Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Kirov
I think it's more along the lines of they were looking for particular items. When i got hacked there were a few questionable items left on my account too. They don't seem to be stripping them bare.
lets hope they fix this database leak
Re: People being hacked since the last Server Check.
friends NL got hacked. changed emails to acct + PW + PIC. got hacked a week later 0,0
to top it off theres hackers on the hack-ee's acct smegaing all day in scania "#-# gogogogogo" (locations of the crap they sell uber cheap on their accts)
Re: People being hacked since the last Server Check.
My Bowmaster got hacked between today and last Monday.
Lost my 40 stat 6% dex overall (nothing really)
6% Dex VSS (nothing anymore)
and my perfectly scrolled Unique VIP Bow.
Luckily my good gear was moved to my Mercedes.
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Zelkova
My Bowmaster got hacked between today and last Monday.
Nexon would like to know why you're not taking proper accountability for the safety and security of your account.
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Eos
Nexon would like to know why you're not taking proper accountability for the safety and security of your account.
The password I used on it was 14 characters long, upper and lower. The pic was 10.
I have since upgraded to 60 character passwords with uppers, lowers, digits, and special characters. <<
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Zelkova
The password I used on it was 14 characters long, upper and lower. The pic was 10.
I have since upgraded to 60 character passwords with uppers, lowers, digits, and special characters. <<
Last time you changed your password?
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
SwordStaker
Last time you changed your password?
I know you like to feel safe with frequent password changing, but check out post 1062 above.
Re: People being hacked since the last Server Check.
I see nothing's changed about this so far.
Oh well, back to still not playing MS. :f2:
Re: People being hacked since the last Server Check.
DFRDKF23yQ3cvQE9T7et2q63asffadZaaAAA
Pardon my keysmash but it's how I feel about all this
So even constantly changing password is a no-go? I'm getting really paranoid since last year and I refuse to log off unless I absolutely have to (aka the server crashes and checks). I hate doing this, even though most of my stuff now is untradable..
I have to go off for a few days without my laptop. Would it be better to shut access off via Hotspot Shield or keep it going on like I usually do?
That keysmash btw is practically my passwords now.
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Pink Bean
DFRDKF23yQ3cvQE9T7et2q63asffadZaaAAA
Pardon my keysmash but it's how I feel about all this
So even constantly changing password is a no-go? I'm getting really paranoid since last year and I refuse to log off unless I absolutely have to (aka the server crashes and checks). I hate doing this, even though most of my stuff now is untradable..
I have to go off for a few days without my laptop. Would it be better to shut access off via Hotspot Shield or keep it going on like I usually do?
That keysmash btw is practically my passwords now.
Unfortunately there is no gurranteed protection besides the glitch of the hotspot shield. It's great to have long passwords but it won;t make a difference when the password is written down and stolen.
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Pink Bean
DFRDKF23yQ3cvQE9T7et2q63asffadZaaAAA
Pardon my keysmash but it's how I feel about all this
So even constantly changing password is a no-go? I'm getting really paranoid since last year and I refuse to log off unless I absolutely have to (aka the server crashes and checks). I hate doing this, even though most of my stuff now is untradable..
I have to go off for a few days without my laptop. Would it be better to shut access off via Hotspot Shield or keep it going on like I usually do?
That keysmash btw is practically my passwords now.
Safest thing to do right now is to get yourself autobanned, second best would be to lock the account with the Hotspot Shield method I guess. I've been staying logged in all the time, had 'You have logged on from another location' pop up on the Nexon website three times now, which would indicate somewhere someone has my password (it's been changed every single time) and is trying to get into my account. It feels pretty hopeless, to be honest. I'm on the brink of just giving up.
Re: People being hacked since the last Server Check.
Ok, so i found something very interesting, and could possibly be relevant.
I found a youtube video(probably not allowed to be posted) of a guy.
1. He logged into his account and showed his characters on the character selection screen
2. He returned to world selection, then sent a "Receive" packet
3. upon selecting the same world again, it showed completely different characters(although they were his aswell.)
I tried to replicate this myself.
Logged onto a mule account.
went to world select
Sent the same recv packet.
And lo and behold, all of his characters showed up on my character select instead of mine.
I couldnt log in to any one of them however because it said something about "PIC must be created, please create PIC and try again."
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Blades4hire
Ok, so i found something very interesting, and could possibly be relevant.
I found a youtube video(probably not allowed to be posted) of a guy.
1. He logged into his account and showed his characters on the character selection screen
2. He returned to world selection, then sent a "Receive" packet
3. upon selecting the same world again, it showed completely different characters(although they were his aswell.)
I tried to replicate this myself.
Logged onto a mule account.
went to world select
Sent the same recv packet.
And lo and behold, all of his characters showed up on my character select instead of mine.
I couldnt log in to any one of them however because it said something about "PIC must be created, please create PIC and try again."
That's one I'd hypothesized before, or a variation thereof.
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Blades4hire
Ok, so i found something very interesting, and could possibly be relevant.
I found a youtube video(probably not allowed to be posted) of a guy.
1. He logged into his account and showed his characters on the character selection screen
2. He returned to world selection, then sent a "Receive" packet
3. upon selecting the same world again, it showed completely different characters(although they were his aswell.)
I tried to replicate this myself.
Logged onto a mule account.
went to world select
Sent the same recv packet.
And lo and behold, all of his characters showed up on my character select instead of mine.
I couldnt log in to any one of them however because it said something about "PIC must be created, please create PIC and try again."
From what I understand, he posted the recv packet that he used, and you used the same one, then it showed you his characters? :f6:
If that's the case, you would need to know the appropriate packet for each account you want to hack... and I don't see how one could go about obtaining it without already having the account ID & pass, and then sniffing it...
Correct me if I'm wrong.
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Eos
That's one I'd hypothesized before, or a variation thereof.
Erm what banned him? :f6:
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Leaves
If that's the case, you would need to know the appropriate packet for each account you want to hack... and I don't see how one could go about obtaining it without already having the account ID & pass, and then sniffing it...
Id's aren't random. All you'd need to do is understand how the packet in question related to the account it brought back and extrapolate it to use on other characters by simple incrementation and guesswork. Tedious, but going account by account will eventually strike it rich.
Quote:
Originally Posted by
KhainiWest
Erm what banned him? :f6:
The blatant admission of having packet edited the game?
Re: People being hacked since the last Server Check.
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Zelkova
We are not safe.
I think we all came to that conclusion a while ago. This just goes a hell of a lot closer to affirming it.
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Eos
Id's aren't random. All you'd need to do is understand how the packet in question related to the account it brought back and extrapolate it to use on other characters by simple incrementation and guesswork. Tedious, but going account by account will eventually strike it rich.
Going by that, I would assume that this sort of method would not be very widespread, as it would require a fair amount of technical knowledge to operate. Furthermore, like you said, it would be difficult to target a specific account, and far easier to simply hit random ones.
Since most of the account hackings (or at least the ones we hear about) seem to target big fish, I'd say this packet method isn't the main way people are being hacked.
Either way, I'm quite alarmed that this kind of security hole exists... it's pretty inexcusable for a game of this magnitude. All goes back to the very poorly designed server/client relationship.
Re: People being hacked since the last Server Check.
Quote:
Originally Posted by
Leaves
Going by that, I would assume that this sort of method would not be very widespread, as it would require a fair amount of technical knowledge to operate. Furthermore, like you said, it would be difficult to target a specific account, and far easier to simply hit random ones.
Since most of the account hackings (or at least the ones we hear about) seem to target big fish, I'd say this packet method isn't the main way people are being hacked.
Your logic is absolutely appalling.
Do you understand what a hacker is? Do you somehow not equate the concept of 'hacker' and 'require a fair amount of technical knowledge'? A real hacker is not an idiot.
As to targeting; Are you going to bother robbing every piddly account you hit, or are you going to rob the big ones, and who's going to complain? The guy who misplaced his maple dana or the one who lost 20 trillion? If it were truly "targeted" all the big ones would be hit at once, not spread out over days and weeks as we've seen.