Few months ago i was checking this exactly, with a simple dork to discover the antminers ( i will not write here ) and access to a network with few of them you can open your mine without worries for electricity costs
.
Yes you're not the only one who has told this to Bitmain, this is like the critical updates in the source code of bitcoin, happend after a big hack
edited: the browser used for the test was edit
Why wold you include the browser that you used? No good will come of putting it out there.
I suggest taking it down, pass on findings to Bitmain. Proper reporting is important. Going public is not best plan till it is fixed (assuming you found a security issue)
shodan - ninja : now will this help us take down the greedy centralized mining operators? lol ;-)
I guess hes not going to take it down. But it is like a google but for security. It scan's the internet for items and documents them where they are searchable. I know this as I am actually a security major in my degree. I got a shiny certificate when I graduated. It is on my wall and is highest piece of paper Ive ever had
. I am one of the ethical ones. I have a very clean record (which is needed when looking for jobs in this field in most cases).
But anyone reading this should really lock down your routers. As the router is between the internet and your devices. Do not leave router with default password. I personally turned off a lot of items after the forum was hacked, it spurred me to harden my network.
are you the owner of bit-x?
I know this as I am actually a security major in my degree. I got a shiny certificate when I graduated. It is on my wall and is highest piece of paper Ive ever had
. I am one of the ethical ones. I have a very clean record (which is needed when looking for jobs in this field in most cases).
youre totally wrong this is one of the task of shodan the other 5 task are the good ones.
Im not have a degree like you but the way you talk im sure you can not compile your own exploit so, lets say you have knowledge about security that it.
the problem will note fisish jus with the api, they must change the headers, i will still know where are the miners cos they SCREAM in a ANTMINER