Hacker Timesnew | past | comments | ask | show | jobs | submitlogin

In the document they released they made it clear that the server had been located and compromised. An image of the server from July 2013 was part of the evidence in the indictment.

While I hope a dead man switched was flipped it doesn't look good for the integrity of the site. Hopefully everyone involved was smart enough to encrypt.



I have not read it yet, but from what others have quoted, it looks like a disk image was made and handed over in July. Nothing else.

The disk image would of course contain the heavily encrypted data of SR (wallets, transactions, messages).

So unless the private key was on the server right next to the public key (AKA the Linode Incident), or the site did not encrypt that data (which goes against what we have seen so far), the disk image would not compromise that much.


Reading it, they have some pretty precise metrics on user accounts, and insights into his messages, so I'm going with "it was all unencrypted".


Messages between buyers and sellers are generally encrypted end to end using PGP by the users so that information, which includes shipping addresses, is likely safe.


Depends on where you live. Over here in Holland (were drugs are less of an issue), most of the messages are not encrypted.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: