Bitcoin Forum
January 17, 2015, 02:04:11 AM *
News: ♦♦ Users of Bitcoin Core on Linux must not upgrade to the latest OpenSSL. More info.
 
  Home Help Search Donate Login Register  
  Show Posts
Pages: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 [29] 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 ... 272
561  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 11:47:37 PM
For those who asked for more deadlines, December 14 is the last day to oppose this trademark aplication at the US Patent Office:

Trademark application for: BITCOIN
Serial Number    86135516
Goods and Services : Barware, namely, flasks, bottle openers, corkscrews; beverage glassware; housewares and accessories, namely, shot glasses, and decanters

http://tmsearch.uspto.gov/bin/showfield?f=doc&state=4810:x6ra4a.2.13

If the link does not work, go to http://tmsearch.uspto.gov/ and search for "bitcoin".

The trademark seems limited to barware, so it may not prevent the sale of abstract bit patterns under that name.  But it may prevent sending beers as bitcoins.  Grin
562  Bitcoin / Project Development / Re: [ESHOP launched] Trezor: Bitcoin hardware wallet on: December 08, 2014, 11:32:05 PM
Also I fail to see what's the risk for the manufacturer if someone starts selling what is essentially a counterfeit version of the device. This would be like blaming an original SD card manufacturer when you get a fake chinese SD clone.
If you buy fake merchandise, your loss is usually limited to the article.  Someone who buys a fake malicious Trezor may lose millions.  The victims will be much more motivated to get their money back, and SatoshiLabs will be the only target they can sue.  The victims will argue that SL is responsible because they did not warn people about the risk of buying Trezors from resellers.

For the same reason, I hope that SL is taking adequate measures to physically secure their storage and shipping operations.  How much would it take to convince an employee to switch some Trezors before shipping?

A knockoff requires some serious dedication and isnt even a remote concern if you just buy directly from buytrezor.com

Exactly.

Quote
far more likely:
1) printers with custom firmware to recognise bitcoin addresses/QR codes when printing, and push that data to a server
2) casascius or any other coins being opened up with precision and solvents, private key copied, then sealed shut again for resales. Or even the creator keeping a copy of all private keys
3) an android/windows/ios/ANY wallet software that was downloaded from the wrong site or updated to a malicious version
4) a webwallet that is hacked or otherwise steals privkey data.
5) virus or malware that seeks and steals any wallet info, or even QR codes from your print/documents history, and pulls the funds out.

Yes, all of that too, and more....

Quote
someone creating an exact replica of the trezor and its (quality) box that its shipped in, plus valid serial numbers, plus making it match the MD5 hash..... you are pulling at straws.

You have heard of fake ATMs, right?

Quote
IMO the trezor is 100% the safest option right now outside of operating an isolated offline system with an offline printer, using it to sign txs, copying the signed tx to a USB, then sending the signed transactions from an online system

The Trezor may be even safer than an off-line computer (if malware gets installed in that computer, it may be able to do a weak-key attack, or leak the private key in the signed transaction.)  Basically, the Trezor is an offline computer that is dedicated to a few bitcoin-related tasks and therefore is more difficult to compromise.  Trezor is certainly much safer than that competition hardware wallet without display.  But owners must be aware that it is still far from 100% safe.
563  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 10:18:27 PM

My guess is that several of the 5 kBTC chunks were bids by the same syndicate; the syndicte merged those chunks, and now is distributing the coins to individual sub-bidders.
564  Bitcoin / Project Development / Re: [ESHOP launched] Trezor: Bitcoin hardware wallet on: December 08, 2014, 10:09:45 PM
But you have been bashing the same arguments since July...  The first time, I can understand, but repeating the same thing over and over again...

Well, many Trezor customers and prospective customers do not seem to be aware of that risk yet.   And I am not sure that the SatoshiLabs people are aware of the risk that they incur by tacitly approving the re-selling of their Trezors.
565  Bitcoin / Development & Technical Discussion / Re: Reused R values again on: December 08, 2014, 10:05:51 PM
Here is one BCI user who claims to have lost 99 BTC which were not moved to the Good Samaritan's address:

http://www.reddit.com/r/Bitcoin/comments/2oo72b/victim_100_bitcoins_stolen_from_blockchaininfo/

The destination address got two other inputs; perhaps other ursers?
https://blockchain.info/address/1M77fUCzQrmY8jHRRgpzDVPAK5eQ31bwxZ

566  Bitcoin / Development & Technical Discussion / Re: Reused R values again on: December 08, 2014, 09:45:31 PM
i am fucking livid right now. over 3.6 btc stolen from my wallet. password changed and i can't get back in. has anyone else had issues with the passwords being changed ? i don't understand why because the wallet is empty.

if i didnt have my wallet as a watch only" address on my phone this would have gone unnoticed. sent a message to blockchain but no reply yet.

anyone else have this problem ? I'm so distraught and upset, this sucks.

https://blockchain.info/address/18VfH6NCktwZ835z4zp52wmvpWEGCSenuf

Your address seems to be one of those colected by the "Good Samaritan" and moved here
https://blockchain.info/address/1Ha7DNXbiUi5DozhZjtDDveciamb6uQZbR
He promised to give them back as soon as the owners can prove tha they are theirs.
Check previous messages in this thread.
567  Bitcoin / Development & Technical Discussion / Re: Reused R values again on: December 08, 2014, 09:30:52 PM
The Good Samaritan collected ~216 BTC from some 200--250 compromised Blockchain.info addresses, the last one ~4 hours ago:

https://blockchain.info/address/1Ha7DNXbiUi5DozhZjtDDveciamb6uQZbR

Are those the only ones? (I saw a claim on reddit, without any evidence, that the total losses were higher. Any source for that?)

568  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 08:59:17 PM


Is that the new Blockchain.info logo?
569  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 08:57:44 PM
Does anybody know the new deadline when something is gonna happen?
We need more deadlines!
December 24, 23:59:59 is the deadline to enter deeds into Santa's good kid / bad kid database.
570  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 08:00:02 PM
Actually right to sell ad timing of sales was passed from Ross to USMS early this year. Its in the 'advert' for this auction.

Indeed, "on January 27, 2014".  I hadn't noticed that.
571  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 07:57:40 PM
About "why can't we see the USMS transferring Draper's 2'000 BTC lot":

According to the Mirror venture, which is funded in part by Draper, he entered the auction through their syndicate.  As explained above, a syndicate would probably submit several bids for 2000+3000=5000 BTC, and perhaps one for 2000 or 3000 BTC
572  Bitcoin / Project Development / Re: [ESHOP launched] Trezor: Bitcoin hardware wallet on: December 08, 2014, 07:50:53 PM
SatoshiLabs could do the following:

Put a long serial number in the sealed box. People can go to the website and register their Trezor. This tool would verify the Trezor device to be legitimate.
By doing that, they can also attach their email or (if they want to keep their anonymity) just a bitcoin address to their device. This can be used for warranty purposes so reselling the Trezor would be much more easy Smiley

That would help, but may not remove the risk entirely.  The malicious reseller may order a batch of real Trezors and send fake malicious Trezors to the clients, with the same serial numbers.

Perhaps one can devise some secure hanshake that that the Trezor could do with the SatoshiLabs server to prove that it is legit.  It would have to be something hard to emulate by a fake Trezor, even one that used parts from a real Trezor.
573  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 07:33:17 PM
I thought they seized 144,000 total?

They seized ~30'000 from SilkRoad servers, and were able to auction them right away.  And seized another 144'000 from Ross's personal laptotp, so they are still disputing whether they are his or SilkRoad's; but both sides agreed to auction them now and continue disputing over the money.
574  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 07:28:30 PM
Do i understand correct that if you get disqualified you will lose your initial deposit of 150.000$?
that would be a weird way to throw.away 150k $

Yes, that's the idea. AFAIK, you lose the deposit onnly if your bid is called and you default. The USMS doesn't want people to bid first and then scramble to find the money later.  AFAIK, to enter a syndicate you must send the full value of your bid to the organizers in advance -- for that reason.

If that 2000 BTC lot was held because of a default, the bidder may have miscalculated the time neded for a wire transfer, or may have been counting on some expected revenue that did not materialize in time.  Who knows.
575  Bitcoin / Development & Technical Discussion / Re: Reused R values again on: December 08, 2014, 07:18:00 PM
Perhaps blockchain.info (if people still trusts them) can create new addresses for the affected users, post the old-new map, and the "good samaritan" can then transfer the amounts there.
576  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 07:02:21 PM
so....

anyone know, how much coin left to be auctioned next month Huh

There is no date set, but they still have some 94'000 BTC to auction. From the way they split the coins today, it seems that they are planning another 50'000 BTC auction next, and then presumably one for the final 44'000.
577  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 06:22:09 PM
They seem to use a 0.001 0.0501 BTC or 0.05 BTC fee. So, someone who bought 3000 BTC will get 1999.999 1999.959 and 0.001 0.0501 will go to the miners.
2999.9xx ?  otherwise they have been shafted royally
yeah, of course.  Sorry.  I got my coffee, EEG starting to show some activity now.
578  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 06:17:45 PM
I hear ya Jorge, loud and clear
Yeh, that 52k + change does not fit the pattern.
unless 1 lot did not sell, or unless some wise guy has not met payment deadline, then it makes sense...

Quote
On Friday, December 5, by 5:00pm EST, the USMS will notify the winning bidder/bidders that their bid/bids has/have been selected. Any winning bidder must send the purchase price funds (less the deposit amount) by a wire transfer originating from a bank located within the United States and provide a wire transmittal receipt to the USMS by 2:00pm EST, on Monday, December 8, 2014. [ ... ] Failure to provide the USMS with a copy of the wire transmittal receipt by the deadline will result in disqualification, forfeiture of the deposit, and award to another bidder.

If one bidder does not pay by the due date (today 2:00pm EST) , they will have to notify the highest bidder who was left out of the first round, and obviously give him a couple of days to wire in the payment. 

So it may be that one of the bidders who won a 2000 BTC block defaulted, and the USMS has transferred the 48 000 BTC to those who paid, and didn't bother to split off the 2000 BTC chunk yet, waiting for the next bidder to pay.

By the rules, each bid form could bid for any number of 2000 BTC 'A' blocks, all at the same price, and any number of 3000 BTC 'B' blocks, all at the same price.   So, a syndicate that wanted to place bids for many blocks, all at different prices, would have to submit a number of forms, each for 1 'A' block and 1 'B' block.  It seems likely that the USMS would want to make a separate transfer for each form received, even if two forms were submitted by the same person.  So that may explain why there are nine 5000 BTC chunks.
579  Economy / Speculation / Re: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion on: December 08, 2014, 05:36:28 PM

Wierd ... all the lots of about 5k and  3k have small amounts deducted for miner fees.
That 52 k is odd tho ...
Maybe someone made them an offer they could not refuse for an extra 50k over the weekend (Draper ... 2k + 50k = 52k)
Still does not explain why the total is over 52k and not under as you would expect after fees

Could they even do that, without auctioning them? Do they not have some sort of fiduciary duty ?

Answers on a postcard ...

From the USMS announcement:
Quote
Transfer Fees. Any transfer fees associated with the transfer of the bitcoins will be paid by the buyer. The buyer will be given an opportunity to select the amount of fees charged in the transfer.

They seem to use a 0.001 0.0501 BTC or 0.05 BTC fee. So, someone who bought 3000 BTC will get 1999.999 1999.959 and 0.001 0.0501 will go to the miners.

Note that only 48'000 of the 50'000 BTC were split (into nine 5000 BTC chunks and one 3000 BTC chunk).   That is why the leftover of the 100'000 BTC is 52'000 BTC.

Does that mean that the USMS thought that the bids were too low? Or that one of the bidders defaulted on the payment?

EDIT: fixed fee amount
580  Bitcoin / Project Development / Re: [ESHOP launched] Trezor: Bitcoin hardware wallet on: December 08, 2014, 04:04:11 PM
A fake Trezor can do anything.... you pulled that out of your FUD hat?  Roll Eyes
Why couldn't a fake trezor impersonate a real one and do whatever it wants underneath the hood?
I'm not saying this is easy to accomplish, but certainly technically possible.

A fake Trezor can, for example imitate the real one but generate only weak keys (say, from among 2^30 possible pairs rather than 2^160).  Then the thief needs only monitor the blockchain until enough coins have been stored in those addresses, which he has precomputed.  Then he just moves the coins to his own addresses, all at once.

Note that the thief does not need to know who got the fake Trezors, and the user has no practical way of checking whether the keys are strong.

How many coins people may keep in those fake Trezors? That is the expected payoff of this attack. How much does it cost to make a fake Trezor with malicious bootloader?

EDIT: grammar
Pages: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 [29] 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 ... 272
Sponsored by , a Bitcoin-accepting VPN.
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!