01/17/13

PEDO’s gAtO is Hunting YOU!

gAtO hAs - been meeting some very good people that have the ugly dirty job of going after pedophiles and gATO is sicken that this problem is becoming so big. I like most people hear of these sick wackos and my skin crawls but I am guilty of not doing anything to stop this. In my research into the Tor’s Dark Web I found so much ugly Pedo stuff but I always said to myself this is some else job but it’s not.

All cyber security professionals should work together to find and go after these sick bastards that haunt our children nightmare. When I first saw the “Pedo Bear Wiki” in Tor’s I was in shock at how they do business in plain site thinking that they are safe. This is also a big black eye for everyone because this does not just happen in Tor’s Dark Web but in the clear web were we all do work, and talk to friends. Facebook, Twitter is full of them, you may of added them as friends. In the normal Internet these people thrive and then they go into Tor and people start saying Oh well in Tor it’s all about these perverts. They give Tor a bad name because it works so well to mask you.

Be on Notice pedo’s that gATO has found ways to find you in the Tor-onion network. I can find the IP of your hidden-service website, I can also find your clients if your not careful. I am launching some Tor tools that I am developing that may allow me to find your IP and then your -geo location. I am working on some other offensive cyber tools to go after these Pedo Sites in the clear web and especially in Tor. So the hunt begins pedophiles you have been warned this coming year we will find you and destroy you then give the police a chance to lock you up for life. Yeah your safe in Tor, keep thinking that – gATO hunts for RaTz like yOu.

01/7/13

Happy Birthday Bitcoin -Book Release Jan 9

Happy Birthday Bitcoin – Available NOW-eBook -http://www.amazon.com/dp/B00AYA4SVS

bitcoin_cover_cut_02

Jan 9 new Book release -Digital Virtual Currency and Bitcoins -The Dark Web Financial Markets – Exchanges & Secrets

On this day Bitcoin turns 4 years old. As any 4 year old will tell you this has been a wild ride. From a little know digital currency to today’s acceptance into the legal banks and marketplace this little currency that could has shocked world leaders, stunned banking officials all over the world trading and is today in the $13.5-USD range.

Pierluigi and I (gAtO) first came across this when we were covering Wikileak problems and writing our first book – The Deep Dark Web – the cyber underweb we’re finding this new currency and using it because it was working and had no government ties. Bitcoin has been vilified by most governments but the US -UK and it’s ties to currency transaction systems like Visa, Mastercard, PayPal and others (IMF and SEPA, SWIFT to name a few)  became the shot heard around the cyber world.

On the one hand you have Anonymous and other hacktivist using it to show how it cannot be controlled and the other side is the European Central Bank (ECB) published a report in Nov-2012 about finding a solution to Bitcoins place in (FRB) Fractional Reserve Banking, the cornerstone piece of all banks to create money out of thin air.

Thomas Jefferson said: “I sincerely believe that banking institutions are more dangerous to our liberties than standing armies. The issuing power should be taken from the banks and restores to the people to whom it properly belongs”

Digital virtual communities have exploded in recent years – this phenomenon is enabled by social media and the changing world we live in. In some cases some communities have created their own currency for exchange of goods and services but it has expanded to outside their own circles to provide a new medium of exchange, creating new digital virtual currencies that are changing the world.  Bitcoin-Central is now the first Bitcoin exchange to become a bank with guarantee funds insured up to EU$100,000.

When the ECB published that report it was the white flag of surrender but also assurance that the bankers can still control some of it’s power. Let’s face it FRB is the biggest scam by bankers – as they explain this system it is done to expand the economy by freeing up capital that can be loaned out to other parties. WoW that sound so nice of them to do this favor for us in reality it set’s up the cornerstone or their financial profits from nothing.

FRB is were someone deposits 100 dollars in a bank they are required by FRB laws to keep 10% in the vault but now they can loan out 90% of that deposit because they got the governments (us the tax payers) to insure that $100 deposit in case they make bad loans or to make sure they get their bonus checks. So if you came back to the bank to get your money out and they squandered your money on bad loans or just shoddy business practice -oh well no problems – the government will pay you back with our own tax dollars. In other words they take my tax dollars and pay me back with it and then they increase my taxes so that the bankers can keep doing the same thing over and over again. No responsibility and to think that bankers are look up to by business and in persons to be highly respected and good citizens- right!

This is the biggest scam in history they have no responsibility, no reason to be wise and make good investments because they have politicians in their pockets. You know those people that we voted for that are supposed to represent us the people, no they represent these scum’s the bankers. The funny thing that they have no control of Bitcoins like fiat currency. They cannot just print more money up; Bitcoins are created in a way that revolves around MATH – Yeah most people hate math but this time it works so good that these bankers have tried everything in their power to control Bitcoin and other digital currencies and they cannot; they failed.

I will be the one to first tell you that Bitcoins as they are today will NOT be the answer only 21 million total Bitcoins will ever be created and the world needs a bigger unit to scale this for a worldwide monetary solution. Other digital currencies will still be created because of the Bitcoin experiment; and as the world becomes more digitalized we will see that government or corporate control currency solutions will not be trusted by the world community.

Look at Canada’s attempt at Digital currency MintChip at first it was hailed as a winner the first digital currency backed by a world leader like Canada. But somehow after much fanfare and lots of money spent they awarded the team with a the best solution and hid it from everyone – it went to the back room in the filing cabinet never to be heard again. In the 2 or so years that the Canadian took to develop this system it was convinced (by the global bankers) that this would not work. Canafa caved in to the pressure and MintChip is dead – DOA

Maybe the bankers told them to shelf it, it would setup the premise that other governments could do the same and if they can bypass the current system like SEPA or SWIFT or IMF or the World Bank you see they control the financial system and if they don’t like you or you pissed them off they will not allow your country to function in it. Control of the financial network is how the “evil global bankers” control the toy box.

We hope that our new book will open up doors and minds to the possibilities of digital virtual currency and Bitcoin worldwide.

This book explores the new digital currencies and how they are changing the world. When we were researching -The Deep Dark Web book we saw that some of the criminal elements were using this new currency Bitcoin but we also saw that legit business were also adapting to this new currency. We hope to help you learn what is happening with this new currency we cover -Who uses this currency -What are the financial aspects – Governments, Business, Merchants and Criminals. In all we hope to guide you with some of the questions you have.

This book will be an invaluable resource for cyber security professionals, financial policy-makers, business experts, lawyers, merchants, scholars, and researchers, this book provides a comprehensive research from a International cyber security  perspective, technical, and financial implications of the new digital virtual currencies.

 

keywords- digital currency, bitcoins, bitcoin, buying bitcoin, alternative currency, decentralized currency, e-currency,  cryptoxchange, online currency, money, bit coin, cryptocurrency, crypto-currency, bitcointalk, bitcoin talk, exchange, usd, euro, market, bitcoins, transaction, transfer, credit card, bit coin mining, gpu,  virtual currency, cryptopunk, Digital virtual currency,

12/11/12

Tor Bot-Net – OLD news

gAtO bEeN- writing about Tor and the Bot-nets for a long time. I first saw this on the Tor Hacker boards in Mar of 2012. Some of the boys were asking about IRC Bots in Tor a natural fit. But come on a Zeus Bot-Net is easy as pie to setup in a hidden service. The fun thing is you don’t even need to run Tor on the zombie machine with a simple tor2web and we don’t need any stinking Tor Software to communicate with my C&C. https://otwxbdvje5ttplpv.tor2web.blutmagie.de check out my Tor site  “USCyberLabs.com in Tor” from a Tor2web service like http://torstatus.blutmagie.de

https://https://otwxbdvje5ttplpv.onion USCyberlabs in Tor -onion site

It’s such a big surprise but not really to anyone that plays in Tor like Pierluigi (http://securityaffairs.co/wordpress/  ) and myself but as cyber security people we understand that any technology like Tor will be used by bad actors. The issue I have is why don’t we White Hats use Tor in the same way.

If I have a critical DB for my customers why not send them to Tor to get the information. Why can’t regular business use Tor to do as the bad guys. Shield others from going after my BIG DATA. Store it in Tor and have people get it from Tor -// use Tor2Web // so no excuse that I have to run the Tor software on the client. Come on Business People think TOR and Cyber Security – It’s not that complicated and it’s proven crypto network technology — hide-scada-in-the-tor-network-hiding-in-plain-site

Now if you want to make it even more secure – A Secret Hidden Service in Tor – would make it impossible for anyone but my clients from even having access to my Website – You see with out the Secret Token – You can’t even see my Tor Server….

BitCoin Miners Bot-Nets are real HOT in Tor Land and why not–// I can run my Bitcoin Miner Server on my Tor Box so once again you have no way to find my Server and I can do all my Mining Free and anonymous  in Tor.

BitCoin Miners can even be done when you land on a web Page – YES I can have a Web Page on my site that when you go to it- You are Mining Bitcoins for me – No loading of Software to your computer and as long as you stay on my webPage your Mining for me. I can keep the miner hidden or I can tell you about it. It can be sued  like a Charity- a Bitcoin miner that mines Bitcoins for a cause –/can be setup. But criminals will use anything even Tor to make money.

gAtO will be setting up a WebPage on my site but I will let the users know that they are mining for me while they stay on that page and when they leave they are clean -// no Anti-Virus crap —// So I hope that you keep looking at Tor and solve Real world problems like business BIG DATA in Tor hidden service WebSite –safe and secure — what a concept -Safe and FREE and private legal business in Tor— gAtO OuT

12/9/12

Get a Free Bitcoin-Wallet and Make FREE-BitCoins 123

OG Bitcoin Miner circa 2011 old school

gAtO wAnTeD - to learn from the ground up how to set this up and how to make BTC Bitcoins easy as 123.

1.) Get a wallet! https://blockchain.info/wallet/ Your wallet will be kept online and your password encrypts it. So you can never loose your wallet and it can be transferred to another wallet like one you can install on your computer.

2.) Bitcoin Miner- – Easy Windows/OSX – Download GUIMiner: WINDOWS GUIMiner, or OSX GUIMiner once installed this is your gateway to Bitcoins – you have now two options -

  • a. Bitcoin Mine for a Mining Pool -I’ll give you info below about Mining Pools
  • b. Bitcoin mine as a SOLO miner – this is one way to do it and you can also get transaction fees this way too that as a miner for a pool you usually don’t get any credits for this in Pools.

3.)There are FREE bit coin games and scams for getting FREE Bitcoins – I played with a few but it’s not worth the time.  Get some Free Bitcoins: There are lots of scams but one that pay’s out is- http://www.bitvisitor.com/ Now this one is easy you just watch an add for 5 minutes then you click next – and you will get your Bitcoins.

So there you have it 123 steps to making FREE Bitcoins. Now I left out so many details that I will include in my upcoming book – Digital Virtual Currencies and Bitcoins”- Release Jan 9, 2013, but it fun and pretty easy of you follow these simple steps. As to why and the how let me back up a bit — you can go play with your Bitcoin miner but here is a little background information.

Most Mac’s OSx computers can become a miner real easy and since it’s like on my Mac using the Video Radeon HD 4670 – I’m getting about 15Mhash/s. I checked my CPU, memory and general and I see very little slowdown on my system. I also installed smcFanControl on my system to keep my system cool. So I know at all times how hot my system is running and I can adjust the fans to keep it cool. I run about 98-100 normal on my workday and I seen about 106-108 the highest temperature so far. I see more temp change when I’m in a Flash centric environment. Ok I open up about a dozen apps at a time but I only use one at a time..

Mac-  3.06 Ghz Core 2 Duo ?4 gb 1067 Mhz – ATI Radeon HD 4670-256MB – osX Lion 10.7.5

On a PC Windows machine – my sons system I only get about 4.5 Mg-hash but I only run it once in a while when he’s at school but that baby uses up both GPU on the system to about 80% and I felt the heat but I had no easy way to monitor his system temperature.

Windows System 7- EVGA nForce 680i SLI Motherboard – T1 Version, NVIDIA nForce 680i SLI, Socket 775, ATX, Audio, PCI Express, SLI, Dual Gigabit LAN, S/PDIF, USB 2.0 & Firewire, Serial ATA, RAID

1DhBiBeYD4JNZvim4EefnEoFV2WMFc7e5d- my Bitcoin wallet if you want to send donations for testing. Anyway I hope this easy 123 guide will help you get into the Bitcoin currency. We have more informtion coming in January 9 so stay tuned - gAtO OuT  

BTC-Bitcoin can be converted to – these and many more - Digital Virtual Currencies and Bitcoins”- Release Jan 9, 2013. you can pre-order – .. mEoW

US Dollars - 

Thai Baht - 

China CNY - 

Israel ILS - 

Argentina ARS - 

Brazil BRL - 

Czech Republic Koruna CZK - 

Euro EUR - 

SEPA bank transfer - 

German  Western Union, Moneygram,

ref -

BTC Canada – How 2 page – https://btccan.com/gettingstarted.php

—Bitcoin Miners and how it works – I am using BTC Guild but I want to lay with Slush and other since they are in the top Pools – But maybe a SOLO miner is my calling..ummm mEoW -mEoW

Name Location GH/s[1] Merged Mining[2] Reward Type Transaction fees PPS Fee Reward Fee Protocol Launched Difficulty[3] Forum Website
50BTC Germany 5100 No PPS[4] kept by pool 3% getwork 2011-11-11 1 1 Link
BTC Oxygen EU 1 No PPS kept by pool 0% getwork 1-11-2012 1 1 Link
BitArena Romania 1 No Prop. kept by pool 0% getblocktemplate 2012-09-22 1 1 Link
Bitcash.cz Czech Republic 5 No Prop. kept by pool 0% getwork 2012-09-14 1 1 Link
BitClockers USA/EU 250 NMC PPS kept by pool 8% getwork 2011-05-27 1 1 Link
Bitcoin Mining Pool USA 70 No Prop. kept by pool 0%[5] getwork Unknown 1 1 Link
Slush’s pool (mining.bitcoin.cz) EU/France 2000 NMC Score shared 2% getwork, stratum 2010-11-27 Dynamic 1 Link
Bitcoins.lc EU 60 No Prop. kept by pool 0% getwork 2011-05-27 1 1 Link
Bitparking USA 130 NMC, I0C, IXC, Devcoin PPS kept by pool 2.5% getwork 2012-01-08 Choosable[6] 1 Link
BitMinter Germany 2000 NMC PPLNS shared 0% getwork, getblocktemplate 2011-06-26 1 1 Link
BitPenny USA 4 No CPPSRB 97% shared 3% BlkPrep[7] 2011-02-08 8 1 Link
BTC Canada Canada 2 No PPLNS kept by pool 1.5% getwork 2012-08-08 1 1 Link
BTC Guild USA/EU 2300 NMC PPS kept by pool 5% getwork, stratum 2011-05-09 Choosable[6] 1 Link
BTCMine UK 65 No Score kept by pool 0% getwork 2011-03-11 1 1 Link
btcmp.com Germany 60 No PPS kept by pool 4% getwork 2011-06-28 1 Link
BTCWarp USA 50 No Score kept by pool 0% getwork  ? 1 1 Link
CoinLab Protected Pool USA  ? No PPS kept by pool 2-5% getwork 2012-08-09 1 1 Link
Coinotron Poland 70 No DGM kept by pool 0% getwork 2011-07-06 1 1 Link
DeepBit Germany 4200 No PPS/Prop. kept by pool 10% 3% getwork 2011-02-26 1 1 Link
Eclipse Mining Consortium USA/EU/AU/Asia 1900 NMC DGM/PPS kept by pool 5% 0% getwork, getblocktemplate[7] 2011-06-14 1/Choosable[6]/Dynamic 1 Link
Eligius Germany 300 NMC SMPPS kept by pool 0%[5] getwork, getblocktemplate[7] 2011-04-27 1 1 Link
Horrible Horrendous TT USA 15 No PPS[4] kept by pool 1% getwork 2012-08-29 Choosable[6] 1 Link
Mining Team Reddit (MtRed) USA/EU 650 NMC PPS[4] shared 0% getwork 2011-05-25 1 1 2 Link
MaxBTC USA 220 NMC DGM kept by pool 0% getwork 2012-03-15 1 1 Link
NMCBit USA 20 NMC PPS/Prop. kept by pool 6.6% 3% getwork 2011-08-01 1 1 2 Link
Ozco.in USA/EU/AUS 900 NMC on DGM DGM/PPS shared on DGM 4% 2% Stratum, getwork 2011-06-07 1 1 Link
P2Pool Earth (P2P) 300 Solo Mining[8] PPLNS shared 0%[9] Proprietary[7] 2011-06-17 Choosable[6] 1 Link
pool.itzod.ru Russia 420 No RSMPPS shared 0% getwork, getblocktemplate[7], stratum[7] 2011-08-01 Choosable[6] 1 2 Link
PolMine Poland 160 No SMPPS shared 1% getwork, getblocktemplate 2011-06-13 1 1 Link
Triplemining EU 90 No PPLNS kept by pool 0% [10] getwork, getblocktemplate[7] 2011-06-28 1 1 Link
pool.mkalinin.ru Russia 27 No PPLNS kept by pool 0% getwork 2011-07-20 1 1 Link
alvarez.sfek.kz Kazakhstan 3.7 No PPLNS kept by pool 0% getwork 2012-04-19 1 1 Link

 

  1. Reward types & explanation:
  2. DGM – Double Geometric Method. A hybrid between PPLNS and Geometric reward types that enables to operator to absorb some of the variance risk. Operator receives portion of payout on short rounds and returns it on longer rounds to normalize payments. [1]
  3. Prop. – Proportional. When block is found, the reward is distributed among all workers proportionally to how much shares each of them has found.
  4. PPLNS – Pay Per Last N Shares. Similar to proportional, but instead of looking at the number of shares in the round, instead looks at the last N shares, regardless of round boundaries.
  5. PPS – Pay Per Share. Each submitted share is worth certain amount of BC. Since finding a block requires <current difficulty> shares on average, a PPS method with 0% fee would be 50 BTC divided by <current difficulty>. It is risky for pool operators, hence the fee is highest.
  6. SMPPS – Shared Maximum Pay Per Share. Like Pay Per Share, but never pays more than the pool earns. [2]
  7. ESMPPS – Equalized Shared Maximum Pay Per Share. Like SMPPS, but equalizes payments fairly among all those who are owed. [3]
  8. RSMPPS – Recent Shared Maximum Pay Per Share. Like SMPPS, but system aims to prioritize the most recent miners first. [4]
  9. CPPSRB – Capped Pay Per Share with Recent Backpay. [5]
  10. Score – Score based system: a proportional reward, but weighed by time submitted. Each submitted share is worth more in the function of time t since start of current round. For each share score is updated by: score += exp(t/C). This makes later shares worth much more than earlier shares, thus the miner’s score quickly diminishes when they stop mining on the pool. Rewards are calculated proportionally to scores (and not to shares). (at slush’s pool C=300 seconds, and every hour scores are normalized)

 

 

12/3/12

Bitcoin and Policy Makers

gATO ReAd- that holiday madness spending increased by 35% by smart mobile devices – like phones and Pad devices these new devices are also the target of digital currencies everywhere. Companies see the need to integrate digital currencies no matter what into their revenue stream. Here are a few attempts:

American Express is the first financial giant to enter the Digital Virtual Currency game, it has payed 30-mill for Sometrics – a game money processor gamecoins.com so AE has taken the first steps into Virtual Digital Currency it see’s a future in this new revenue stream and their rewards packages so it’s a fit made in gamer heaven and American Express customer base.

American Express Gamer Digital Virtual Currency

Facebook is also on the fast track to makes it’s Payment business grow it’s Facebook Credits. The requirements for money transmitter licenses vary from state to state but in the global scale Facebook is ready to get it’s digital virtual currency into the Facebook arena.  From FaceBook filings -Payments. We provide an online payments infrastructure that enables Platform developers to receive payments from our users in an easy-to-use, secure, and trusted environment.

Google Bucks stopped short of launching – Google still made the code available- “bitcoinJ” still stand tall in googles codebase  — http://code.google.com/p/bitcoinj/  — .

Moba-coin In Japan DeNA available to players in the Mobage Digital gaming reports second quarter earnings – bringing in 700 million in Japan alone. Moba-coin rose outside Japan to about 30 Million. DeNa reports a 45% year to year 627 million up 38 percent over operational profits. Digital currencies are popping up everywhere local, regional to worldwide. Mastercard is also on the gray area of a deal in Bitcoin with BitInstant.com they are one of the gatekeepers of the Digital Virtual Currency marketplace and into Bitcoins -BTC -BitStamp, -DWolla or Mt.Gox and many more like a simple MoneyPak from Walmart and your in the Bitcoin business it’s that simple..

Bitinstant is one of the leaders in Cash to anything:

MoneyPak From:—  MoneyGram – CVS – Jewel/Osco – Duane Reade – Stater Bros. – Albersons – Walmart -

A Bitcoin WALLET is simple as apple pie – all Bitcoin are numbers/letters you want to send me some Bitcoins – HERE – 1DhBiBeYD4JNZvim4EefnEoFV2WMFc7e5d -  send it to my wallet. Were is my wallet well Online- you can have a wallet on your computer and of course have a paper backup of your primary key. Or you can us a service to keep your wallet but you have it encrypted  and you can have a backup of your wallet to your computer and once again on paper. Since the wallet is only needed to connect to the p2p Bitcoin network well you can get you money anywhere you have a connection and at least your paper key backup. https://blockchain.info/wallet is a good Wallet service and one they have lots of Bitcoin information to boot and yes gAtO stores his wallet here. I trust them but I have a backup.

How a bit coin Transaction Works:

http://occupycorporatism.com/wp-content/uploads/2012/11/06Bitcoin-1338412974774.jpg

Then we hear about Iran and Bitcoins:

Hyperinflation has made Iraian money dollar-less so now they are turning to (DC) Digital Currency Bitcoins. The advantage is that they can be swapped for US currency and kept outside the country. Iran is not the only one – As we see in Syria there Internet closure not only does it stop communication but it’s slowed down money escaping the country into cyberspace. This is another way for a government to stop the Digital Currency from expanding but these are drastic ways that cannot be kept up for long. The Internet will come back and so will the new digital dollars like Bitcoins.

So Iranians are poking holes by using Bitcoins with VPN’s and Tor :No I been checking TorStatus and Yes Syria has no Tor OR at all and Iran has 3-4 open ToR and a few Bad ones. So Tor is not a connection but a new outlet is the Internet in a suitcase used by the U.S during the Arab Spring is the same pokes and peeks that the dissidents are using to get to the outside world. But the fact is that they can get around and register offshore accounts that are protected from the Iranian government or economy. If Iranian keep using Bitcoins when they come out of sanctions and restrictions they are a major Oil country and Bitcoins may be intrenched into their economy. What happens to this currency???

Bitcoin has come out on top of most attempts to stop it but on it’s 4th birthday Jan 9 2013 this 4 year old is ready to pounce the worlds financial markets. Now Belgium-based Society Worldwide International Financial Transfer (SWIFT) is one of the gate-keepers that must be challenged. They serve as an International Financial Law interpreters like it blocks any Iranian bank blacklisted by the EU Union from using it’s International payment system. Do you think SWIFT wants a competition like Bitcoins with just about 0% transaction fees- that cuts to much into it’s base income model. The velocity of transfer is being deleted more and more by new digital currencies Bitcoin is just one of the first to survive.

Yeah I’a a Bitcoin supporter now but it’s still beta ware people, 21 million Bitcoins we need Bitcoin 2.0 for a world market economy maybe google BitcoinJ is the model??? - gAtO oUt 

Virtual Currency

 

System-D

Google Bucks

http://code.google.com/p/bitcoinj/

FaceBook Credits

http://www.americanbanker.com/issues/177_35/facebook-credits-money-transmitter-license-bank-regulation-1046825-1.html

American Express

Sometrics – Game Dollars

http://techcrunch.com/2011/09/20/american-express-buys-virtual-currency-monetization-platform-sometrics-for-30m/

High retail sales expected to drive revenue growth

Canada’s MintChip

BitCoin

Mastercard/Bitcoin

http://www.forbes.com/sites/abegarver/2012/08/24/bitcoin-mastercard-everywhere-you-shouldnt-be/

 

11/20/12

Global Bankers Fear Bitcoin

Global Bankers Fear Bitcoins

gAtO bEeN -reading the European Central Bank report October 2012 “Virtual Currency Schemes” Were they plainly state that they are worried about Bitcoins. Linden dollars or Chinas Q-coin were different but they they scared the “bankers” when they translated to goods and service, the Q-coin was put down by China because they did not want an uncontrolled currency competing for the state coins. let me back up and explain it – gAtO StYlE-

The bottom line is “The increase in the use of virtual money might lead to a decrease in the use of “real” money, thereby also reducing the cash needed to conduct the transactions generated by nominal income  “ the other fear is “  On the one hand, they could have an impact on the velocity of money existing in the economy. On the other, the interaction between virtual currencies and the real economy could also increase if widely used. “ So now we see the big picture. Fear that they will lose income generated by transactions and generating their “nominal income” this means Bonus money-

What fears them even more is virtual currencies could have a substitution effect on central bank money if they become widely accepted. WordPress just add Bitcoins as a payment method and they are the #1 Blog Web-App so now this buts Bitcoins on the international stage not supporting Wikileaks but a legit organization like WordPress. Now we look at another aspect of their report which is another blow they call it – “velocity of money” in other words Bitcoin can and will effect the volume-velocity of moneys that are controlled by “banker”. Fraud concern are of little impact on the bankers but they will shout it out loud that they are worried about the consumer, but there eye are on bonus money…

The Subjective theory of value claims- things become valuable in the economic sense (have exchange value or price) under two conditions:

1) They are useful in satisfying human wants, and are therefore desired.

2) There are not enough of them, or just enough of them, to satisfy demand.

3. Any goods that are in unlimited supply would have no value.

gAtO has been trying to figure out how currency have value and the “Subjective Theory of Value” the part about unlimited supply is the JOKE that the bankers have had on us for centuries. They have an unlimited supply of banknotes – “Print more up in a New York Minute” but hey have convinced us that they are right to control the presses and print all the money they need because “we” need to pay them back their interest.

Interest to you means profit for the bankers, and let’s not forget their fees for anything under the sun that they want to charge you for letting them hold YOUR MONEY. So Bitcoins (virtual currency) are a BIG fear for “evil global bankers” as more respected merchants use Bitcoins the more bankers will have to deal with it. The Keynesian Viewpoint say fractional Reserve Banking with Bitcoins is possible and practical so bankers have no more excuse except that once again their fees will go down and their power will go down so the fear is real.

So expect governments controlled by bankers to fight Bitcoins kicking and screaming but the world is ready for a world wide currency that works and controlled by the people not the bankers - gAtO oUt

http://www.ecb.europa.eu/pub/pdf/other/virtualcurrencyschemes201210en.pdf

http://en.wikipedia.org/wiki/Subjective_theory_of_value

from the report:

In an extreme case, virtual currencies could have a substitution effect on central bank money if they become widely accepted. The increase in the use of virtual money might lead to a decrease in the use of “real” money, thereby also reducing the cash needed to conduct the transactions generated by nominal income. In this regard, a widespread substitution of central bank money by privately issued virtual currency could significantly reduce the size of central banks’ balance sheets, and thus also their ability to influence the short-term interest rates. Central banks would need to look at their existing tools to deal with this risk (for instance, trying to impose minimum reserve requirements on virtual currency schemes).

The substitution effect would also make it more difficult to measure monetary aggregates and, as a consequence, would affect the relationship between the monetary aggregates as measured and inflation, which is used to gauge risks to price stability in the medium to longer term. Lastly, on this second aspect, when virtual money is created outside the realm of the central bank and virtual credit can be extended, this may have implications for the way interest rate decisions by the central bank are transmitted through the economy and the central bank’s control over money and credit developments could become less effective.

The third aspect to examine is the interaction between the virtual currencies and the real economy. Second Life and Bitcoin users are spread around the globe and therefore their impact should also be interpreted globally. However, if a virtual currency scheme was to be focused on one specific country, it could indeed have an impact on the money supply of this country. This is what happened in China with the Chinese virtual currency scheme Q-coin, introduced by the company Tencent, one of the leading telecom operators in the country. QQ is an instant messaging service  rovided by this company that also allows virtual payments to be made with Q-coins. This currency can be purchased by credit card or by using the remaining balance on a prepaid telephone card. The exchange rate is fixed against the renminbi. Originally, this currency was implemented only for the purchase of goods and services provided by Tencent. However, users started using it for person to person (P2P) payments and some merchants also started accepting Q-coins as a means of payment.

In addition, several online games rewarded users with points that could be exchanged against Q-coins and ultimately also against yuan in the black market. The virtual currency had evolved into an illegal money scheme. Chinese authorities saw the amount of Q-coins traded reach several billion yuan in one year, after rising around 20% annually. In June 2009, the Chinese authorities decided to ban this currency for trading in real goods in order to “limit its possible impact on the real financial system”.5 They also provided a definition of a virtual currency and stressed that they would only allowed it to be used for purchasing the virtual goods and services provided by its issuer and not for real goods and services.

Box 3 shows a few examples of innovations based on Bitcoin. Apart from fraud concerns, two possible effects can be expected if these kinds of innovation proliferate and succeed. On the one hand, they could have an impact on the velocity of money existing in the economy. On the other, the interaction between virtual currencies and the real economy could also increase if widely used.

In both cases, there would be a need to monitor these innovations.—

The ECB is the central bank for Europe’s single currency, the euro. The ECB’s main task is to maintain the euro’s purchasing power and thus price stability in the euro area. The euro area comprises the 17 European Union countries that have introduced the euro since 1999.

11/19/12

Money Laundering scenes in -The Digital World

gAtO look - at 2 different Money Laundering scenes in -The Digital Virtual World-

Games:

Farmville, Second Life and World of Warcraft these 3 games have been used by organize crime for money laundering. here are 2 examples —

How2-1- An item in a virtual game world have value in the real world – In China (game sweatshop-and other places) they set up sweat shops for games and get people to play the game. Then they take any magical Item that they find and they pay them off but then take the Item and sell it to other players for big bucks. It’s a a game sweatshop – When they setup shop in small Chinese towns this is an attraction and people flock to free games and computers.  game sweatshopsound’s like not a big deal but they make them play for 20-22 hours a day slave labor for game items…

Mapping out the BitCOin

How2?2 Stolen Credit Cards Launder Money in the Game World: Now we take the same game and show you how criminals use games to pass profits from stolen credit cards.  This is another way that the criminals scam CC. We know Credit Cards (CC) number are stolen every other second in cyberspace so now they take these credit cards and buy virtual Items in these game sites and then sell them to others for clean money. This simple method works they setup an account milk it for a few weeks and then destroy it and move on to the next ID.

DC -Digital Currency – Launder CASH to Bitcoins

So if a CrimeBoss has a lot of cash he can send his men down to-// Walmart, 7/11 or CVS Pharmacy -// and purchase MoneyPak then they can setup accounts online and exchange these MonyPaks to Bitcoins (how about MrBitCoin)- Now once in this world they can be exchanged for goods and service and even converted to Pre-loaded $$ CC (Credit cards) and just spend the new clean money anywhere they want to. Also even if they get busted they get to keep their BitCoins ?WHY? because they forgot the password to their wallets and without the password well the government does not get the money. As MrBitCoin shows below – it’s international so we can now take money from USD and convert it to AUD- RUB- BRL- INR and it goes thru non of the traditional channels. Why doesn’t Law enforcement tackle this in your face transfer of wealth – evil global backers- are keeping and eye on all these affairs..

— If you rob a bank you go to jail – a bank robs you they get a raise — this all may be changing the order of things..

MrBitCoin  – https://www.mrbitcoins.com 

  • Fixed Rate
  • AUD (Cash deposit – Westpack and Commonwealth Bank)
  • USD (Major banks, 7-11, Walmart, CVS)
  • RUB (Qiwi and Cyberplat through BitInstant)
  • BRL (Boleto through BitInstant)
  • INR (Cash deposit – HDFC Bank)

Problems: Bitcoins cannot be traced back to the Owner

Since 9/11, counter-terrorist agencies have  tracked the flow of money to identify transactions that match the profile for money laundering or involve the account of a person suspected of terrorism or with links to a terrorist network. Agencies are empowered to instantly freeze such accounts. With BitCOins this cannot be done – the Wallet is encrypted with a password so unless they are legally forced (or tortured ) to give the passwords – these laws will have to change to adapt to the new Digital Currency (DC) and how things work. The global bankers will have to adapt or their industry will die.

The theory is that, by denying terrorist and criminals groups access to their money, authorities can stop them buying munitions and small arms and paying for suicide bombers. This approach has been highly successful in identifying and dismantling terrorist networks. Now they need to adapt and learn how this new DC works because it cannot be stopped.

A few days ago WordPress (bloggin platform) the 3rd largest Web-App in the world accepted Bitcoins the Bitcoin market responded because now as more and more merchants use Bitcoins they cannot stop the flow. People are free to spend their money and the capitalist love it when people spend money – Come on GOLD is nothing but a ROCK – when your hungry Gold do do a thing folks…

Merchant will use Visa, PayPal BitCoins and they will see the lowest transaction fee’s they seen in years PayPal and Visa charge up to 3% but Bitcoins can be as low as .005% that’s a very small chunk of the profits so  business will like that more. You can’t print any more Bitcoins that is controlled by Math and crypto  – So “eveil global banker” your move next – you can’t say only criminals use Digital currencies legit business use it now – So get ready cause here it comes  - gAtO OuT 

11/14/12

What Are ToR Hidden Service?

gAtO tHiNkInG - anonymity serves different interest for different user groups; To a private citizen it’s privacy, to a business it’s a network security issue. A business needs to keep trade secrets or have IP (knowledge base data-centers), communicate with vendors securely and we all know that business need to keep an eye on there competition – the competition can check your stats

update -11-14-2012 -uscyberlabs.com Tor Hidden Servicehttp://otwxbdvje5ttplpv.onion gAtO built this as a test sandbox and it turned into a honeypot — cool logs stats

(http://www.alexa.com/siteinfo/uscyberlabs.com) and check on how your business is doing, what keywords your using, demographics of users hitting your site—— by the way in the Tor-.onion network a web site/service cannot be monitored unless you want it…

How would a government use a ToR-network I’m asked all the time —

// if I was an (agent/business-person)state actor doing business in China (and other countries too) well I would use a ToR-.onion connection to keep my

business private from a government that is know to snoop a bit on travelers to their country. The fact is governments need anonymity for their security -think about it “What does the CIA Google for?” Maybe they us ToR??? But this is about Hidden services right.

 

What is a hidden service in ToR-.onion network?

SImply put it’s a web site/service, a place in the ToR network were we have a service like:

  • Search Engine
  • Directories
  • web / pop3 email
  • PM Private Messages
  • Drop Box’s
  • Re-mailers
  • Bulletin Boards BBS
  • Image Boards
  • Currency exchange
  • Blog
  • E-Commercce
  • Social Networks
  • Micro-Blog -

Hidden Services are called hidden, because your website’s IP in ToR is hidden- they cannot see the IP of your server — they can’t track you- if they can’t find you how are they gonna hack you???? Sorry I had to say that -((more about that later)). Now how do I keep this secret (my IP) and let you the user use my services. In the normal web if your in uscyberlabs.com your on my site,— my server -you can do a whois and get my IP and geo-location— then you can attack my website with dDoS and other IP attack vectors, you also get my location so you can physically find me- my server/my website – maybe go dumpster diving in the trash and get my company secrets— mAyBe sI – nO,

Well in the ToR-.onion network you the client ask the business website if they can use the websites service / then decide and start a handshake to a rendezvous POINT to meet  —we meet at an OR ((onion relay))-a rendezvous POINT) not at my server/ my IP — so your never ever on the business site/server when your in onionLand, you can’t do a whois and get my IP because we meet at an OR, you cannot find my geo-location…..

We have heard of the killings of Iranians and Syrian rebels being killed in todays news, when an Iranian rebel is fighting for his and his families life if they(the government) finds his IP or the IP of the website he visited // they will hunt that person down and the Iranian police/government will kill the whole family sometimes. So keeping an IP from someone is not an evil act it is an act of privacy for safety on both sides the client and the business.

you need to look at Figure 2 to explains this better:

Now let’s focus on R2 OR the yellow key. That’s the spot were you(your company’s hidden website) and your client meet — I know it’s a sneaky way of doing business but once again if they can’t get to your IP at least that is one attack vector that can’t be used to hack you or ddos you. OK they can still hack you but it’s software then. How it’s all done – the magic —the technical thingy to this is below —/this is just an outline of events of the client /hidden web/service protocol:














I goes something like this –

  • ESTABLISH RENDEZVOUS cell
  • INTRODUCE1
  • INTRODUCE2 cell
  • INTRODUCE ACK cell.
  • INTRODUCE2 cell
  • RENDEZVOUS1 cell
  • sends a RENDEZVOUS2 cell Chat
  • sends a RENDEZVOUS2 cell Blog
  • RENDEZVOUS ESTABLISHED cell

More Geek network kinda stuff::

1. Jun 03 20:50:02.100 [notice] Tor 0.2.1.0-alpha-dev (r14739) opening new log file.

2. Jun 03 20:50:11.151 [notice] We now have enough directory information to build circuits.

3. Jun 03 20:50:12.697 [info] rend_services_introduce(): Giving up on sabotage as intro point for stuptdu2qait65zm.

4. Jun 03 20:50:18.633 [info] rend_service_intro_established(): Received INTRO_ESTABLISHED cell on circuit 1560 for service stuptdu2qait65zm

5. Jun 03 20:51:18.997 [info] upload_service_descriptor(): Sending publish request for hidden service stuptdu2qait65zm

6. Jun 03 20:51:22.878 [info] connection_dir_client_reached_eof(): Uploaded rendezvous descriptor (status 200 (“Service descriptor stored”))

People ask me how can these hidden services be attacked???

It’s all the same as in the surface web you find the software the hidden service is using /// let’s say Worpress (or flatPress) if they use an old version with vulnerabilities then, that site can be hacked by traditional hacking attack vectors— gAtO can’t wait till USCyberLabs.com will have a sandbox in the .onion were we can have a honeypot for people to hack and learn from.  (we need Funding for these project donate please – we will share) gAtO has not tried Backtrack 5 on ToR-.onion network – mAyBe sI -nO – uscyberlabs.com has been hacked a few times already and is consistently fighting bot’s and spammer, it goes on and on.everywhere-.-.-.-

Here are some technologies used in the ToR-.onion network:

update -11-14-2012 -uscyberlabs.com Tor Hidden Service = http://otwxbdvje5ttplpv.onion gAtO built this as a test sandbox and it turned into a honeypot — cool logs stats

TorStatusNet – http://lotjbov3gzzf23hc.onion/   is a microblogging service. It runs the StatusNet microblogging software, version 0.9.9, available under the GNU Affero General Public License.

FlatPress is a blogging engine like -Wordpress blog http://flatpress.org/home/   – http://utup22qsb6ebeejs.onion/ -

Snapp BBS works fine in OnionLand - http://4eiruntyxxbgfv7o.onion/ -

PHP BBS – http://65bgvta7yos3sce5.onion/

Nginx is a free, open-source, high-performance HTTP server and reverse proxy, as well as an IMAP/POP3 proxy server.  – http://ay5kwknh6znfmcbb.onion/torbook/

Anyway I hope this open up the mystery of a hidden service in ToR – it’s just a website, you go to a rendezvous point and do your business — your IP and the business IP are totally secure. No digital breadcrumbs. Now a word to the wise in the ToR-.onion network you have some very tech savvy people and some are very stupid be a critical-cyber user always -gAtO oUt.

11/13/12

Protocol-Level Hidden Server Discovery -WRONG

sOrRy – AROGANT gAtO - Open letter to:zhenling - jluo -wkui - xinwenfu – at seu.edu.cn cs.uvic.ca cs.uml.edu  - I wrote to you and gave you a chace to reply so her it goes for everyone to see that you rigged your lab in real life it does not work like you claim – gATO OuT – may be wrong mAyBe Si -nO 

zhenling@seu.edu.cn
jluo@seu.edu.cn
wkui@cs.uvic.ca
xinwenfu@cs.uml.edu

Protocol-Level Hidden Server Discovery

Since entry onion router is the only node that may know the real IP address of the hidden service— -note [3] The assumption was made in virtually all attacks towards the Tor network. This is reasonable because onion networks routers are set up by volunteers.

WRONG folks — So criminals work in these sterile structured surrounding – following rules and making assumptions that I’m stupid enough to not know how to control ENTRY and EXIT nodes into my Tor Website— COme on Dudes this is not school it’s the real world… otwxbdvje5ttplpv.onion here is my site now find my IP —

WHo am I – Richard Amores – @gAtOmAlO2 – I run http://uscyberlabs.com – I just finished a boot -“ The Deep Dark Web” Amazon New eBook -The Deep Dark Web – http://www.amazon.com/dp/B009VN40DU   Print Book – http://www.amazon.com/The-Deep-Dark-Web-hidden/dp/1480177598 :- I do a we bit of real life research and I disagree — I go thru a proxie and a VPN in EU… before I go into Tor so the chances that you will find my IP just went up a notch or too. But I’m a legit – Security Researcher – imagine if I run Silk Road — making a bunch of Bitcoins a DAY— how many layers do they have—

how about a basic BRIDGE RELAY — and there it goes – u can’t touch this — how about a simple modification of the torrc file with these
HiddenServiceAuthorizeClient AND – HidServAuth
with these few modification the Tor site is hidden unless you have the key (HiddenServiceAuthorizeClient) in your browser/- that was generated to match the HidServAuth)-of the server– I think that your chances of finding my mean ass hidden service ip address —are ZERO…

I like what you’ll did cool analyst and you explained it great – but this puts fear into people – dissidents will maybe not use Tor because of what you guy’s say and maybe they may get caught and killed… It’s not only CRIMINALS — I know that gets grants money — but Tor is used to communicate and it allows – Freedom of Speech in Cyberspace- I’m gonna write something about this and I want to be nice so please explain why — you can say from an educational place of knowledge and allow this – “in the box” thinking that is being hacked everyday because they say— we did everything they told us to do— this is wrong and not true —

If you could get the IP of Silk Road — or better yet – PEDO BEAR the largest PEDO directory in TOR — tell me the IP and I will take it down myself— but don’t come at me saying we are right and every hacker is wrong  — learn please our world is depending on your great minds —

later,
RickA- @gAtOmAlO2 http://uscyberlabs.com

Here is the original paper —http://www.cs.uml.edu/~xinwenfu/paper/HiddenServer.pdf
A recent paper entitled Protocol Level Hidden Server Discovery, by Zhen Ling, Kui Wu, Xinwen Fu and Junzhou Luo.  Paper is starting to be discussed in the Tor community.  From my perspective, it is a nice attack to reveal the IP address of a hidden service.  It would require resources to actually implement effectively, but for Law enforcement trying to shutdown and arrest owners of illegal websites selling drugs, weapons, or child pornography and are hiding behind Tor, it is an option.  Of course that also means the capability to find anyone that might be doing something a government or large entity does not agree with. The paper is here.
This stuff reminds me of a statement a professor said to a class I was in once:  “Guns are not good or bad.  It depends on who is holding the gun and which end is pointed at you.”

11/13/12

CYber Investigation over General Patraeus

CYber Investigation over General Patraeus

gAtO rEaD – NO CRIME committed- that the investigation for the top CIA general was because someone sent an eMail that said” I saw you touching the Generals leg at Dinner -Stop It” Yeah so one lady said to another lady – STOP MESSING WITH MY MAN – Pow – ZAP they get a court order to go thru someones eMail.

So if we take this premise that Judges will sign -COURT ORDERS to search your emails and any other emails that link it because of a jealous lover. It looks to gAtO that they have to much POWER – or the FBI is gonna search everyones emails now – legally. Court Ordered

This should send shock waves thru our industry – everyone is now warned that anyone’s email can be open to LE anytime and just about for any reason. I trusted the system, I trusted the Judges but lack of a crime should of not happened. There was NO CRIME committed the investigation turned out. But it has now taken down the reputation of 2 generals. NO CRIME

Now these are 2 famous generals what chance do mere mortals have that our eMails are going to be court order to investigate why simply because they can now. This shows to me the lack of justice or the erosion of justice that is coming down the cyber pipelines. If this is now a wake up call for security professionals to wake up and smell the coffee. Your email will be next unless we support less government control of our digital rights.

Freedom of Speech in cyberspace is a right not a privilege -gAtO oUt

http://www.cbsnews.com/8301-18563_162-57548694/fbi-role-in-petraeus-investigation-questioned/

mEoW