Skip to content

Instantly share code, notes, and snippets.

@magoo
Created August 3, 2016 19:07
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save magoo/f2639251b050dd2b37b53c37898c6556 to your computer and use it in GitHub Desktop.
Save magoo/f2639251b050dd2b37b53c37898c6556 to your computer and use it in GitHub Desktop.
Reddit comments from Bitfinex employee
https://www.reddit.com/r/btc/comments/4vtv67/bitfinex_security_breach/
https://www.reddit.com/r/Bitcoin/comments/4vupa6/p2shinfo_shows_movement_out_of_multisig_wallets/d61oe33
We haven't used the hot/cold wallet setup since our implementation with bitgo as each user has their own wallet that the funds are stored in.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61bwcv
"Afaik, Finex doesn't have something like a hot wallet, each user's coins are held in a separate multisig wallet which can be checked on BitGo."
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61c81g?context=3
"Correct, other currencies were not affected. We don't have a ballpark right now, as soon as details like this become available i'll share them."
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61clr3
No fiat was stolen, only btc.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61cni8
We have segregated customer wallets, not hot/cold as each user has their own wallet. We can't release details about the breach at this time as we're still investigating, but no, we did no lose all or nearly all of the bitcoin.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61d2qq
Some users' bitcoin has been stolen, and no there is no insurance for this.
https://www.reddit.com/r/btc/comments/4vtv67/bitfinex_security_breach/d61dnwi
My assumption with what he meant is that the user didn't login to users accounts which may imply that login credentials have been compromised, which isn't the case here.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61dq5g
We have one private key that we use to sign transactions, bitgo then has a key that they use to sign transactions, and there's one key that's kept in cold storage.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61g0vk
We haven't have a hot/cold wallet setup since the bitgo implementation. Instead each user has their own wallet with limits on how much it can withdrawal as well as a global limit. We're still investigating how they were able to compromise this setup.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61gor5
>"If not, this appears to be a BitGo hack every bit as much as a Bitfinex hack."
Doesn't appear to be, it looks like this was a compromise on our end.
https://www.reddit.com/r/BitcoinMarkets/comments/4vtv1m/bitfinex_down_due_to_bitcoin_security_breach/d61hm2a
I didn't say that BitGo wasn't involved, I said that it doesn't look like they were compromised. And no, I don't believe our back-up keys were compromised but the investigation is still ongoing on how exactly we were compromised.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61hv04
I can confirm that not all customer funds were lost.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61kcm0
Was not internal.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61pc44
There were a number of security practices that were in place to make this the most secure, yet transparent way of securing funds and we used the company that prides itself and specializes in bitcoin storage. How these practices were bypassed, we're still investigating.
https://www.reddit.com/r/Bitcoin/comments/4vupa6/p2shinfo_shows_movement_out_of_multisig_wallets/d61qakt
I can confirm that ETC was not affected by the hack.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61r6ue
Only bitcoin was stolen in the hack ETH and ETC were unaffected.
https://www.reddit.com/r/Bitcoin/comments/4vtuxo/bitfinex_security_breach_trading_will_be_halted/d61rajc
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment