Post
Topic
Board Service Announcements (Altcoins)
Re: ClamBaker.Club
by
dooglus
on 26/10/2015, 18:09:28 UTC
I was fortunate enough to have Just-Dice.com owner dooglus give me a hand in auditing and bug fixing on the site!
Everything should be functioning as normal again. We had to rebuild the database as well as fix a few scripts.

I did help out. The scripts being used were really pretty bad. I fixed a few of the most obvious bugs but not all of them. I personally wouldn't be using these scripts on a live site. They feel like an accident waiting to happen.

One bug that I didn't fix is in the way the script determines which address to pay out to. It looks at the first input of the deposit transaction, finds which transaction created that output, and the uses the address of either the 1st or 2nd output of that transaction as the address to repay. There's no comment to explain why such a strange strategy is used, but it will often result in the wrong person being paid out.

See http://i.imgur.com/A0BvC0h.png and http://clamsight.com/tx/c38a5be7810f6ef6ac74c08d263198d100a779ddc5d963a56ddb28bda78c5815 for a couple of examples.

ClamBaker.club has also moved from 1 confirm to 5 for added security. (Takes around 5 minutes to show on site)

It says 6 on the site:

"Note: Transactions are added above after 6 confirmations."