Silk Road forums

Discussion => Security => Topic started by: _Bangarang_ on July 22, 2012, 09:26 pm

Title: Vender requested messages be sent in plaintext..
Post by: _Bangarang_ on July 22, 2012, 09:26 pm
Hi all,

Recently messaged a vender to create custom listing ( you know who you are, no need to say his name he is very respected here )
I used his key and mine to create an encrypted message and sent it to him via the messaging system. He replied back asking me to reply next time in plain text. Any ideas why?

Regards,
Bangarang

Title: Re: Vender requested messages be sent in plaintext.. don't understand the logic
Post by: googleyed1 on July 22, 2012, 09:29 pm
because it was not sensitive info?

we vendors have a lot of messages to go through
Title: Re: Vender requested messages be sent in plaintext.. don't understand the logic
Post by: _Bangarang_ on July 22, 2012, 09:31 pm
What information do venders consider sensitive? I would like to be on the same page :)
Title: Re: Vender requested messages be sent in plaintext.. don't understand the logic
Post by: TheTimothy on July 22, 2012, 09:41 pm
What information do venders consider sensitive? I would like to be on the same page :)
Your address for when you make a purchase.
Title: Re: Vender requested messages be sent in plaintext.. don't understand the logic
Post by: Lumps on July 22, 2012, 10:09 pm
Sensitive info is anything that can link communications to you or narrow it down to someone like you.

You never know what kind of information will pin point you. Be vague, talk about business only and anything that gives details on anything about you should be PGPd.
Title: Re: Vender requested messages be sent in plaintext..
Post by: wretched on July 22, 2012, 11:41 pm
I consider a message like

"I have my coins on order at the exchanger. looks like it will be tomorrow before I have them in my account. As soon as the coins are ready, I will be down for a z of blow"

to be a sensitive message. If it were intercepted, it would give an attacker an idea of what kind of BTC transactions to be looking for (by the vendors price on the product), that the exchange is happening today, and that there will be an order placed tomorrow. And while that might not seem like damning evidence, it is evidence none the less.

point is, if your vendor doesn't want to deal with decrypting pgp messages for your/their security, then they probably don't want to go through the hassle of cashing out your bitcoins, so choose another vendor who actually cares about your security as much as the care about theirs.
Title: Re: Vender requested messages be sent in plaintext..
Post by: truenull on July 22, 2012, 11:47 pm
I consider a message like

"I have my coins on order at the exchanger. looks like it will be tomorrow before I have them in my account. As soon as the coins are ready, I will be down for a z of blow"

to be a sensitive message. If it were intercepted, it would give an attacker an idea of what kind of BTC transactions to be looking for (by the vendors price on the product), that the exchange is happening today, and that there will be an order placed tomorrow. And while that might not seem like damning evidence, it is evidence none the less.

point is, if your vendor doesn't want to deal with decrypting pgp messages for your/their security, then they probably don't want to go through the hassle of cashing out your bitcoins, so choose another vendor who actually cares about your security as much as the care about theirs.

Dingdingdingding!

Act as if everything you put into SR is completely public. GPG is critical to security.
Title: Re: Vender requested messages be sent in plaintext..
Post by: mybodymychoice on July 23, 2012, 05:03 pm
only send your address unencrypted. use your key for everything else.

what the fuck is your deal? you're trolling these forums offering no useful information/insight.and with the name u have ur lucky u havent been banned yet. nobody here likely beleives that u really are the DEA so why go around acting like a cockhead? as far as im concerned you're only one step above that eeee/tbbssecurity motherfucker. go smoke a pole somewhere else and fuck off.
Title: Re: Vender requested messages be sent in plaintext..
Post by: pine on July 23, 2012, 06:29 pm
only send your address unencrypted. use your key for everything else.

what the fuck is your deal? you're trolling these forums offering no useful information/insight.and with the name u have ur lucky u havent been banned yet. nobody here likely beleives that u really are the DEA so why go around acting like a cockhead? as far as im concerned you're only one step above that eeee/tbbssecurity motherfucker. go smoke a pole somewhere else and fuck off.

I don't know, I think USAdea is offering a great public service here at SR. If you just look through all this posts and then do the exact opposite of what he says, you've an awesome guide on how to do SR properly.

-- Agent Pine