Post
Topic
Board Pools
Re: [5.5TH/s] Ozcoin Pooled Mining |DGM 1%|PoT 2%|PPS 3%|Stratum+VarDiff port 80
by
zero-asic
on 19/04/2013, 10:05:11 UTC
Oh shi*, we're fucked.
BTCGuild takes over, all Pools are being DDOSed, MTRed closes door, ozco hacked to steal payouts.
The System itself has gotten attention of too much people, now some try to get our money out, then destroy it.

And the loss of ~1600BTC, jesus, Graet deserves a gold medal for taking this as a lesson and continue working.
Most would have killed someone responsible for this.

As Bitcoin becomes more popular our security practices are going to have to improve.  It's not just DDoS attacks.  Cross site scripting, SQL injection, and network security are an issue too.  Locking down access to your services to the local network will help and is easy to implement.  Check all uploads, set their permissions, and try to make them as inaccessible as possible.  Every form needs it's POST checked for SQL injection before form inputs get sent to the database.

This is not just advice for Ozcoin.

Good luck!  My Avalons are still pointed at Ozcoin!