Replying to Avatar SATOSH.EE

A QUICK UPDATE ON WHY SATOSH.EE HAS BEEN IN MAINTENANCE MODE FOR THE PAST 2 WEEKS OR SO:

https://m.primal.net/OCGK.mp4

The video was recorded a few days ago, sorry for the delay in posting it. I wasn't planning to disclose the issue until it has been resolved, but I accidentally pressed the "record video" button instead of just taking a photo while on a hike, and since it was recording I felt I might as well do an update.

The loss itself was not huge, there was 100k sats in the Bitcoin Rewards pool of the Loyalty Program, out of which 81k were withdrawn. The attacker also had to make a legitimate purchase of a 10 USD Satoshee Gift Card first (paid 10.7k sats for it) so the total loss was 70,300 sats + downtime + the stress.

BTW, if you are a grey/black hat hacker and come across any type of vulnerability on the SATOSH.EE website, please contact me at kontext@satosh.ee with the details and you will be reimbursed for disclosing the issue in an ethical manner.

nostr:nprofile1qqsrhrkznzltm0y7hr2arql9errve5g5g5xlmyk79j6k77hezadm77cpr9mhxue69uhhqatjv9mxjerp9ehx7um5wghxcctwvsq3jamnwvaz7tmnv4hxg6t59ehx7umxd3shyefwvdhk6qg5waehxw309ahx7um5wghx77r5wghxgetkp9v9j4 is a penetration tester and I believe offered assistance in the past so might be able to help 🤙

Reply to this note

Please Login to reply.

Discussion

Thanks nostr:npub1fhpw2ux9flhcxyl6xp84996qgnkkcy59zqzjvq9fhpxcx7upymus69ds8n for tagging me into this. nostr:npub1p6y243ek340jtqjr0qnqg2elkw3x5yn08kzhvxxxkejj486mlg9qtnwx3t I can spend some time looking at your website on Thursday this week to see if I can find any security issues if that’s alright. If I find anything I’ll contact you directly!

Thanks for the offer, really appreciate it! The site is in maintenance mode atm but I can give you a temporary admin access either to the main site or the staging site in case I bring the main one back online without some features by that time.

Feel free to contact me directly via email kontext@satosh.ee ✌️

Hey, I’ll DM you now!

Hey, not sure if you received/saw the DM I sent you a couple of days ago, but in any case, Satosh.ee is back online! If you have some time, feel free to have a look and let me know if you find any vulnerabilities. Cheers! 🤠