Pages:
Author

Topic: [BETA] EXCHANGE.BYTECOIN.IN - page 3. (Read 3487 times)

grc
newbie
Activity: 40
Merit: 0
April 12, 2013, 09:55:57 AM
#7
DO NOT USE THIS SITE YET

It is vulnerable to cross-site request forgery.

This basically means that if you are logged in to the exchange, any random site you visit can log you out, cancel your orders, possibly create new orders (haven't checked this one yet), or withdraw your money to the attacker's address (I have successfully done this with my own account).

Not to mention that in the process of testing it my 0.5 BTE magically turned into 0.005 BTE. I made one order to sell 0.5 BTE at a price of 0.1 (BTC per BTE I presume, but I can't be sure since are no units given for the price, amount or total). When I cancelled it, I only got 0.05 BTE back. I did a similar thing again and it further reduced my balance to 0.005 BTE.

So I'd definitely recommend avoiding this site for now/ever.
grc
newbie
Activity: 40
Merit: 0
April 12, 2013, 09:08:51 AM
#6
IT experts, please test the site for security vulnerabilities. We want to make sure the exchange is rock solid. Thanks in advance

Trying to withdraw without any money gives a fatal error.

Also, I'd replace "username doesn't exist" and "incorrect password" with a less revealing message like "invalid username/password combination", but that's just me being fussy.
member
Activity: 70
Merit: 10
April 12, 2013, 08:26:41 AM
#5
IT experts, please test the site for security vulnerabilities. We want to make sure the exchange is rock solid. Thanks in advance
sr. member
Activity: 476
Merit: 250
Bytecoin: 8VofSsbQvTd8YwAcxiCcxrqZ9MnGPjaAQm
April 12, 2013, 07:58:00 AM
#4
Fantastic!
member
Activity: 70
Merit: 10
April 12, 2013, 07:51:18 AM
#3
Correct!
legendary
Activity: 1862
Merit: 1011
Reverse engineer from time to time
April 12, 2013, 07:44:10 AM
#2
BTE<->BTC?
member
Activity: 70
Merit: 10
April 12, 2013, 07:40:45 AM
#1
Goog morning guys,

We are very happy to announce the release of the exchange (http://exchange.bytecoin.in)

It is still rough but the background is highly functional, but like in all betas, bugs are likely to show up.

Please use this thread to post all your feedback about the exchange and what changes/improvements you would like to see.

Enjoy!

Edit: IT experts, please test the site for security vulnerabilities. We want to make sure the exchange is rock solid. Thanks in advance
Pages:
Jump to: