Live data from Hacker News

New Jersey slaps MIT Bitcoin hackers with subpoena

venturebeat.com

51–59 of 59 posts

Re: New Jersey slaps MIT Bitcoin hackers with subpoena

#51
post #25

Follow the lobbyists. Figure out who was threatened enough by a bitcoin model to want the government to step in. Because there is no way they have this kind of time on their hands to pursue this and have such in depth technical knowledge to know what to look for, without some corporate lobbyists spoon feeding it to the prosecutor. Not that I believe tidbit could ever be profitable or useful, but still.

No conspiracy necessary. From the article: "With a snippet of embedded code, Tidbit could enable websites to tap into visitors’ computers and borrow CPU cycles to mine Bitcoin." Ads that take over the screen for a few seconds are bad enouogh. A website that takes over a computer to run computationally expensive tasks? With ads, at least their is the opportunity to run adblockers. With a javascript miner, visitors are…

The mining was opt-in. Maybe derivatives of Tidbit could be a problem, but there's no evidence at all that Tidbit itself could be a problem.

Re: New Jersey slaps MIT Bitcoin hackers with subpoena

#52
post #9

Can someone with a background in law tell me if or why it wouldn't be legal to turn over bitcoin private keys, complying exactly with a request, while also using your own retained copies of those keys to sign transfer transactions sending all those bitcoins held by the previous (now compromised) keys to your new ones that are not covered by the subpoena? It seems to me that you'd be complying exactly with their reque…

Have there been any cases where Bitcoin private keys have been requested?

I don't know of any, and it's not the case here.

(If law enforcement had a legal claim to the balances controlled by the keys, they'd craft their order or enforcement action to achieve that end. I think the sweep of funds to a new address, after the Ross Ulbrecht arrest, suggests they understand the key-control issues involved.)

Re: New Jersey slaps MIT Bitcoin hackers with subpoena

#53
post #48
post #26

Earlier quoted context omitted.

Isn't this like suggesting that when the image of an HDD is subpoenaed, you might first copy all the data off it, then wipe it, then image that? Because that trick doesn't work. Relevant statute: 18 U.S.C. § 401. It's pretty broad.

I am talking about providing exactly what the subpoena is asking for, complying both in letter and in spirit. And transferring your coins to different keys. The subpoena isn't "for all keys, and no using them on the blockchain". It's just for the data. There is no such thing as ownership of bitcoin.

> There is no such thing as ownership of bitcoin.

That’s like arguing that there is no such thing as ownership of land. (Which some have argued, but it is a bit tenuous.)

Re: New Jersey slaps MIT Bitcoin hackers with subpoena

#54
post #53
post #48

Earlier quoted context omitted.

I am talking about providing exactly what the subpoena is asking for, complying both in letter and in spirit. And transferring your coins to different keys. The subpoena isn't "for all keys, and no using them on the blockchain". It's just for the data. There is no such thing as ownership of bitcoin.

> There is no such thing as ownership of bitcoin. That’s like arguing that there is no such thing as ownership of land. (Which some have argued, but it is a bit tenuous.)

If I post my private key to a bitcoin on pastebin and 100 people download it, who owns that bitcoin the moment before someone does a sweep transaction when 101 strangers all have the private key?

Re: New Jersey slaps MIT Bitcoin hackers with subpoena

#55
post #46

Earlier quoted context omitted.

No conspiracy necessary. From the article: "With a snippet of embedded code, Tidbit could enable websites to tap into visitors’ computers and borrow CPU cycles to mine Bitcoin." Ads that take over the screen for a few seconds are bad enouogh. A website that takes over a computer to run computationally expensive tasks? With ads, at least their is the opportunity to run adblockers. With a javascript miner, visitors are…

The javascript miner was not deployed anywhere. At no point was anyone in New Jersey knowingly or unknowningly served Tidbit's bitcoin mining code.

The Tidbit team claims that the miner was not deployed anywhere. The purpose of the investigation is presumably to make sure this is the case.

Unfortunately, due to the antics of many other major Bitcoin players, anyone doing something Bitcoin-related is generally deemed untrustworthy unless they prove otherwise. (And from a ideological standpoint, if one believes in the free market, this is how it should be--trust must be earned, not granted.)

Re: New Jersey slaps MIT Bitcoin hackers with subpoena

#56
post #51

Earlier quoted context omitted.

No conspiracy necessary. From the article: "With a snippet of embedded code, Tidbit could enable websites to tap into visitors’ computers and borrow CPU cycles to mine Bitcoin." Ads that take over the screen for a few seconds are bad enouogh. A website that takes over a computer to run computationally expensive tasks? With ads, at least their is the opportunity to run adblockers. With a javascript miner, visitors are…

The mining was opt-in. Maybe derivatives of Tidbit could be a problem, but there's no evidence at all that Tidbit itself could be a problem.

there's no evidence at all that Tidbit itself could be a problem.

We don't have all the evidence. We just have Tidbit's claims. Unfortunately, no entity in the Bitcoin industry has proven itself trustworthy, so Tidbit doesn't get the benefit of the doubt. It has to prove it. (Note: it's a civil case, not a criminal case, so it's not a matter of guilt and thus the presumption of innocence doesn't apply.)

Re: New Jersey slaps MIT Bitcoin hackers with subpoena

#57
post #51

Earlier quoted context omitted.

The mining was opt-in. Maybe derivatives of Tidbit could be a problem, but there's no evidence at all that Tidbit itself could be a problem.

there's no evidence at all that Tidbit itself could be a problem. We don't have all the evidence. We just have Tidbit's claims. Unfortunately, no entity in the Bitcoin industry has proven itself trustworthy, so Tidbit doesn't get the benefit of the doubt. It has to prove it. (Note: it's a civil case, not a criminal case, so it's not a matter of guilt and thus the presumption of innocence doesn't apply.)

Okay, I thought that you could only have subpoenas in criminal cases, but I'm not from a common law country, so this is probably different over here.

Re: New Jersey slaps MIT Bitcoin hackers with subpoena

#58
post #54
post #53

Earlier quoted context omitted.

> There is no such thing as ownership of bitcoin. That’s like arguing that there is no such thing as ownership of land. (Which some have argued, but it is a bit tenuous.)

If I post my private key to a bitcoin on pastebin and 100 people download it, who owns that bitcoin the moment before someone does a sweep transaction when 101 strangers all have the private key?

If I throw some money in the air towards a group of people, who owns it before one of them catches it?

I would guess that I still own it. In the same way, you still own the bitcoin until someone else does.

Re: New Jersey slaps MIT Bitcoin hackers with subpoena

#59
post #58
post #54

Earlier quoted context omitted.

If I post my private key to a bitcoin on pastebin and 100 people download it, who owns that bitcoin the moment before someone does a sweep transaction when 101 strangers all have the private key?

If I throw some money in the air towards a group of people, who owns it before one of them catches it? I would guess that I still own it. In the same way, you still own the bitcoin until someone else does.

When you throw money and it's floating in the air and not in your hand, you can't spend it.

When I leak a private key and the coins remain unspent, I can still spend them.

Tossing money into the air clearly ends my ownership of it. Pastebinning bitcoin keys does not (at least until someone sweeps the coins somewhere else using that published key).

Post reply on HN