Hacker Newsnew | past | comments | ask | show | jobs | submit | Cybershambles's commentslogin

"I'm working on something to announce (hopefully) today. Will try to get a PORTAL to everyone that wants/needs one. :)" - thegrugq

https://twitter.com/thegrugq/status/523299858581430272


Let's count the ways this could have been done better. For starters, Let's not spend most of the time lying to people (apart from the straight up amaturish parts of their project), second, start the project by including the costs of security based milestones in the price of admission.

This results in higher costs because people are being altruistic... so let's make the cost $80 starters... $40 for Hardware (There are better mini routers out there for the price). $10 for Shipping. $10 for Software. $10 for Security Audit. $10 for TOR donation, because you're exploiting them for profit (higher pledges to TOR = TOR merch).

The more you sell, the better bulk hardware (increases in RAM/decreases in cost) order you can manage... but for 10,000~ units you'll need somebody with feet on the ground in China to deal with the local team. plus QA and taxes and lawyers and.. ARGGHHHHH

plus, should have an open and detailed platform with a threat model and design documentation before you even start.

Which OS/disto?, which packages/why these packages?, GCsecurity? firewall? administration UX? Update path? Stretch goals?! Feature set? Less is more in this kind of thing...


Hey @kickstarter It's time to kill the @anonabox - @torproject needs to make a statement disowning this project too.

I've got a pile of money and an idea... let's make a mint by stealing peoples ideas.....

"Well, we have enough capital to do anything we want. We could have a new board made in the US with a new layout if we wanted. Its ultimately up to all of you, the backers"

https://www.kickstarter.com/projects/augustgermar/anonabox-a...

It's more than time to boycott this thing.


There are no @ tags on HN.


>I've got a pile of money and an idea... let's make a mint by stealing peoples ideas.....

Rocket seems to have made it their business and it seems to work for them ;)


the bigger problem is they failed to execute, not that they "stole" an idea. if every no-totally-original idea were not allowed to be executed, then we could be still in the bronze age or something.


According to filesharing rules and many people here on HN, you can't "steal" an idea. After all, it's not like a car. The idea is still there to be used by the original owner.

Oh, and I can't forget the other motto in business: "ideas are worthless...execution is everything"


You jest, but its the truth. Your idea is worthless until its in production.


dont start this again over here please


I'm starting to collect articles of merit related to the new attack.

I'll continue to grow the list the more I see/read.

https://cybershambles.com/question/97-the-sslappening-poodle...


I've tried and failed to get seed funding in Australia. There is a Startup culture in SA, but it's mostly PR.

That said, I would love to see a lot more activity in our beautiful country but don't expect any support from the government or business sectors... unless you know somebody ;)


What was your product? Possible to have a look at it?


Hey Microsoft, where can I buy one of these octobrella?



So we're looking at the gmx.com account being legitimately hacked -- but Satoshi had good enough opsec to not leak anything interesting from the account.

The hacker gained access to the gmx.com mailbox - resets all of the third party accounts and still comes out with nothing of value?!!

1) So he has to fake an invoice to gain media buzz? I don't buy it.

2) What's in the outbox?


> but Satoshi had good enough opsec to not leak anything interesting from the account.

Except is St Louis Missouri street address and telephone number.


Could be some scammer buying something and leaving a fake email.


Sad story if this is true. Regardless, I'm not shocked that the gmx was hacked..

I'm shocked nobody at cardreaderfactory.com hasn't leaked the invoice or any of the other third party companies he's likely had direct business with -- If he's just shipping stock to his home. ETA til their customer DB is dumped?


Since this info has posted both here and on Reddit: the name/address is easily recoverable. Address doesn't show up on Google, name doesn't match anybody obvious. Payment type for the FGPA that was ordered was 'cash'. I'd bet this was just a fake order somebody placed, and the company never did an e-mail validation.


So we're looking at the gmx.com account being legitimately hacked -- but Satoshi had good enough opsec to not leak anything interesting from the account.

The hacker gained access to the gmx.com mailbox - resets all of the third party accounts and still comes out with nothing of value?!!

1) So he has to fake an invoice to gain media buzz? I don't buy it.

2) What's in the outbox?


1) I don't think he faked it. I bet he thought it was real, but someone just used Satoshi's email when entering a fake order in 2013, the same way I occasionally use "bob@example.com" when creating a useless account.

2) Apparently real e-mails. He has re-forwarded some from 2011 to the original recipients, who have confirmed.

So possibly there's more of value in that account, but doubtful Satoshi's name/address. The hacker just saw the fake order and thought he got lucky.


Nods. Makes sense.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: