fortunately I noticed it fast enough, so I made database snapshot seconds before attackers overtake the database machine. I lost some amount of bitcoins, but I'll be able to recover it from my pocket. For now I'm evaluating what's next to do, because all machines in OVH has been compromised and they cannot be trusted anymore.

Wow, glad to know my BTC0.002 is safe, LOL.... seriously, this amount is so small, please don't worry about it with me. If it helps, just apply it to those who need payment or toward the server. I'm not doing this really for the money, I'm doing it because it's fun and there is a small payout which I can then track to measure progress with.

Thanks for the rapid response, slush.
legendary
Activity: 1386
Merit: 1097
FYI Pool hashrate is still above 7Thash/s and it reports new blocks normally. Please be patient, I'm working hardly to get website back online.
hero member
Activity: 574
Merit: 500
Stratum servers have been migrated to (not-compromised) EC2 backends, I just see few first connections. So mining continues and no action is required by you.

I'll set up database and website in few hours on trusted machines, so the pool will be in normal operation soon.

I'd have my EC2 servers penetration tested several times by big companies because my sites take online payments - they couldn't get in - I'll feel safer when your in the EC2 cloud Slush...
legendary
Activity: 1386
Merit: 1097
I'm setting up server right now on safe location with physical access only, the website should be back in few hours.
newbie
Activity: 37
Merit: 0
Everyone mining with Slush, restart your mining clients and make sure the stratum domain resolves to an address in the Amazon cloud. It's 54.214.10.135 when I check here.
Before I restarted mine it still used the old compromised server which is still running. I'm not sure they will be able to use the bitcoins mined there but I hate the thought of it.
sr. member
Activity: 452
Merit: 252
from democracy to self-rule.
Thanks for all the support!

If you do decide to implement ltc please do it like D7 pool.
His UI and ease of use is the best of all the mining sites!
Jump to: