Yeah, still 73% are old v.10.13.15 MN version.The guy who wrote the exploid still gets payments
Yeah, still 73% are old v.10.13.15 MN version.The guy who wrote the exploid still gets payments
same hereeduffield The debug.log seems to be getting spammed with a lot of:
Code:2014-10-07 22:43:57 dsee - Got mismatched pubkey and vin 2014-10-07 22:43:57 ProcessMessage(dsee, 217 bytes) FAILED
Looks like that's the fix, rejecting spoofed nodes.eduffield The debug.log seems to be getting spammed with a lot of:
Code:2014-10-07 22:43:57 dsee - Got mismatched pubkey and vin 2014-10-07 22:43:57 ProcessMessage(dsee, 217 bytes) FAILED
At current rate debug.log will grow ~5 Mb per hour or 120 Mb per day. That's not too much may be but what if an attacker increase rate of creating invalid MNs? Say 10 times -> 1.2 Gb per day? That's a lot.
propulsion@S7 ~/.darkcoin $
(darkcoin-qt:9340): Gtk-CRITICAL **: IA__gtk_widget_get_direction: assertion 'GTK_IS_WIDGET (widget)' failed
At least he found the vuln before it gets worse, he should be rewarded with what he found. He said he would test Darksend more, I can't wait to hear what he finds. I would love to raise fund for him if he can help more.There has def been damage. Since the attacker was able to insert his own masternodes into the list without needing the 1000 coins he was able to receive tons of payments...
http://explorer.darkcoin.io/address/XwzmEE1cJ6HG84CgJvAt7ADmJ8W9Wh65Tq
All payments from today.
Nah, let's see if he can 'raise' any more funds for himself.At least he found the vuln before it gets worse, he should be rewarded with what he found. He said he would test Darksend more, I can't wait to hear what he finds. I would love to raise fund for him if he can help more.
Evan, so far he's got paid 98.0506 DRK and it seems he still keeps getting paid:It's just because a bunch of the nodes still think those masternodes are valid and keep sending them around. It'll stop in a few hours.
Evan, so far he's got paid 98.0506 DRK and it seems he still keeps getting paid:
https://chainz.cryptoid.info/drk/address.dws?XwzmEE1cJ6HG84CgJvAt7ADmJ8W9Wh65Tq.htm
I hope so too...Yeah, his run rate is about 78k DRK per year. Current salary in fiat would be $165k/year. Not bad for 8 hours of coding. I hope he turns white hat and joins the dev team.
You can still wear a black hat (or helmet) if you want to. With our combined strength, we can end this destructive conflict, and bring order to crypto currency.I hope so too...
XwzmEE1cJ6HG84CgJvAt7ADmJ8W9Wh65Tq, If you read this, please join the dark side... I mean please join us ... lol :smile:
Just in case . . .this applies only to MN operators right. If i use 0.9.13 wallet still use the same version, I see no update ?Thanks