friends NL got hacked. changed emails to acct + PW + PIC. got hacked a week later 0,0
to top it off theres hackers on the hack-ee's acct smegaing all day in scania "#-# gogogogogo" (locations of the crap they sell uber cheap on their accts)
My Bowmaster got hacked between today and last Monday.
Lost my 40 stat 6% dex overall (nothing really)
6% Dex VSS (nothing anymore)
and my perfectly scrolled Unique VIP Bow.
Luckily my good gear was moved to my Mercedes.
I see nothing's changed about this so far.
Oh well, back to still not playing MS.![]()
DFRDKF23yQ3cvQE9T7et2q63asffadZaaAAA
Pardon my keysmash but it's how I feel about all this
So even constantly changing password is a no-go? I'm getting really paranoid since last year and I refuse to log off unless I absolutely have to (aka the server crashes and checks). I hate doing this, even though most of my stuff now is untradable..
I have to go off for a few days without my laptop. Would it be better to shut access off via Hotspot Shield or keep it going on like I usually do?
That keysmash btw is practically my passwords now.
Safest thing to do right now is to get yourself autobanned, second best would be to lock the account with the Hotspot Shield method I guess. I've been staying logged in all the time, had 'You have logged on from another location' pop up on the Nexon website three times now, which would indicate somewhere someone has my password (it's been changed every single time) and is trying to get into my account. It feels pretty hopeless, to be honest. I'm on the brink of just giving up.
Ok, so i found something very interesting, and could possibly be relevant.
I found a youtube video(probably not allowed to be posted) of a guy.
1. He logged into his account and showed his characters on the character selection screen
2. He returned to world selection, then sent a "Receive" packet
3. upon selecting the same world again, it showed completely different characters(although they were his aswell.)
I tried to replicate this myself.
Logged onto a mule account.
went to world select
Sent the same recv packet.
And lo and behold, all of his characters showed up on my character select instead of mine.
I couldnt log in to any one of them however because it said something about "PIC must be created, please create PIC and try again."
From what I understand, he posted the recv packet that he used, and you used the same one, then it showed you his characters?
If that's the case, you would need to know the appropriate packet for each account you want to hack... and I don't see how one could go about obtaining it without already having the account ID & pass, and then sniffing it...
Correct me if I'm wrong.
Id's aren't random. All you'd need to do is understand how the packet in question related to the account it brought back and extrapolate it to use on other characters by simple incrementation and guesswork. Tedious, but going account by account will eventually strike it rich.
The blatant admission of having packet edited the game?
We are not safe.
Going by that, I would assume that this sort of method would not be very widespread, as it would require a fair amount of technical knowledge to operate. Furthermore, like you said, it would be difficult to target a specific account, and far easier to simply hit random ones.
Since most of the account hackings (or at least the ones we hear about) seem to target big fish, I'd say this packet method isn't the main way people are being hacked.
Either way, I'm quite alarmed that this kind of security hole exists... it's pretty inexcusable for a game of this magnitude. All goes back to the very poorly designed server/client relationship.
Your logic is absolutely appalling.
Do you understand what a hacker is? Do you somehow not equate the concept of 'hacker' and 'require a fair amount of technical knowledge'? A real hacker is not an idiot.
As to targeting; Are you going to bother robbing every piddly account you hit, or are you going to rob the big ones, and who's going to complain? The guy who misplaced his maple dana or the one who lost 20 trillion? If it were truly "targeted" all the big ones would be hit at once, not spread out over days and weeks as we've seen.
|
Bookmarks