GoFuckYourself.com - Adult Webmaster Forum

GoFuckYourself.com - Adult Webmaster Forum (https://gfy.com/index.php)
-   Fucking Around & Business Discussion (https://gfy.com/forumdisplay.php?f=26)
-   -   Exclusive for GFY'rs: Wishlist Granted (mostly) from CoinsBill Bitcoin Processing (https://gfy.com/showthread.php?t=1172644)

AdultKing 08-25-2015 10:09 AM

For anyone who wants to understand why bobr is making a big mistake in his examples simply type the following into your browser address bar.

Code:

http://api.stripe.com
You will see the session automatically turns from a port 80 http session to a port 443 https session. In other words it defaults to SSL meaning communication to and from the API is encrypted.

Now do the same on his API

Code:

http://www.coinsbill.com/api/invoice/
The session stays on port 80 as HTTP in plain text over the Internet.

No single transaction made on his platform is secure.

Worse still - and I'm not going to post how this can be done for obvious reasons - his entire system is exposed because he has an XSS vulnerability that took me about 5 minutes to work out.

(disclaimer for tech heads: ssl & http can go over any port but in this case 80 & 443 are the ones that apply here)

bobr 08-28-2015 07:16 AM

CoinsBill now has dramatically dropped it's Fees to 0.19% + $0.29 per successful transaction.

For Current Merchants at CoinsBill, the New Low Fees will be adjusted from Today, the August 28, 2015 per successful transaction.

Pricing still is 0 USD per / month. $0 Setup Fees.

AdultKing 08-28-2015 09:22 AM

Quote:

Originally Posted by bobr (Post 20563564)
CoinsBill now has dramatically dropped it's Fees to 0.19% + $0.29 per successful transaction.

For Current Merchants at CoinsBill, the New Low Fees will be adjusted from Today, the August 28, 2015 per successful transaction.

Pricing still is 0 USD per / month. $0 Setup Fees.

But it's still insecure.

Anyone using your platform, especially in the wake of the Ashley Madison hack, might as well paste their customer's details in 20 foot high letters with fireworks and dancing girls.

Itchy 08-28-2015 01:37 PM

Quote:

Originally Posted by Struggle4Bucks (Post 20560406)
https://38.media.tumblr.com/323fe47f...vzrko1_500.gif

"We are launching!"

"are you sure?"

"no but we are launching anyway"

"That's strange we are not taking off"

"someone is kicking us back"

"you should not have forgot to take the fucking SSL with you"

"What's SSL"?

:1orglaugh:1orglaugh

C H R I S 08-28-2015 02:03 PM

May I suggest getting a large sponsorship at one of the upcoming tradeshows in europe, then buy lots of bro drinks.

Should solve all the troubles and questions.

AdultKing 08-28-2015 02:12 PM

Quote:

Originally Posted by C H R I S (Post 20564030)
May I suggest getting a large sponsorship at one of the upcoming tradeshows in europe, then buy lots of bro drinks.

Should solve all the troubles and questions.

Great idea, except that he can't even afford an SSL certificate. :1orglaugh

bobr 01-20-2016 05:49 AM

The SSL has been setup long time ago.

bobr 01-20-2016 05:50 AM

We wish you a happy new year 2016, good health and success with bitcoin payments. With the start of 2016, tons of new features in place, we wanted show you new tools.

Brand New Developer Docs
CoinsBill API Reference

New Integrations
Integrations | CoinsBill


Lowest pricing. Transaction Successful charge of 0.19% + $0.29.

CoinsBill at the moment is the only Bitcoin Payment Service that caters to truly global merchant and sellers from all over the world, including the smallest countries. We accept all industries as well!

CoinsBill - Join the Digital Currency | CoinsBill

Ready to get started?

OldJeff 01-20-2016 07:16 AM

You came back for MORE ??


All times are GMT -7. The time now is 07:03 PM.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
©2000-, AI Media Network Inc123