Post
Topic
Board Service Discussion
Re: Instawallet/Bitcoin-Central Security Breach
by
repentance
on 24/04/2013, 23:21:03 UTC
"2 identical hacks in 2 days for #bitcoin services hosted at #OVH. @olesovhcom your manager will reset a password without e-mail confirmation"
https://twitter.com/Bitcoin_Central/status/327131323342942209

Looks like OVH is to blame Angry

And srsly host critic websites on your own servers, don't trust OVH/Linode or anyone Sad

Nope, they chose their hosting service.  If they chose a hosting service which allows password resets without adequate verification, that's on them, not the hosting service.  It'd be interesting to know if there was a more secure option available to them with OVH and they simply chose not to use it (which has happened in the past with other intrusions - the services haven't paid for full database back up or haven't utilised all the security options available to them).