Author

Topic: Are Bitcoin exchanges safe after ShellShock ? (Read 1817 times)

sr. member
Activity: 294
Merit: 250
September 28, 2014, 09:10:43 AM
#12
You can use this page for testing: http://shellshocktest.com/

'This tool helps you to check if your server is vulnerable to CVE-2014-6271, also known as "ShellShock".'

full member
Activity: 182
Merit: 100
September 27, 2014, 11:11:02 AM
#11
is BTC-e affected by this?
sr. member
Activity: 252
Merit: 250
September 27, 2014, 07:01:35 AM
#10
I guess they hold the majority of their coins in cold storage... or they should anyway..
hero member
Activity: 899
Merit: 1002
September 26, 2014, 09:41:22 PM
#8
If they have CGI scripts that call /bin/bash then they were vuln, or if they had any library on their system that called bash it was only one unauthenticated GET req from being totally pwned.
legendary
Activity: 2282
Merit: 1050
Monero Core Team
September 26, 2014, 09:22:19 PM
#7
If they are running GNU/Linux on their servers and have fully patched their servers they are not vulnerable (this is the most likely scenario).
If they are running GNU/Linux on their servers and have not patched their servers they are vulnerable.
If they are running Microsoft Windows Server on their servers they are not vulnerable.
If they are running Apple Server on their servers they are vulnerable (Apple has yet to issue any patches).
legendary
Activity: 2170
Merit: 1094
September 26, 2014, 09:17:32 AM
#6
After? They probably patched their Linux servers by now, but the problem existed for over 20 years, who knows if it was already exploited?
newbie
Activity: 22
Merit: 0
September 26, 2014, 06:46:49 AM
#5
yeah trading became dangerous...
legendary
Activity: 2170
Merit: 1427
September 26, 2014, 06:35:10 AM
#4
Any service involved with Bitcoin will never be safe.

The only thing they can do is keep the security spot on, and detect any security holes before hackers do.

legendary
Activity: 2394
Merit: 1216
The revolution will be digital
September 26, 2014, 06:06:43 AM
#3
No exchange is safe in my opinion, no matter how they harp on about their 100% security.

If Apache is affected, then practically very few websites are safe now, because Apache has become almost synonymous to web server. So if Apache is attacked, the result will be catastrophe including the banking systems and the heat on bitcoin exchanges will be negligible to that.
sr. member
Activity: 336
Merit: 251
September 26, 2014, 04:53:23 AM
#2
No exchange is safe in my opinion, no matter how they harp on about their 100% security.
legendary
Activity: 2394
Merit: 1216
The revolution will be digital
September 26, 2014, 04:51:57 AM
#1
I have read ShellShock opens up Apache vulnerability. AFAIK most of the Bitcoin exchanges are running on Apache. So are they just awaiting to be ripped off ?

p.s. If U dont know what is ShellShock, check here.
Jump to: