cryptoeax / arbbot

Arbitrator, a bitcoin/altcoin arbitrage trading bot
https://gitter.im/cryptoeax-arbbot/Lobby
GNU General Public License v3.0
199 stars 78 forks source link

previous version exploit #51

Closed IEWbgfnYDwHRoRRSKtkdyMDUzgdwuBYgDKtDJWd closed 6 years ago

IEWbgfnYDwHRoRRSKtkdyMDUzgdwuBYgDKtDJWd commented 6 years ago

@ cryptoeax yep, I was the guy who called out the php backdoor in the other repo, also i doubt that guy was the creator anyway.

I have some additions ive made myself, should you like to chat. let me know if you have a keybase or any chat client.

EDIT; wasn't it hilarious the other guy had a "PHP Backdoors" repo forked in his profile? I swear people these days.

cryptoeax commented 6 years ago

@ cryptoeax yep, I was the guy who called out the php backdoor in the other repo, also i doubt that guy was the creator anyway.

Thanks! Yes, based on the code I suspect the original codebase was quite old, since it refers to some old exchanges like Cryptsy (https://github.com/cryptoeax/arbbot/blob/4426c1075798a002b7eba81dc1a95a1d1513922f/web/ui.js#L103). It was also quite buggy in the beginning so my best guess was that this was some code best this person got their hands on somehow...

I have some additions ive made myself, should you like to chat. let me know if you have a keybase or any chat client.

I've made a gitter room for this project (https://gitter.im/cryptoeax-arbbot/Lobby) where I just sent you an invite.

EDIT; wasn't it hilarious the other guy had a "PHP Backdoors" repo forked in his profile? I swear people these days.

Yeah :( Sadly they successfully managed to steal some BTC from at least one user before github pulled their repo down...

IEWbgfnYDwHRoRRSKtkdyMDUzgdwuBYgDKtDJWd commented 6 years ago

yep. some people just lack true talent and mitigate by preying on others. anyway, ill be sure to pop in the gitter sometime today. thanks for invite.

cryptoeax commented 6 years ago

Closing this issue as part of regular clearnup!