Live data from Hacker News

The Satoshi Nakamoto SourceForge account has been hacked

sourceforge.net

71–80 of 192 posts

Re: The Satoshi Nakamoto SourceForge account has been hacked

#71

More details via Wired: http://www.wired.com/2014/09/satoshi/ 1) A pastebin threating to dox Satoshi for 25 BTC: http://pastebin.com/7gbPi8Qr . Address has received less than .02 BTC thus far: https://blockchain.info/address/19pta6x1hXzV9F5hHnhMARYbRjux... 2) The GMX screenshots show 11k+ emails in the inbox, with one from as far back as June 2013

Mirrored screenshots here:

http://i.imgur.com/McgiZwb.png

http://i.imgur.com/lfCJeBI.png

Edit: To respond to https://news.ycombinator.com/item?id=8288579

Looks like "Phone 31x" under the email address, which is consistent with St Louis area code of 314.

Re: The Satoshi Nakamoto SourceForge account has been hacked

#72

https://twitter.com/petertoddbtc/status/509145414008725504 Peter Todd ‏ @petertoddbtc "Interesting, got another forwarded email from "satoshi", from 2011 - indicates this was a hijacked account, not expired and re-registered." ---- Going to grab some popcorn, this might get pretty entertaining...

Interesting link. I'm sure there's a lot more to come if what they have is true. But the comment about the popcorn doesn't seem right. Is it entertaining to watch him get dox'ed? Shall we encourage hackers holding info for ransom?

Re: The Satoshi Nakamoto SourceForge account has been hacked

#73
post #8

Earlier quoted context omitted.

So could someone explain how an IP address would leak when using an email account? I suppose potentially in the SMTP header, but this would assume he was using a email server running on his own personal ip, right? So is the guess here (assuming this is even true) that he had an email server running at home, leaked the ip, and then was attacked when someone found it?

gmail, for instance, includes the client IP address in mail headers. I learned this myself recently from an article here on HN, https://news.ycombinator.com/item?id=2083798 Haven't checked it myself, just reported there by a former gmail engineer in the context of their anti-spammer efforts.

You're wrong. Most SMTP requires IP in the header, gmail does not. This causes contempt between certain groups, as while it's a boon for personal privacy, it often hinders investigations.

Here's a video with Mike Hearn giving a talk about spam. At the end and middle are mentions about gmail's lack of IP from sent emails, the end specifically from a network admin expressing his grievances about Google's efforts being a hindrance to law enforcement.

https://ripe64.ripe.net/archives/video/25/

It is , however, standard practice for most SMTP providers to do this.

Re: The Satoshi Nakamoto SourceForge account has been hacked

#74
post #71

More details via Wired: http://www.wired.com/2014/09/satoshi/ 1) A pastebin threating to dox Satoshi for 25 BTC: http://pastebin.com/7gbPi8Qr . Address has received less than .02 BTC thus far: https://blockchain.info/address/19pta6x1hXzV9F5hHnhMARYbRjux... 2) The GMX screenshots show 11k+ emails in the inbox, with one from as far back as June 2013

Mirrored screenshots here: http://i.imgur.com/McgiZwb.png http://i.imgur.com/lfCJeBI.png Edit: To respond to https://news.ycombinator.com/item?id=8288579 Looks like "Phone 31x" under the email address, which is consistent with St Louis area code of 314.

[deleted]

Re: The Satoshi Nakamoto SourceForge account has been hacked

#75
post #71

More details via Wired: http://www.wired.com/2014/09/satoshi/ 1) A pastebin threating to dox Satoshi for 25 BTC: http://pastebin.com/7gbPi8Qr . Address has received less than .02 BTC thus far: https://blockchain.info/address/19pta6x1hXzV9F5hHnhMARYbRjux... 2) The GMX screenshots show 11k+ emails in the inbox, with one from as far back as June 2013

Mirrored screenshots here: http://i.imgur.com/McgiZwb.png http://i.imgur.com/lfCJeBI.png Edit: To respond to https://news.ycombinator.com/item?id=8288579 Looks like "Phone 31x" under the email address, which is consistent with St Louis area code of 314.

That guy did a really bad job of blacking out sensitive information. It probably nails the receiver down to only a couple of hundred people.

Re: The Satoshi Nakamoto SourceForge account has been hacked

#76
post #34
post #32

Earlier quoted context omitted.

If you were very paranoid would you rely exclusively on security through obscurity? It might also occur to you to diversify out of the thing that puts you at risk. Maybe there's even some sort of establishment that can hold funds more securely. He should look into that.

"Security through obscurity" being bad only applies to cryptography, and have no bearing whatsoever to the concept of security in real life. To answer your question, actually, yes, it's almost proven to be the most effective measurement for one's safety: don't want to get hurt? Don't let people find you: get in a forest/ mountain range and hide.

> "Security through obscurity" being bad only applies to cryptography, and have no bearing whatsoever to the concept of security in real life.

Why do you believe this? The concept predates widespread use of encryption and originally applied to things like physical locks. Their "security through obscurity" approach was custom mechanisms which were easily defeated shortly after development by determined thieves. This race between security experts (in their various incarnations) and security breakers (again, in their various incarnations) has been going on since the first person tried to secure some property with something more complex than a crossbar on a door. And this race continues, even in the information age, to occur in both the physical and information realms.

Re: The Satoshi Nakamoto SourceForge account has been hacked

#77

Earlier quoted context omitted.

Not at all, you can freely walk into most exchange offices. Theoretically an armed robbery of exchanges and payment processors would be the perfect crime. Commit private address to memory or tattoo it on yourself in code, after the robbery forcing them to transfer to your public address and waiting out confirmations turn yourself in to the police and do the 5 yrs. Walk out with millions worth of bitcoins on your arm.…

They'd keep you in indefinitely for contempt of court for not handing over what you'd stolen.

Claim the exchange operator hired you to rob their own business and they have the private key :P

Re: The Satoshi Nakamoto SourceForge account has been hacked

#78
post #75
post #71

Earlier quoted context omitted.

Mirrored screenshots here: http://i.imgur.com/McgiZwb.png http://i.imgur.com/lfCJeBI.png Edit: To respond to https://news.ycombinator.com/item?id=8288579 Looks like "Phone 31x" under the email address, which is consistent with St Louis area code of 314.

That guy did a really bad job of blacking out sensitive information. It probably nails the receiver down to only a couple of hundred people.

[deleted]

Re: The Satoshi Nakamoto SourceForge account has been hacked

#79

More details via Wired: http://www.wired.com/2014/09/satoshi/ 1) A pastebin threating to dox Satoshi for 25 BTC: http://pastebin.com/7gbPi8Qr . Address has received less than .02 BTC thus far: https://blockchain.info/address/19pta6x1hXzV9F5hHnhMARYbRjux... 2) The GMX screenshots show 11k+ emails in the inbox, with one from as far back as June 2013

If the BTC creator is from St. Louis, I would suspect it being a project of the St. Louis Federal Reserve Bank. They've been a proponent of the technology (releasing whitepapers, articles, Q&A's, tweets) even during times of outrage amongst politicians.

Re: The Satoshi Nakamoto SourceForge account has been hacked

#80
post #58

Earlier quoted context omitted.

If Satoshi can't configure Tor correctly how is Joe Blow supposed to figure it out?

If the Tor leak thing is true, this could add to the evidence for the common speculation that Satoshi is a collective pseudonym.

how so?
Post reply on HN