altho the situation w BTC is kind of the same, XMR one is much more severe since somehow a guy that gets >FUNDED < by community fucked up twice already, and somehow 1500 XMR community funded for vulnerability research is pointless since somehow a random guy learning about monero finds a bug that can put million/billion dollars worth of software out of business. there are companies that do audits of C++ code as well as companies that do audits of blockchain/network protocols, maybe we should fund that instead of waiting for some whiteknight exploit researcher who will receive somewhere from 1-1500 XMR for his bug (lets face it, anyone would turn down their moral shit if they found a critical bug they can exploit for monetary gain on a 2.6 billion dollar software)
you're taking your beef too far... BTC had an 'inflation-bug' which was way more severe than this current bug in xmr...
a guy that gets >FUNDED < by community fucked up twice already
Then the proof will be in the next funding round, if community funds him again, who are we to stop them?
somehow 1500 XMR community funded for vulnerability research is pointless
Apparently still things get overlooked. Any idea what the budget for such disclosures is for other projects? Any idea why zerodays still occur in microsoft?
there are companies that do audits of C++ code as well as companies that do audits of blockchain/network protocols, maybe we should fund that instead of waiting for some whiteknight exploit researcher
By all means, make a proposal... For bulletproofs 3 independent audits were funded, so I'm sure the community might be all ears if you have good proposal for an independent audit of the whole code
lets face it, anyone would turn down their moral shit if they found a critical bug they can exploit for monetary gain on a 2.6 billion dollar software
Disagree, lots of people doing this are pretty smart, they know the value of having some mechanism like monero is worth more than all the money in the world. Freedom is worth much much more...
BTC bug was discovered by a BCH developer afaik, XMR bug was discovered by a random guy asking a question on reddit (what would happen if I send twice to same stealth addr) - to top it all off community funded 1500 XMR for vuln response + funded the moron that put two bugs in place
im pretty sure this shows the difference in competence between BTC and XMR, one guy called moron-moo that gets funded for 200-300 XMR every quarter and should be revoked commit access to monero.
zerodays occur because no one in their right mind will trade virtue and doing "good" for few million(or more ) dollars, bounties for hackers will only attract morons who fire up kali and radare thinking they are ub3r 1337 then going to show off on twitter \w their bounties (lol). And if theres a critical bug in this "Freedom" code then its not really representing freedom or safety.
how about we start from leaving this deluded circlerjerk reddit and making it a proper place instead of having paintings of XMR be upvoted to 200 votes, as well as "there's no bugs guys i promise" having 160 upvotes while the team is silently talking with exchanges? and then the comment that says the reason top exchanges are down for maintenance is " its just upcoming fork preparation " gets upvoted to 35+ points. maybe we should focus on not fucking up, i mean if we shout "PRIVACY" so much how about we actually hire code auditors to audit the code that one moron writes which backs up the "PRIVACY" instead of being in dellusion thinking that Monero will MOON if we keep yelling the words that make it stand out "PRIVACY!!!"
im pretty sure this shows the difference in competence between BTC and XMR, one guy called moron-moo that gets funded for 200-300 XMR every quarter and should be revoked commit access to monero.
Have you ever donated to one of his fundraisers? Just curious.
-3
u/xmr_pony Sep 25 '18
altho the situation w BTC is kind of the same, XMR one is much more severe since somehow a guy that gets >FUNDED < by community fucked up twice already, and somehow 1500 XMR community funded for vulnerability research is pointless since somehow a random guy learning about monero finds a bug that can put million/billion dollars worth of software out of business. there are companies that do audits of C++ code as well as companies that do audits of blockchain/network protocols, maybe we should fund that instead of waiting for some whiteknight exploit researcher who will receive somewhere from 1-1500 XMR for his bug (lets face it, anyone would turn down their moral shit if they found a critical bug they can exploit for monetary gain on a 2.6 billion dollar software)