Pages:
Author

Topic: DaDice.com - Next Gen Social Gambling Dice Experience | Progressive Jackpot - page 87. (Read 257856 times)

hero member
Activity: 532
Merit: 500
no longer selling accounts

What a joke this site is. Every week something surfaces that makes it even more sketchy than before.

As long as they keep on paying their sig participants, all is good.  Cool

seriously man.. you don't need to make them look shady coz the neg rep is enough to warn people here.. you're just wasting energy
As long as they keep funding the escrow address for their signature campaign their shills (and people who are willing to whore out their signature for a scam site) will be able to continue advertising for them.


I cannot imagine why anyone would think it would be no big deal that an attacker can run arbitrary JS on their customers' computers.

I think it is pretty funny that a total of .008 BTC was stolen from their hot wallet though  Cheesy

Everyone in this thread needs to make sure you know that ACCTseller is the trolling alt of Quickseller.  He uses it to troll when he doesn't want to draw attention to his main account.  He used to try to keep it a secret, but it's been publically admitted (even by him).  Just for everyone's informatino.

Guess what guys, a hot-wallet is a hot-wallet.  It gets used for withdrawals.  Are you really going to take the word of a guy who's been in this thread trolling non-stop for days that a hot wallet was "hacked" just because he publishes a bitcoin address and shows a chart. It's not like he's an impartial observer, he's been spreading FUD for days now and for all we know he's getting paid by folks like Quickseller to do so.

Non-insanse people here are going to wait a while to see what the devs say about this.  Geez the drama on this forum has really become over-the-top.
There have been multiple reports from people getting random HS popups. This has even been confirmed by DaDice that someone had hacked their chat.

Can you say with a straight face that you would have no problem trusting a site with large amounts of money to gamble with when a random person is able to execute arbitrary JS on your computer via their site?
legendary
Activity: 1456
Merit: 1081
I may write code in exchange for bitcoins.

What a joke this site is. Every week something surfaces that makes it even more sketchy than before.

As long as they keep on paying their sig participants, all is good.  Cool

seriously man.. you don't need to make them look shady coz the neg rep is enough to warn people here.. you're just wasting energy
As long as they keep funding the escrow address for their signature campaign their shills (and people who are willing to whore out their signature for a scam site) will be able to continue advertising for them.


I cannot imagine why anyone would think it would be no big deal that an attacker can run arbitrary JS on their customers' computers.

I think it is pretty funny that a total of .008 BTC was stolen from their hot wallet though  Cheesy

Everyone in this thread needs to make sure you know that ACCTseller is the trolling alt of Quickseller.  He uses it to troll when he doesn't want to draw attention to his main account.  He used to try to keep it a secret, but it's been publically admitted (even by him).  Just for everyone's informatino.

Guess what guys, a hot-wallet is a hot-wallet.  It gets used for withdrawals.  Are you really going to take the word of a guy who's been in this thread trolling non-stop for days that a hot wallet was "hacked" just because he publishes a bitcoin address and shows a chart. It's not like he's an impartial observer, he's been spreading FUD for days now and for all we know he's getting paid by folks like Quickseller to do so.

Non-insanse people here are going to wait a while to see what the devs say about this.  Geez the drama on this forum has really become over-the-top.
hero member
Activity: 532
Merit: 500
no longer selling accounts

What a joke this site is. Every week something surfaces that makes it even more sketchy than before.

As long as they keep on paying their sig participants, all is good.  Cool

seriously man.. you don't need to make them look shady coz the neg rep is enough to warn people here.. you're just wasting energy
As long as they keep funding the escrow address for their signature campaign their shills (and people who are willing to whore out their signature for a scam site) will be able to continue advertising for them.


I cannot imagine why anyone would think it would be no big deal that an attacker can run arbitrary JS on their customers' computers.

I think it is pretty funny that a total of .008 BTC was stolen from their hot wallet though  Cheesy
hero member
Activity: 602
Merit: 500

What a joke this site is. Every week something surfaces that makes it even more sketchy than before.

As long as they keep on paying their sig participants, all is good.  Cool

seriously man.. you don't need to make them look shady coz the neg rep is enough to warn people here.. you're just wasting energy
member
Activity: 106
Merit: 10
but the site is sure now or is under attack ? Because later i read this scrypt "dadice is hacked" the site have a auto logout.
now can i enter with username e password without problem or i can change later?

As far as i understood it only the chat feature was hacked. Thats an independent tool that is not connected to the website. So the core website is safe. At least thats what i was told.

That's correct yes mate. The dev is still busy checking everything and will keep us all up to date on that mate Smiley

That's not correct at all. If someone can run JS on client computers then you have the most serious of problems. Anyone able to run code on a large number of connected computers can do anything they want on the users computer. The fact that you dumb this down to only being a "Chat attack", and that these systems are separate, is lying to your customers. It shows you are just lying every time you post something here. The facts are, someone was able to run code on the users computers and was able to clean out the hot wallet. Albeit a very small hot-wallet. I have checked your history and saw this:
 
The time of this attack seemed to have cleaned out your hot wallet. circled in red.


Here is the evidence of the hackers address that got the last 0.008btc in your hot wallet. Why anyone would do this for 0.008btc is beyond me. The most you can get even today is 0.3. There is basically no money in this casino to steel.
https://blockchain.info/address/1Nu7zXeUEV1aBzVQCtY4unDiFJFxdRSN9b


If anyone genuinely still believes these guys, I would be shocked. They try to lower the seriousness of these attacks by saying the systems are separate. But the fact someone just ran code on users computers and probably the developers computer could hold some serious issues. Another question is, why do they say its a chat attack. Do they know that for sure or just making it up? Maybe because JS injections need some communication to take place and that is why they blame the chat. Only a very small value of bitcoin was taken, but DaDice still hasn't told us what else was taken, or what code ran on their users computers. Maybe because they don't know, or they don't care.

What a joke this site is. Every week something surfaces that makes it even more sketchy than before.

member
Activity: 106
Merit: 10
How to invest in the site?

You can send a mail via our support function there mate and chat to the team that way
So you are accepting investors? I thought that the reason you "didn't have to" show your cold storage addresses was that you are no longer accepting public investors.

Indeed. No public direct investors. We can do so privately under discretion should someone wish to enquire. But as it's not a direct feature to the public we are still not obligated except to those private individuals that still wish to do so

So if someone invests how do they know you aren't diluting their investment with some false numbers? You must surely show them the coins currently invested to prove you are not ripping them off.

legendary
Activity: 2674
Merit: 1083
Legendary Escrow Service - Tip Jar in Profile
but the site is sure now or is under attack ? Because later i read this scrypt "dadice is hacked" the site have a auto logout.
now can i enter with username e password without problem or i can change later?

As far as i understood it only the chat feature was hacked. Thats an independent tool that is not connected to the website. So the core website is safe. At least thats what i was told.

That's correct yes mate. The dev is still busy checking everything and will keep us all up to date on that mate Smiley

Yes, i see it. I only see it when i check back on the autopilot i use to leveling up and it claims it is rolling but when i stop it only 96 rolls happened. Probably some work is done so that the autopilot is stopped without notice.
maybe its just an option to reduce faucet builders amount from farming faucet accounts

No. With the autopilot one can set up betting automatically. Even without an ending. I do that in order to level up because then i get a higher affiliate profit... in case i will get a good betting player at one time.
full member
Activity: 154
Merit: 100
How to invest in the site?

You can send a mail via our support function there mate and chat to the team that way
So you are accepting investors? I thought that the reason you "didn't have to" show your cold storage addresses was that you are no longer accepting public investors.

Indeed. No public direct investors. We can do so privately under discretion should someone wish to enquire. But as it's not a direct feature to the public we are still not obligated except to those private individuals that still wish to do so
copper member
Activity: 2996
Merit: 2374
How to invest in the site?

You can send a mail via our support function there mate and chat to the team that way
So you are accepting investors? I thought that the reason you "didn't have to" show your cold storage addresses was that you are no longer accepting public investors.
hero member
Activity: 658
Merit: 500
but the site is sure now or is under attack ? Because later i read this scrypt "dadice is hacked" the site have a auto logout.
now can i enter with username e password without problem or i can change later?

As far as i understood it only the chat feature was hacked. Thats an independent tool that is not connected to the website. So the core website is safe. At least thats what i was told.

That's correct yes mate. The dev is still busy checking everything and will keep us all up to date on that mate Smiley

Yes, i see it. I only see it when i check back on the autopilot i use to leveling up and it claims it is rolling but when i stop it only 96 rolls happened. Probably some work is done so that the autopilot is stopped without notice.
maybe its just an option to reduce faucet builders amount from farming faucet accounts
legendary
Activity: 2674
Merit: 1083
Legendary Escrow Service - Tip Jar in Profile
but the site is sure now or is under attack ? Because later i read this scrypt "dadice is hacked" the site have a auto logout.
now can i enter with username e password without problem or i can change later?

As far as i understood it only the chat feature was hacked. Thats an independent tool that is not connected to the website. So the core website is safe. At least thats what i was told.

That's correct yes mate. The dev is still busy checking everything and will keep us all up to date on that mate Smiley

Yes, i see it. I only see it when i check back on the autopilot i use to leveling up and it claims it is rolling but when i stop it only 96 rolls happened. Probably some work is done so that the autopilot is stopped without notice.
full member
Activity: 154
Merit: 100
How to invest in the site?

You can send a mail via our support function there mate and chat to the team that way
full member
Activity: 154
Merit: 100
but the site is sure now or is under attack ? Because later i read this scrypt "dadice is hacked" the site have a auto logout.
now can i enter with username e password without problem or i can change later?

As far as i understood it only the chat feature was hacked. Thats an independent tool that is not connected to the website. So the core website is safe. At least thats what i was told.

That's correct yes mate. The dev is still busy checking everything and will keep us all up to date on that mate Smiley
legendary
Activity: 2674
Merit: 1083
Legendary Escrow Service - Tip Jar in Profile
but the site is sure now or is under attack ? Because later i read this scrypt "dadice is hacked" the site have a auto logout.
now can i enter with username e password without problem or i can change later?

As far as i understood it only the chat feature was hacked. Thats an independent tool that is not connected to the website. So the core website is safe. At least thats what i was told.
legendary
Activity: 1176
Merit: 1000
but the site is sure now or is under attack ? Because later i read this scrypt "dadice is hacked" the site have a auto logout.
now can i enter with username e password without problem or i can change later?
sr. member
Activity: 294
Merit: 250
How to invest in the site?
legendary
Activity: 1050
Merit: 1000
Interestingly the site does not use even basic protections like setting the session cookies to HttpOnly, which would have made it trivial to have harvested and saved all users session ids (as simple as: document.cookies) to save to to for withdrawing funds

Anyone still using this site, has been warned that most 12 year olds code better sites.


That is a childish statement. Instead of waiting for the dev to make a full report as he said you make statements like that? Quite immature I have to say. Just go away would you
that person create new account to make special comment about this situation much stupid behavior ever i seen from newbie, that kind person around here to spread FUD in that kind of situation i think this not a user of dadice only trolling about this, we are with dev so take your time and resolve this issue good luck dadice team.
full member
Activity: 154
Merit: 100
Interestingly the site does not use even basic protections like setting the session cookies to HttpOnly, which would have made it trivial to have harvested and saved all users session ids (as simple as: document.cookies) to save to to for withdrawing funds

Anyone still using this site, has been warned that most 12 year olds code better sites.


That is a childish statement. Instead of waiting for the dev to make a full report as he said you make statements like that? Quite immature I have to say. Just go away would you
newbie
Activity: 48
Merit: 0
Few minutes ago a message similar to "DaDice has been hacked" has just appeard in the web...

Any news about that?

Yes as I have stated above, it was a JS injection attack in chat. I will give detailed report soon.
full member
Activity: 160
Merit: 100
http://www.ganabitcoins.com
Few minutes ago a message similar to "DaDice has been hacked" has just appeard in the web...

Any news about that?

Our dev is investigating now but as he said earlier just the chat system not the main part. He'll keep evreyone up to date though

Great! Thanks for answering
Pages:
Jump to: