Pages:
Author

Topic: bitcoin-central.net say they detected a security-breach (Read 9031 times)

donator
Activity: 2772
Merit: 1019
guys, should I lock this thread and show people over to the pretty much identical topic in thread Instawallet Security Breach for simplicity?


I'm locking this thread for simplicity.

Please discuss here: Instawallet Security Breach
donator
Activity: 2772
Merit: 1019
[Apr-1 10:30 CET] Bitcoin-Central and Paytunia update: Our customer's bitcoins and euros are safe and will not be affected by the security breach. We have taken the websites off-line for proper investigation.

The address 1LrPYjto3hsLzWJNstghuwdrQXB96KbrCy is under our exclusive control.

Now that's some good news! These guys know how to build the suspense

yep good to know

finally! thanks!
hero member
Activity: 868
Merit: 1000

How is it no big deal?

If it's vanity for Bitcoin Central COLD and the other large tx to the same address 1LrPYjto3hsLzWJNstghuwdrQXB96KbrCy is indeed instawallet cold (as marked on blockchain.info) then we're looking at either the "theft transactions" or some transactions made by davout and team to "further secure the funds". I somehow think the latter is unlikely, since cold store should already be secure and they might've considered telling us "funds secure, don't worry" by now.



And if they're moving funds from their normal cold storage wallet to another address to demonstrate that they still have control of the funds (which is more reassuring than a "don't worry" statement), then that's something they should be publicising.

What's worrying is that when the Instawallet vulnerability was made public last week they should have assumed that both Instawallet and Bitcoin-Central would become bigger targets and that people would start looking for more vulnerabilities in both services, so they should have been locked down hard while a security audit was conducted.  They should have been expecting a breach.
full member
Activity: 120
Merit: 100
And it's not being confirmed because...?
hero member
Activity: 700
Merit: 500
guys, should I lock this thread and show people over to the pretty much identical topic in thread Instawallet Security Breach for simplicity?

Yes
hero member
Activity: 742
Merit: 500
Circle gets the Square
Excellent news.

Now just the strangeness of the lack of confirmations on a well-funded transaction.
donator
Activity: 2772
Merit: 1019
guys, should I lock this thread and show people over to the pretty much identical topic in thread Instawallet Security Breach for simplicity?
newbie
Activity: 47
Merit: 0
"The address 1LrPYjto3hsLzWJNstghuwdrQXB96KbrCy is under our exclusive control. "
Great, but the transactions being sent there are unconfirmed and don't exist on blockexplorer.com. Something's fishy.
jr. member
Activity: 57
Merit: 1
[Apr-1 10:30 CET] Bitcoin-Central and Paytunia update: Our customer's bitcoins and euros are safe and will not be affected by the security breach. We have taken the websites off-line for proper investigation.

The address 1LrPYjto3hsLzWJNstghuwdrQXB96KbrCy is under our exclusive control.

from
https://bitcoin-central.net/

Now why did that take so long? Good news though. Can't wait to hear the details. Then I will consider if I'll do business with them again, have made good experiences in the past.
hero member
Activity: 700
Merit: 500
[Apr-1 10:30 CET] Bitcoin-Central and Paytunia update: Our customer's bitcoins and euros are safe and will not be affected by the security breach. We have taken the websites off-line for proper investigation.

The address 1LrPYjto3hsLzWJNstghuwdrQXB96KbrCy is under our exclusive control.

Now that's some good news! These guys know how to build the suspense
hero member
Activity: 609
Merit: 501
peace
[Apr-1 10:30 CET] Bitcoin-Central and Paytunia update: Our customer's bitcoins and euros are safe and will not be affected by the security breach. We have taken the websites off-line for proper investigation.

The address 1LrPYjto3hsLzWJNstghuwdrQXB96KbrCy is under our exclusive control.

from
https://bitcoin-central.net/
sr. member
Activity: 313
Merit: 250
Transactions not found on blockexplorer.com
Don't trust only one source  Roll Eyes
sr. member
Activity: 306
Merit: 250
Donations: http://tny.im/nx
This block came 30 minutes after the last one, and only included 6 transactions.
http://blockchain.info/block-index/369660/000000000000010194961754d3d0739a794b934559b63137201273f01cd0f14d
Then one minute or so later, this block comes:
http://blockchain.info/block-index/369661/000000000000027a3775948e3c5f02cec95d9e1421e43130f5f589067fb0d1a2
...and includes all the other transactions. But neither of the two blocks include the transaction from 1bcco1d or the one from the Instawallet cold storage, even though it has a huge fee.

Strange things going on in here, at least from my uninformed-about-the-technical-details-user perspective. Someone care to elaborate?

Another block has just been mined that they weren't included in. Strange.
Maybe the best plotted April fool's joke ever.
Someone please tell me how to avoid my transactions getting included at will, even when paying a fee!
Is it possible that all the miners are being conscious enough not to include this transaction?
hero member
Activity: 700
Merit: 500

unconfirmed! quick, double spend and mine them FAST!!

I see big discussion about this coming up. In the end, who knows who's the "good guys" and the "bad guys" here? Where's the evidence?
hero member
Activity: 756
Merit: 522
Can anyone who unlike me actually understands transactions look at the raw stuff and say if it's a nonstandard tx and why?
donator
Activity: 2772
Merit: 1019

unconfirmed! quick, double spend and mine them FAST!!

that, my friend, would be amazing. don't know if bad or good though.
donator
Activity: 2772
Merit: 1019
It is very likely I'm seeing things that aren't there, but...
http://blockchain.info/tx/4cf56d0c1566778030095925328f4bc7ae988657bd62fe8bc05ac67302d32b4c

Address "bccold" (1BcCo1d)?

It is a vanity address, not big deal. Bitcoin Central COLD. I have a few which start from 1Vladimir



How is it no big deal?

If it's vanity for Bitcoin Central COLD and the other large tx to the same address 1LrPYjto3hsLzWJNstghuwdrQXB96KbrCy is indeed instawallet cold (as marked on blockchain.info) then we're looking at either the "theft transactions" or some transactions made by davout and team to "further secure the funds". I somehow think the latter is unlikely, since cold store should already be secure and they might've considered telling us "funds secure, don't worry" by now.

hero member
Activity: 700
Merit: 500
Another block has just been mined that they weren't included in. Strange.
Maybe the best plotted April fool's joke ever.
hero member
Activity: 742
Merit: 500
Circle gets the Square
Does anyone have contact by skype or irc or anything with the admins?

legendary
Activity: 1792
Merit: 1000
Another block has just been mined that they weren't included in. Strange.
Pages:
Jump to: