Post
Topic
Board Meta
Re: Caution: My Hero account has been potentially compromised
by
FuckThemHackers
on 10/10/2017, 01:54:49 UTC
Ok I will wait.

Btw I just learned that signing such a generic message may be a mistake because someone else could use it to impersonate me...:


Another suggestion, I might be wrong though.

If you just put Bitcoin address or PGP key, it is easy to impose another person. A signed message is better.

False.

In reality is it the other way around.

The Bitcoin address or public PGP key cannot be use to impose another person.
Most user have this information public available in their signature, contact information, keybase.io etc.
But you need it to published somewhere in bitcoin talk in order to be able to retrieve your account if it gets stolen.

Publishing a generic signed message is not cleaver, it can be used by an imposter.
If you sign something, the message must include the purpose of the signed message and include the time/date.

This is an example of a not so cleaver signed message:
Message: "This is TookDk from Bitcointalk"
Signature:

This is much better:
Message: "Date: 2015.03.19. The purpose of this message is to prove that TookDk from Bitcointalk is in control of bitcoin address 1TookDkVTaqsCn56Xo7aMfUMAUN3NhRjN at this point in time"
Signature:




Makes sense. So should I sign the same address again with a better message?

Always add the current date and even time if you wish, but I would follow the above link to the letter. You could sign another here and send Cyrus the link.

Ok edited the post above with a better message:

Quote
-----BEGIN BITCOIN SIGNED MESSAGE-----
Hi, im manselr from bitcointalk. The date is October 10, 2017, 01:51:33 AM, the address is 14jiszwz2pLZR43LXQpFheJs8zbpX1qCYg. Please help.
-----BEGIN SIGNATURE-----
14jiszwz2pLZR43LXQpFheJs8zbpX1qCYg
IDBZuHGo0qvmTRM/is6MjiToDzM7xngU2OcXsJd/8kmfHeX0ONsnSBEHxVE2OB5Ktk1vvVuabdC4eO1LqBueBeA=
-----END BITCOIN SIGNED MESSAGE-----

This should do.

The PM that I sent to Cyrus with the email included also the date so I will just wait, hopefully he sees this thread too for further proof.