Hacker News new | ask | show | jobs
by powertower 4639 days ago
I have not read it yet, but from what others have quoted, it looks like a disk image was made and handed over in July. Nothing else.

The disk image would of course contain the heavily encrypted data of SR (wallets, transactions, messages).

So unless the private key was on the server right next to the public key (AKA the Linode Incident), or the site did not encrypt that data (which goes against what we have seen so far), the disk image would not compromise that much.

1 comments

Reading it, they have some pretty precise metrics on user accounts, and insights into his messages, so I'm going with "it was all unencrypted".
Messages between buyers and sellers are generally encrypted end to end using PGP by the users so that information, which includes shipping addresses, is likely safe.
Depends on where you live. Over here in Holland (were drugs are less of an issue), most of the messages are not encrypted.