..Yeaa, and let nobody make the mistake -I- just did - spend my time promoting the site on forums, only for the thusly increased exposure (top leaderboard etc) to be rewarded by another XJS/JSS injection exploit attack by the spiteful jealous loser Xanax & potentially other hackers, who've now stolen 0.488+ BTC from my BetterBets app balance while I was autobetting by abusing the site's in-app user-tipping feature.
That's on top of another mistake I just made which was to forget to reduce my 'On Loss : Increase Bet by x%' value down several times lower to hit a 60x multiplier, than when I, seconds before that, had been running at 10x payout multiplier..thus autobet quickly ran up to insane numbers, risking & losing over 1BTC of my month's winnings w/ wayyy-too-high risk level compared to the various multiplier-dependent 'On Loss : Increase by x%' values I'd regularly been using ;/ This is why I fell from the leaderboard down to .49BTC profit, today - A stupid, unintended GUI interaction mistake..
Ryan -please- enable a way to block any and all tipping for all moneypot apps & including the base MP general acct management section (even though it seems much more secure than the casino pages given that it's not reliant on letting players have lots of access since it's purely an acct management site, as opposed to the individual apps who're player front-end casino apps which by default must allow players lots of access, which I'm technically-clueless-guessing is part of how this injection/hacking tip attack is able to take place). I don't need to receive any tips, I don't need to tip anyone, people can use regular on-blockchain BTC address tx's.
Very sorry for this. I have disabled tipping server-side until we find a way to rework the way it works and make it safe. You will of course be reimbursed for your loss.
When dankbud tipped me and a million others a month ago, it doesn't show the +1000 bits in MP's account management history - meaning it was purely done using BetterBets' in-app tipping function - which is how this -0.49BTC is -not- showing up in my MP history atm, and how people are being robbed of their BetterBets balances as we speak using the tipping feature.
This is a MP issue, tips are not being reported in the UI. Ryan will fix this shortly.
But let me state emphatically, that all tippping functionality happens through the MP server; nothing is done locally other than the detection and parsing of the tipping command. Once this is done, a tip request is sent to the MP server.
Bjorn/Lobos please consider just how much bad this in-app tipping has brought vs. how little genuine use case it has when the more secure MP already has a user tipping function - I simply cannot wager on BetterBets anymore because of this, had to disable all apps, extremely sad that one feature bogs down the whole site. In fact, I was also recently unable to use BBets' chat whatsoever, whereas other apps' chat worked fine - this is highly suspicious, how I announce my success a few days ago in here & all of a sudden, balance theft attacks, unable to chat - And when you consider for a moment who has the most access to specifically BBets' app code & how best to exploit it..?? Who's the person in charge of building the site technically..? It pains me to make this allegation, but the evidence is getting circumspect.. ;/ Think about it..
I am in charge of building the site. I can assure you that I have no interest, means and/or motive to steal your balance through any channel available to me. On top of this, we have invested too much time and effort into building this site to want it harmed in any way, shape or form. Bjorn and myself started this site with the intent to grow it into a sucessful betting site and we still intend to do so. We have been targetted by an attack and we'll figure out how to secure the site. For now, tipping is disabled server-side and until we find a way to re-enable it safely, it will remain disabled.
You will of course be reimbursed for your losses, rest assured of that. Just give us some time while we deal with the current emergency on hand.
If you wish to speak to me personally, PM me and I'll give you my skype contact so we can talk.
More news on this entire issue later.