Bittrex hacked lost 30k

Just lost $30k in assorted alts on Bittrex.
Had 2fa active. They came in and sold all my alts for btc then sold that for eth the used the eth to pump bitshares until the eth was gone.
Left me with $80
No clue how this happened.
Pic related: me looking at my wallets tonight.

Other urls found in this thread:

bitcointalk.org/index.php?topic=1423584.0
authy.com/blog/authy-vs-google-authenticator/
twitter.com/AnonBabble

>he posted his api keys somewhere
I almost feel bad for you.

Nah

Do you have api keys? Because that's the only way this would have happened other than a phishing attack.

I don't have api keys, and to my knowledge I didn't fall for a phishing attack.

You got bittrex'd

How strong was your PW? I have 20+ random characters.

Explain.

my ass you got hacked with 2fa active. you're just spreading FUD for some stupid reason. kys

>Had 2fa active

nice bullshit story

Darn strong. And I was using Authenticator.

omg just lost 100k!

I once read that the best password is three random words

I told people not to use buttsex several months ago. There is a whole thread on bitcointalk about people getting their wallets cleaned out, YES, with 2fa ON.

I bet they are using trading bots and shit

>hodling my OMG and finally managed to stop checking the price every 10 minutes
>read this thread
>log into bittrex for the first time in a few weeks to make sure my OMG is safe
>now checking the price every 10 minutes again
die

>my ass you got hacked with 2fa active. you're just spreading FUD for some stupid reason.
No
>kys
Contemplating it

it's all fucking BS. if you are going to make the extraordinary claim that an account with 2fa has been hacked, you need to post proof.

Look out for a keylogger.

I posted it before, here it is:
bitcointalk.org/index.php?topic=1423584.0

Unless you think those accounts are connected with each other to fud against buttsex (which would make you an idiot - look at their history), there are big ongoing issues. OP did you have a legacy account? Those also seem to be hit more often. People in the thread had 2fa ON.

Last post: August 17, 2017. first post - April 2016.

If you are hodling why don't you have it on MEW instead of a shitty exchange? You won't even take advantage of the airdrop if it's not in a personal wallet.

I had what Bittrex calls a "new" account even though it was over a year old. It's the most basic account you can have. And again, I did indeed have 2fa on.

That's true I just started doing that and added a 10 digit number after it

Just received this email yesterday from bittrex. I stopped using bittrex after they implemented stringent withdrawal limits. Glad I did.

Feelsbadman, bittrex won't do shit for you. Try to connect with people in the thread, a theft has occured and its a crime not to be downplayed. You guys need to organize and get bittrex to own up to that shit, the platform is not as secure as they say it is, but of course they try to blame it on the users. I'm not gonna lie - holding that much crypto on an exchange wasn't too bright of you either.

At this point I trust mercatox and cryptopia more that i trust bittrex. Still would never keep more than a couple hundo on them.

...

This.


It's impossible.

You probably logged into "blttrex" instead of bittrex

yes you did you fucking moron, you don't just magically get hacked out of nowhere you fucked up and brought this on yourself

TREXXED

I knew I was playing with fire, but fuck.

I only ever log in from a bookmark on my phone and a bookmark on my laptop.
Both are correct.

Holy shit guys I just lost $69k on bittrex sell selll sell

>log in from my phone
there it is
use only a pc which is absolutely clean
don't torrent on it
you should be good unless someone you know personally is IT savvy and wants to fuck with you

you used 2fa? with goog authenticator and not sms?

something's not right with your story

>post is about people without f2a that got hacked
Lol n1

ITT fudders/retards that fell for phishing

>what is a dictionary attack

GUYS WTF DID THEY DO TO OUR CRYPTO COINS? SHOULD WE CALL THE COPS?

...

Then how the fuck did it happen? You fucked up somewhere, you are the weakest link, don't delude yourself

PIC RELATED THAT WAS ALL MY TENDIE BUX

I've read 20 random posts, all suckers with no 2fa on and thousands on their accts. Not gonna sift. Post proofs or stop larping.

>you used 2fa? with goog authenticator and not sms?

correct

obviously not telling the whole story. What stupid thing did you do, OP? It's ok we won't judge.

do watch porn or visit any weird sites on your phone?

It's always the same story and it's always bittrex. Either some exchange has a weird viral campaign or this shit is actually happening.

have you rooted your phone, OP?

What's this 2fa?

Nofap
4ch and 8ch are as weird as I get.

it's faggots wanting to take down the best exchange with rumors and whatnot. this is also a good way to make morons panic sell to get off bittrex.

two factor authentification, you enter random numbers that respawn on your phone every few seconds

authy.com/blog/authy-vs-google-authenticator/

No...

Do you use Microshit Windblows?
That's why.

I don't get the motivation unless it's an exchange or the same guy just does it occasionally for lulz.

All Mac applefaggotry here

Post a screenshot of the trade history

authy being able to sync across devices seems incredibly bad from a security perspective, i'll stick with google authenticator on a phone which i never connect to the internet and only charge via a wall outlet, thanks

agreed. start posting proof, OP

but then... you better back up every captcha code because if you lose your phone you lose a 100k accoun

anyone that gets their shit stolen from bittrex is a literal mouth breathing monkey

there is an ip whitelist option where it makes it IMPOSSIBLE for anyone aside from the whitelisted ips to make any orders or withdraw money

>writing down the private key to your 2fa is so hard

alright, you win

just trying to help noobs

you are a fucking moron if you don't take the time to securely back up those phrases and put significant amounts of cash into such accounts

I took a picture of the api key and uploaded it to gmail, is it safe or should I write it down and delete it?

You could make your password "10" and you wouldn't get hacked with 2fa on. Fuck off.

Me getting cleaned

Sometimes the right time to buy and sell happens when you're wagecucking.

fucking hell m8, why would you do that? you should always store that which you can store offline, (ie on a piece of paper) offline. No wonder so many people lose so much fucking money on this website not taking security seriously.

jesus fucking christ

pretty good buys on bitshares. how do we know you're not just stocking up for the next big moon mission?

you fucked up already btw this way, detach your authenticator and attach a new one with a new key and write that key down and don't store it fucking online, moron

Lol

What do you think is more likely. Google getting hacked and a hacker finding your shit amidst a fuckload of other shit, or your dumbass forgetting/losing the keys?

if you aren't able to secure your own stuff you shouldn't be in crypto in the first place, it's literally what crypto is designed for

so assuming you can secure your own stuff offline it is infinitely better than storing it online on any kind of service

Why didn't they just take the money?

they did, by filling their own buy orders obv

No, because your hard drive is far more likely to fail than a hacker accessing your gmail account.

offline being a piece of paper or anything air gapped from a pc obv or a cryptosteel or something

Why not store your keys in a dedicated USB stick with keepass?

Easily lost, forgotten about, wife/mom/sibling throws it away by mistake etc..

if they can hack your 2fa cant they just change that setting too?

There's something you're not telling us OP. It's impossible to hack an account with 2FA even if you know the password. Do you live with other people? Could it have been your roommate or something like that?

kys

>he doesn't have a dedicated fireproof safe for his crypto stuff

>store 2fa keys online
could be hacked
>store 2fa keys on hard drive
hard drive fails
>write 2fa keys on paper
paper is destroyed, house fire, etc
>store 2fa keys on engraved metal
metalworker knows your keys, keys change, etc
>memorize keys
forget keys, kys autist


any other options?

as i said, assuming you can securely store it

but go ahead store all of your shit online

taint tattoo

Oh, I forgot
>cryptosteel
not enough room to store all my 2fa keys
splendid, now the escorts get my keys

Engrave the metal yourself, dummy.

well than, sell all of it and never look back

Dubious. Why did you keep your coins on the exchange?!

all these dummies storing their crypto on exchanges

>splendid, now the escorts get my keys
If they ask just tell them you were in a concentration camp. Escorts are stupid.

no metal engraving equipment

...

>salt water
>battery

So the only way they could have got on is if they trace this phone to his account and hacked his phone. I would say Hop was probably visiting a RedTube. $30,000 is definitely worth their time.

>he didn't make enough gains to afford a metal workshop