Author

Topic: ProtonMail discovers a security issue in Blockchain.info (Read 755 times)

hero member
Activity: 2450
Merit: 948
Metawin.com - Truly the best casino ever
If anyone noticed, there is one strange thing. Why were they looking for bugs on blockchain.info?
OP I think still everyone is safe because if situation is so fatal, than they can to shut down everything and work offline but we see they are online.
Hope problem will be fixed very soon.
hero member
Activity: 2646
Merit: 686
For those who don't know, ProtonMail is considered as the safest email provider where encryptions are used and no logs are kept etc. unlike Gmail, Hotmail and others. They are also currently building a VPN which I believe will be the best.



So they tweeted a few hours ago about Blockchain.info having security issues: https://twitter.com/ProtonMail/status/859486173558788096

I'm afraid that If blockchain.info don't fix their issue soon, some hackers could probably work harder and try to find the exploit and hack them. so just a heads-up, Its probably a good idea to move your coins out of the wallet.

I had never heard about Proton before, but now will use it for future purposes. This is a very serious issue and it will have devastating efforts if the hackers get any data, it will be catastrophic for all, luckily I don't use it but I am concerned won't it lead to spam attacks, also people will loose loads of amounts, I do hope for the community this issue gets fixed. Any comments from blockchain as to how they plan to solve this immediately before damage is done?
legendary
Activity: 3080
Merit: 1353
That's why I don't used Blockchain.info as wallet.

Blockchain said its a non issue ProtonMail just needed a API from them.

https://twitter.com/i/web/status/859789660905775104

The problem is Blockchain is not responding to ProtonMail and has already went to official channel but they did not get a respond  That's why they used twitter to get Blockchain attention. But regardless, they should have responded to ProtonMail issue so that this kind of things are not blown out of proportion. I've been a support before, and if ever a ticket has been raised to us with security as concern we immediately investigate it to see if indeed there is a issue or not.
hero member
Activity: 1176
Merit: 501
If you have an account at Blockchain.info you have to take into account that you are not in control of these funds and that there is a risk. I think online wallets are a good option to store small amounts or to receive funds that you will move to your own wallet later.
legendary
Activity: 2786
Merit: 1031
Read the thread, no security issue.

Your coins are safe, for now...


picture upload
hero member
Activity: 840
Merit: 529
The tweet is already deleted, it means either the security issue is done with, either they're working as hard as they can on it Wink

Considering they KNOW where the issue is and the hacker don't, I bet 99% on Blockchain.info.

it is not deleted, i am seeing it right now. it just says they have found a security issue in blockchain.info and asks then to contact protonmail guys. and someone asked them why twett about it and not directly contact them (my thoughts exactly) and they answered they did that first.

Quote
@blockchain Hi http://blockchain.info  team, we have discovered a security issue. Please get in touch with us ASAP at [email protected]

But the tweet is no longer on their timeline no?
Sorry I'm not a tweeter specialist :/

Anyway they answered so it means they're taking care of the problem.
hero member
Activity: 546
Merit: 500
Blockchain are wrought with bugs anyway.  The whole concept of letting someone else have your private keys and spend your Bitcoin for you is pretty dumb because the second they get exploited (which they're more likely to since they're a giant public figure and you can keep your privacy when you keep the Bitcoin yourself) every user is screwed.  Not to mention all the phishing attacks that users of Blockchain get.

It's just another nail in the coffin, IMO.
hero member
Activity: 714
Merit: 501
The tweet is already deleted, it means either the security issue is done with, either they're working as hard as they can on it Wink

Considering they KNOW where the issue is and the hacker don't, I bet 99% on Blockchain.info.

it is not deleted, i am seeing it right now. it just says they have found a security issue in blockchain.info and asks then to contact protonmail guys. and someone asked them why twett about it and not directly contact them (my thoughts exactly) and they answered they did that first.

Quote
@blockchain Hi http://blockchain.info  team, we have discovered a security issue. Please get in touch with us ASAP at [email protected]
legendary
Activity: 1904
Merit: 1074
I hope they release this information, IF it exists to the correct people. Blockchain.info have had a rough development history, with some major

issues in the past, so I hope they fix this quickly. I still use them to sweep paper wallets, but I move the coins to hardware wallets and leave those

accounts empty. They have a excellent UI, but the security issues are a very big concern. Being the biggest wallet provider, make them a huge

target for hackers.  Angry
hero member
Activity: 840
Merit: 529
The tweet is already deleted, it means either the security issue is done with, either they're working as hard as they can on it Wink

Considering they KNOW where the issue is and the hacker don't, I bet 99% on Blockchain.info.
staff
Activity: 3500
Merit: 6152
For those who don't know, ProtonMail is considered as the safest email provider where encryptions are used and no logs are kept etc. unlike Gmail, Hotmail and others. They are also currently building a VPN which I believe will be the best.


So they tweeted a few hours ago about Blockchain.info having security issues: https://twitter.com/ProtonMail/status/859486173558788096

I'm afraid that If blockchain.info don't fix their issue soon, some hackers could probably work harder and try to find the exploit and hack them. so just a heads-up, Its probably a good idea to move your coins out of the wallet.
Jump to: