Author

Topic: BitInstant getting hit by a DDoS attack? (Read 5058 times)

hero member
Activity: 899
Merit: 1002
November 16, 2012, 02:06:07 AM
#37
Host with blacklotus, buy a dedicated server behind their 10Gbps native ddos protection, fuck these blackmailers. It's $400/mth, but maybe you can cut a deal with them so they can accept bitcoins for payment.

Cloudflare is just scrubbing traffic they are not at all ddos protection
legendary
Activity: 1078
Merit: 1000
Charlie 'Van Bitcoin' Shrem
November 09, 2012, 07:12:50 PM
#36
I don't need the slip if I can just get the information that goes on it.  I have half of it memorized.

System is back and working
member
Activity: 87
Merit: 10
November 09, 2012, 06:32:23 PM
#35
I don't need the slip if I can just get the information that goes on it.  I have half of it memorized.
legendary
Activity: 1078
Merit: 1000
Charlie 'Van Bitcoin' Shrem
November 09, 2012, 06:30:19 PM
#34
I can make it through the process all the way where it gets to "Create  Payment Slip"  and that button does nothing but turn white when I click on it.   

That is exactly what I'm seeing, and I need to get some coins NOW before the friday sale wraps up! I'll PM Yankee and see if he can get in touch with the ZipZap folks.

Just wanted to let you know that we are still working on resolving this as soon as possible. I don't have a firm ETA on a fix yet but hopefully tonight

-Charlie
newbie
Activity: 52
Merit: 0
November 09, 2012, 06:11:06 PM
#33
I can make it through the process all the way where it gets to "Create  Payment Slip"  and that button does nothing but turn white when I click on it.   

That is exactly what I'm seeing, and I need to get some coins NOW before the friday sale wraps up! I'll PM Yankee and see if he can get in touch with the ZipZap folks.
newbie
Activity: 51
Merit: 0
November 09, 2012, 03:55:22 PM
#32
Who stands to gain from DDOS-ing bitinstant?   Huh
Maybe a currency manipulator wanting to create a short term panic to buy in low
member
Activity: 87
Merit: 10
November 09, 2012, 03:50:30 PM
#31
I can make it through the process all the way where it gets to "Create  Payment Slip"  and that button does nothing but turn white when I click on it.   
legendary
Activity: 1099
Merit: 1000
November 09, 2012, 03:41:53 PM
#30
Aha! So did I! My captcha wasn't loading on Chrome or IE, which is bizarre. Thanks for the suggestion!

Fixed!

Still having problems with both chrome and firefox, cannot pass captcha page.
Erased cache, use different pc, no luck.
hero member
Activity: 721
Merit: 503
November 09, 2012, 11:44:55 AM
#29
Aha! So did I! My captcha wasn't loading on Chrome or IE, which is bizarre. Thanks for the suggestion!

Fixed!
full member
Activity: 151
Merit: 100
November 09, 2012, 03:37:10 AM
#28
.
newbie
Activity: 52
Merit: 0
November 09, 2012, 02:34:47 AM
#27
Aha! So did I! My captcha wasn't loading on Chrome or IE, which is bizarre. Thanks for the suggestion!
full member
Activity: 151
Merit: 100
November 09, 2012, 02:24:28 AM
#26
.
newbie
Activity: 52
Merit: 0
November 09, 2012, 02:15:43 AM
#25
I hate to post in two threads, but I don't know if my post in the other thread will get noticed.

I'm still having trouble accessing the site. I can get the form to specify input and destination for the transfer, put in my info, etc, but then when I go to generate the money-transfer form I get either a page that says "none", or an offline cached version of the transaction form, missing all images and such. Is this a known issue?
full member
Activity: 151
Merit: 100
November 09, 2012, 01:30:53 AM
#24
.
legendary
Activity: 1078
Merit: 1000
Charlie 'Van Bitcoin' Shrem
November 09, 2012, 01:10:17 AM
#23
Second one went out shortly after. Sorry for the delay, but when you do 2 transfers similar amounts and close to each other our fraud filter will ask us to approve the second one, which we did.

Thanks

I understand about the fraud filter, however I only received one of the two transactions.  Sad

Responded to your PM.
full member
Activity: 151
Merit: 100
November 09, 2012, 01:09:16 AM
#22
.
legendary
Activity: 1050
Merit: 1003
November 09, 2012, 12:43:59 AM
#21

He sent us an email with a 10,000 BTC ransom.

Ransom payment is the killer app that will cause bitcoin to take off. Why don't they go after higher value targets?
Maybe the best defense is too find a higher value target, email the attacker and say hit this guy instead. He can afford to pay your 10k BTC.

 Grin
legendary
Activity: 1078
Merit: 1000
Charlie 'Van Bitcoin' Shrem
November 09, 2012, 12:39:39 AM
#20
i made the stupid mistake of making two deposits tonight.  one went through immediately but the second one, sent at exactly the same time, isn't even showing up on blockchain.info ... Sad  it's been about 3+ hours.

Second one went out shortly after. Sorry for the delay, but when you do 2 transfers similar amounts and close to each other our fraud filter will ask us to approve the second one, which we did.

Thanks
full member
Activity: 180
Merit: 100
November 09, 2012, 12:29:37 AM
#19
Don't try to use a service that is currently weathering a DDOS attack, that's just stupid for a large variety of reasons.
Name one.

Avoiding use of services under DDOS only makes DDOS more successful, doesn't it?

Two really simple ones are:

You are adding your own attempts at connecting to and using their service to the large pile of illegitimate ones, essentially adding a small amount of fuel to the fire. If we were talking about one user then that's not really any extra problem but usually it's 100s of users all trying to get access to do whatever they wanted to do with the service which just makes the DDOS that much worse.

You will likely run into all sorts of bugs from lag and overworked hardware on the server side. Maybe not a big deal if your favorite videogame server is being DDOSed, you might die to lag. If you are dealing with financial transactions though the risk is obviously different. See the post above this one for an example.


Those are the big reasons you should lay off of a service in the midst of a DDOS that is heavily affecting their server(s). When the storm is over or when they harden themselves with more hardware or better protections then of course resume.
full member
Activity: 309
Merit: 102
Presale is live!
November 08, 2012, 09:03:40 PM
#18
Don't try to use a service that is currently weathering a DDOS attack, that's just stupid for a large variety of reasons.
Name one.

Avoiding use of services under DDOS only makes DDOS more successful, doesn't it?
legendary
Activity: 1176
Merit: 1001
November 08, 2012, 06:32:06 PM
#17
I'm interested in knowing how the hacker bypassed the cloud flare protections.
They are not worth 100000$, but still, they proved themself useful.
full member
Activity: 180
Merit: 100
November 08, 2012, 06:21:14 PM
#16
Don't try to use a service that is currently weathering a DDOS attack, that's just stupid for a large variety of reasons.
full member
Activity: 309
Merit: 102
Presale is live!
November 08, 2012, 05:35:54 PM
#15
I'm trying to circumvent the DOS by using the bitinstant API, which seems to respond from time to time. However, I have a problem. I'm getting the quote all right, but when I try to place my order I get an error.

The error message says:
Code:
Exception raised in parsing - object of type 'NoneType' has no len()
.

My request is POST to the following URL: https://www.bitinstant.com/api/json/NewOrder

The POST data I send is the following (private info concealed):
Code:
{"payment_params":{"mtgoxusername":"rotsor","code":"MTGOX-USD-..."},"pay_method":"mtgoxcoupon","quote_id":"d9d59310-..."}

What am I doing wrong, if anything?

By the way, this error message, obviously not indended for the user to see, seems to contradict the "Treating all errors as potential security flaws" policy described at bitinstant.com/security.
legendary
Activity: 1232
Merit: 1001
November 07, 2012, 05:39:15 PM
#14

I consider the discussion page the main page for up and coming news, no not media news but new stuff thats going on in the bitcoin world. Is it so hard to leave something like this up for awhile on the discussion page.

After all not everyone is versed in the forum as well as the veterans here.


Show unread posts since last visit is the first button from the top on this page. It is really the easiest way to brose through new/updated Threads in the forum.

You should try it.
member
Activity: 89
Merit: 13
November 07, 2012, 05:34:57 PM
#13
Damn this got moved out of sight quick.

What are you even talking about? It got moved to the appropriate section.  Roll Eyes

Appropriately appropriated to the appropriate section. Theres is a need for sure, cant have this on the main page.

What is it that you consider the main page?
AFAIK the main page only displays a list wth all the boards on the forum.

You're dong it wrong if you consider the Bitcoin Discussion board to be the main page... Roll Eyes
try this: https://bitcointalk.org/index.php?action=unread

I consider the discussion page the main page for up and coming news, no not media news but new stuff thats going on in the bitcoin world. Is it so hard to leave something like this up for awhile on the discussion page.

After all not everyone is versed in the forum as well as the veterans here.
legendary
Activity: 1358
Merit: 1002
November 07, 2012, 05:27:17 PM
#12
Damn this got moved out of sight quick.

What are you even talking about? It got moved to the appropriate section.  Roll Eyes

Appropriately appropriated to the appropriate section. Theres is a need for sure, cant have this on the main page.

What is it that you consider the main page?
AFAIK the main page only displays a list wth all the boards on the forum.

You're dong it wrong if you consider the Bitcoin Discussion board to be the main page... Roll Eyes
try this: https://bitcointalk.org/index.php?action=unread
legendary
Activity: 1008
Merit: 1023
Democracy is the original 51% attack
November 07, 2012, 05:26:42 PM
#11
Thanks Yankee. Perhaps I will offer a 1000BTC to a SR hitman and put an end to his efforts.  Grin

The market always finds a way...
full member
Activity: 185
Merit: 100
November 07, 2012, 05:25:50 PM
#10
Appropriately appropriated to the appropriate section. Theres is a need for sure, cant have this on the main page.

What are you rambling about, Old Man?
member
Activity: 89
Merit: 13
November 07, 2012, 05:22:47 PM
#9
Damn this got moved out of sight quick.

What are you even talking about? It got moved to the appropriate section.  Roll Eyes

Appropriately appropriated to the appropriate section. Theres is a need for sure, cant have this on the main page.
full member
Activity: 185
Merit: 100
November 07, 2012, 05:19:45 PM
#8
Damn this got moved out of sight quick.

What are you even talking about? It got moved to the appropriate section.  Roll Eyes
member
Activity: 89
Merit: 13
November 07, 2012, 05:16:13 PM
#7
Damn this got moved out of sight quick.
legendary
Activity: 3598
Merit: 2386
Viva Ut Vivas
November 07, 2012, 05:14:49 PM
#6
I tried to go to the BitInstant website and got:

Website currently unavailable
The website you are trying to access is currently unavailable. Please try again at a later time.
If you are the site owner, here is a help resource to help resolve the issue

by CloudFlare, their DDoS checker...

Yup, we are under attack.

More info: https://bitcointalksearch.org/topic/m.1322799

Will post an update soon

-Charlie

Who stands to gain from DDOS-ing bitinstant?   Huh

He sent us an email with a 10,000 BTC ransom.

Sorry to hear this.

I was just going to the page to check on the status of the Bitcoin card. Wink
legendary
Activity: 3066
Merit: 1147
The revolution will be monetized!
November 07, 2012, 05:12:22 PM
#5
Thanks Yankee. Perhaps I will offer a 1000BTC to a SR hitman and put an end to his efforts.  Grin
legendary
Activity: 1078
Merit: 1000
Charlie 'Van Bitcoin' Shrem
November 07, 2012, 05:09:30 PM
#4
I tried to go to the BitInstant website and got:

Website currently unavailable
The website you are trying to access is currently unavailable. Please try again at a later time.
If you are the site owner, here is a help resource to help resolve the issue

by CloudFlare, their DDoS checker...

Yup, we are under attack.

More info: https://bitcointalksearch.org/topic/m.1322799

Will post an update soon

-Charlie

Who stands to gain from DDOS-ing bitinstant?   Huh

He sent us an email with a 10,000 BTC ransom.
legendary
Activity: 3066
Merit: 1147
The revolution will be monetized!
November 07, 2012, 05:08:31 PM
#3
Who stands to gain from DDOS-ing bitinstant?   Huh
legendary
Activity: 1232
Merit: 1001
November 07, 2012, 05:04:48 PM
#2
It would really be interesting who DDoS Bitcoin sites all the Time.

About a year ago, there was this time when pools where often DDoS'ed, this has stopped , seems they are going for services know.

Last Week it was BTC-E. Today bitcoin.de, too.
legendary
Activity: 3598
Merit: 2386
Viva Ut Vivas
November 07, 2012, 04:56:56 PM
#1
I tried to go to the BitInstant website and got:

Website currently unavailable
The website you are trying to access is currently unavailable. Please try again at a later time.
If you are the site owner, here is a help resource to help resolve the issue

by CloudFlare, their DDoS checker...
Jump to: