pull down to refresh

deleted by author
0 sats \ 8 replies \ @k00b 6 Jan
Attacks? What do you mean?
reply
0 sats \ 5 replies \ @k00b 6 Jan
We had a DoS attack and a DDoS attack. Both made the site unusable for until we figured out mitigations.
reply
deleted by author
reply
0 sats \ 3 replies \ @k00b 6 Jan
Whenever there are problems like this we've posted about it. We haven't been robbed. We don't store email addresses in plaintext associated with accounts (we hash them). We haven't had accounts robbed to our knowledge.
The biggest problem like this that we've had is a rewards bug that overpaid people: #217122
The DoS stuff was posted about too but I don't have the time to find it.
reply
deleted by author
reply
21 sats \ 1 reply \ @k00b 6 Jan
In general we try to be very cautious about what we store:
  • we don't store spending credentials for attached wallets in plaintext on the server
  • we hash user email addresses
  • we allow hard/deep deletion of withdrawal invoices after 7 days
reply
deleted by author
He may be inquiring about DDoS attacks and other related cyber threats.
reply
deleted by author