Pages:
Author

Topic: Suprise (Read 1000 times)

sr. member
Activity: 350
Merit: 250
September 01, 2013, 07:05:16 AM
#21
i just changed my two factor from sms to google authenticator. could this be a step in the right direction?

I don't see why it will be more secure than SMS to your personal phone.
Did you send a pm to piuk to check how they could bypass 2 authen?
member
Activity: 103
Merit: 10
September 01, 2013, 06:44:38 AM
#20
i just changed my two factor from sms to google authenticator. could this be a step in the right direction?
member
Activity: 103
Merit: 10
September 01, 2013, 05:54:56 AM
#19
So I guess that your address is     1HuDSbSCtcDBx4MPmSqTZr2CPgDUEPkVoQ

I see a - 4 btc transaction, just 20 min before the -9.
Did you do this one?

Maybe the double authentification is valid for a period of time.

Yes that is my wallet address. And yes I made the 4btc transaction.

After I sent the 4btc transaction, I logged out of my wallet, then I got an email from blockchain saying they blocked an attempted tor login. Minutes after the email I got the SMS of 9btc transfer.
sr. member
Activity: 350
Merit: 250
September 01, 2013, 05:49:58 AM
#18
Yes that is my wallet address. And yes I made the 4btc transaction.


I think that you only need to have the double authen for logging in the wallet, so your computer might have been compromised and they got a cookie or something from you that allowed them to do the second transaction right after the first one.
member
Activity: 103
Merit: 10
September 01, 2013, 05:48:24 AM
#17
So I guess that your address is     1HuDSbSCtcDBx4MPmSqTZr2CPgDUEPkVoQ

I see a - 4 btc transaction, just 20 min before the -9.
Did you do this one?

Maybe the double authentification is valid for a period of time.

Yes that is my wallet address. And yes I made the 4btc transaction.
legendary
Activity: 1764
Merit: 1000
September 01, 2013, 05:46:04 AM
#16
Hmm that seems a rather unlikely event. He would need to compromise both your pc and phone.
Have you contacted support?

no need for sms if attacker got the wallet backup and phished the unlock password.

My wallet backup gets delivered to my hotmail email account. And my hotmail email account also has two factor authentication. It baffles me.
so
mh yeah, just checked my blockhain.info settings. you can even export the unencrypted private keys with the password/s alone. so basically anyone with access to your pc / method to catch you password could easily wipe your account
member
Activity: 103
Merit: 10
September 01, 2013, 05:42:00 AM
#15
Hmm that seems a rather unlikely event. He would need to compromise both your pc and phone.
Have you contacted support?

no need for sms if attacker got the wallet backup and phished the unlock password.

My wallet backup gets delivered to my hotmail email account. And my hotmail email account also has two factor authentication. It baffles me.
sr. member
Activity: 350
Merit: 250
September 01, 2013, 05:40:56 AM
#14
So I guess that your address is     1HuDSbSCtcDBx4MPmSqTZr2CPgDUEPkVoQ

I see a - 4 btc transaction, just 20 min before the -9.
Did you do this one?

Maybe the double authentification is valid for a period of time.
member
Activity: 103
Merit: 10
September 01, 2013, 05:35:59 AM
#13
Hmm that seems a rather unlikely event. He would need to compromise both your pc and phone.
Have you contacted support?


i havent contacted support. i just thought since bitcoins transactions are irreversible, there is little or nothing support can do to recover my coins.
legendary
Activity: 1764
Merit: 1000
September 01, 2013, 05:29:03 AM
#11
Hmm that seems a rather unlikely event. He would need to compromise both your pc and phone.
Have you contacted support?

no need for sms if attacker got the wallet backup and phished the unlock password.
sr. member
Activity: 350
Merit: 250
September 01, 2013, 05:22:39 AM
#10
What is the link of the address?
member
Activity: 103
Merit: 10
September 01, 2013, 05:21:17 AM
#9
You can send a pm to piuk.
It is very strange if you have a SMS alert and still, you got hacked.


Maybe you gave the private key of the address to someone and it has nothing to do with blokchchain.info?
Or maybe you did the transfer and don't remember it?


You should not be able to bypass double authen

I don't even know how to find my private key on blockchain.info, so I couldn't have given it out to anyone. Also it's not possible i send a transaction and not remember it. My wallet was wiped clean.
b!z
legendary
Activity: 1582
Merit: 1010
September 01, 2013, 05:19:11 AM
#8
Did you generate your wallet on android? Some pc browsers also created weak addresses that were hacked. Do some searching to see if your address was on the list.

You should also think about whether or not your phone has malware installed. If it doesn't have spyware, then was the SMS intercepted?
legendary
Activity: 1764
Merit: 1000
September 01, 2013, 05:16:42 AM
#7
best thing would be to send the support an email and let him check it.

where do you keep the wallet backup?
sr. member
Activity: 350
Merit: 250
September 01, 2013, 05:15:12 AM
#6
You can send a pm to piuk.
It is very strange if you have a SMS alert and still, you got hacked.


Maybe you gave the private key of the address to someone and it has nothing to do with blokchchain.info?
Or maybe you did the transfer and don't remember it?


You should not be able to bypass double authen
member
Activity: 103
Merit: 10
September 01, 2013, 05:14:51 AM
#5
It could be that your pc is compromised. Check for viruses or spyware using a descent antivirus tool (I use Avast Free Antivirus). In the worst case scenario, an attacker might have gotten access to your backup password. I recommend that you take precautions before you open a new account!

If my pc was compromised, does that mean my phone was compromised also?
member
Activity: 103
Merit: 10
September 01, 2013, 05:05:20 AM
#4
Maybe you forgot to enable the SMS option.

SMS option was enabled because I made a few transactions and each time I login I always get the SMS code.
newbie
Activity: 7
Merit: 0
September 01, 2013, 05:02:09 AM
#3
It could be that your pc is compromised. Check for viruses or spyware using a descent antivirus tool (I use Avast Free Antivirus). In the worst case scenario, an attacker might have gotten access to your backup password. I recommend that you take precautions before you open a new account!
legendary
Activity: 1638
Merit: 1329
Stultorum infinitus est numerus
September 01, 2013, 04:58:25 AM
#2
Maybe you forgot to enable the SMS option.
Pages:
Jump to: