Code Monkey home page Code Monkey logo

coindice's Introduction

coinDice

A coin dice script that needs help

DON'T USE THIS SCRIPT. YOU WILL GET HACKED!

Hi everyone, I uploaded this script because, after buying it for 0.18BTC, I was testing it out on my live server and got all my dogecoins hacked (although, it was only 2000 coins).

So I am giving it away to the community of GITHUB!

My guess is that it was a SQL injection attack. The thing I found out in my little investigation is that the hackers (2 players) got their account balance to say 999999999999999 (with no bet) and then withdrawn the most available (I for example had only 2000 Dogecoins). I know for a fact that they didn't got into the admin part. They injected it through a user session.

You can test out your penetration hacks on my server: cryptorange.com (only 3.5 Dogecoin left on it)

I did have the latest patch for protection against heartbleed attack even before the hack occurred.

Please, if you want to test it out on your server, use testnet so you don't get rob.

I will give a bounty of 0.1 BTC to the person who will make the most commits in 2014.

Cheers

If anyone wants to donate funds will be added to the bounty! Bounty donations: 16mkiwjhSo9XyRKhVUt4GYdAWDJTk4m8Uz

Related repports of this attack on bitcointalk.org:

https://bitcointalk.org/index.php?topic=516394.0

coindice's People

Contributors

colinkelly avatar

Watchers

 avatar  avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.