Guild Wars Forums - GW Guru
 
 

Go Back   Guild Wars Forums - GW Guru > The Inner Circle > The Riverside Inn

Notices

Reply
 
Thread Tools Display Modes
Old May 16, 2008, 11:19 PM // 23:19   #241
Krytan Explorer
 
Join Date: Mar 2006
Guild: EOA
Profession: P/W
Advertisement

Disable Ads
Default

Quote:
Originally Posted by zamial
I am passing this along, this is what I was told. I am not implying this is the cause, or a solution but in my opinion 1 can never be "to safe". I can not confirm this info officially. I know I would be upset if I got hacked, so without further adieu,

The theory is that on the hacked account a character has a quest called Plan B active. (yes, I know there are several plan b quests). Then while in AB the player is booted by the hacker, during the reconnect the hacker intercepts the packets, has your account info and then logs in as you. Then does what he/she does.

Once again, I can not confirm this, but I do trust my source, I believe the info to be at the very least not fabricated by my source. This is a pass it along to help others post.
Sounds like bull, unless the hacker has compromised you'r PC, or the Guild Wars server or the LAN your connected to he can't intercept your packets.

and if he had compromised your PC he wouldn't need to intercept packets.
FeroxC is offline   Reply With Quote
Old May 17, 2008, 12:21 AM // 00:21   #242
Lion's Arch Merchant
 
Join Date: Sep 2006
Location: Travelling around Tyria, Cantha, and Elona
Profession: P/W
Default

Didn't feel like reading through all the posts about accounts being hacked and all, but I do have a question:

When somebody's account was hacked, were the victims already logged on and then got booted like the OP, or did they log in one day to find that their stuff went missing?
Giga_Gaia is offline   Reply With Quote
Old May 17, 2008, 05:42 AM // 05:42   #243
Hell's Protector
 
Jetdoc's Avatar
 
Join Date: Jul 2005
Guild: The Eyes of Texas [BEVO]
Profession: D/A
Default

Quote:
Originally Posted by Giga_Gaia
When somebody's account was hacked, were the victims already logged on and then got booted like the OP, or did they log in one day to find that their stuff went missing?
It's a mix of both, although the majority seems to have been offline when they got fleeced. I'm the only fortunate one (that's posted, at least) that was able to stop the hacker before he could take anything.
Jetdoc is offline   Reply With Quote
Old May 17, 2008, 07:23 AM // 07:23   #244
Ooo, pretty flower
 
Konig Des Todes's Avatar
 
Join Date: Jan 2008
Location: Citadel of the Decayed
Guild: The Archivists' Sanctum [Lore]
Profession: N/
Default

Quote:
Originally Posted by Rahja the Thief
I beg to differ. Good security, being internet savvy, and having the common sense not to play with fire (aka pirating etc) when you don't really know what you are doing is how to help avoid it, or for that matter, COMPLETELY prevent it. That is unless... a super hacker randomly targets you and your Guild Wars account in some government conspiracy, which I have a funny feeling, isn't going to happen.
What I meant was can't be helped that you got hacked, could have prevented the hacking.
Quote:
Originally Posted by Stockholm
LOL, very smart, get perma ban for moving your stuff to other account and the send in a support ticket.

THE LOG at NC-soft would show that (possibly even with a red flag beside it for the transaction)
Who said another account? I said character not account
Thanks for ridiculing a statement that you don't understand.
Konig Des Todes is offline   Reply With Quote
Old May 17, 2008, 04:48 PM // 16:48   #245
Site Contributor
 
zamial's Avatar
 
Join Date: Apr 2006
Location: Usa
Guild: TKC
Profession: N/
Default

Thank you all for the flames, including the Mod. But as I had stated, that was info I was told, that it was not confirmed. I under stand how packets interception works. I was posting it as UNRELIABLE information, come to your on conclusions, but there is really no need to flame someone for trying to help. As I see it That "theory" is just as sound as the rest of the other posts. If anyone was 100% sure of how it was working other than the hacker it would be fixed.
zamial is offline   Reply With Quote
Old May 18, 2008, 07:01 AM // 07:01   #246
Academy Page
 
Join Date: Jul 2006
Location: United States
Guild: Stonewall Of Unity League [SOUL]
Profession: Mo/Rt
Default

I had this happen yesterday, got those same error messages from AB that I've never gotten before.

Luckily I didn't get password invalid message though. I was able to get back in after a couple of tries.

Weird that they'd have the double AB faction points while this is a problem.
BodhiNightwind is offline   Reply With Quote
Old May 19, 2008, 04:39 AM // 04:39   #247
Academy Page
 
Ceylon Tea Cat's Avatar
 
Join Date: Jul 2007
Default

It seems many stragne things occur during AB...
Is it safe to play AB recently? Especially Granz.
I thought my GW.exe crashed once threre. (not disconnection)
Ceylon Tea Cat is offline   Reply With Quote
Old May 19, 2008, 12:38 PM // 12:38   #248
BuD
Krytan Explorer
 
BuD's Avatar
 
Join Date: Mar 2006
Location: Nunya
Profession: E/Mo
Default

I was not in AB when I got hacked, I dont ever do PvP...
BuD is offline   Reply With Quote
Old May 19, 2008, 12:43 PM // 12:43   #249
Lion's Arch Merchant
 
Danax's Avatar
 
Join Date: Jun 2007
Location: Ontario
Profession: R/Mo
Default

Sorry for your loss...those zaishen keys could have sold for 235k lol.

(43 X 5000 = 235000) Assuming they still sell for 5k each
Danax is offline   Reply With Quote
Old May 19, 2008, 02:10 PM // 14:10   #250
Krytan Explorer
 
Nodakim's Avatar
 
Join Date: May 2008
Location: Hrvatska
Profession: N/Me
Default

Quote:
Originally Posted by Jetdoc
/cut

i am not sure if i understande all of this but as much i know "your" account is actualy a account owned by anet(thats why you cant sell it legaly) and any when somebody hacks the account....well you get what i mean....it isnt your account it is from anet and why the hell would you have to report the crime?
Nodakim is offline   Reply With Quote
Old May 19, 2008, 11:09 PM // 23:09   #251
Lion's Arch Merchant
 
Join Date: Jun 2007
Default

Quote:
Originally Posted by HuntMaster Avatar
If you log into the character select screen, then go down to edit account,then change password. you can change the password. Just thought I'd toss that out there.

I suggest making a password using the maximum digits available, long passwords are harder to crack than short ones. Unless ofcourse someone uses a program, in which case we are not safe, we need a comfirmation email.
Does the above work without having to confirm with an email from the email account that you originally registered the game with? I don't have the same email account and would like to be able to change my password. Anyone know if you can get anet - plaync to change the email address for you?
Mac Sidewinder is offline   Reply With Quote
Old May 20, 2008, 12:06 AM // 00:06   #252
Lion's Arch Merchant
 
beregond's Avatar
 
Join Date: Dec 2007
Guild: Paladins of Eternal Truth[POET]
Profession: W/Mo
Default

Quote:
Originally Posted by Inde
I'm not sure anyone's account is protected at this time.
Woohoo, what a comfort!!
beregond is offline   Reply With Quote
Old May 20, 2008, 03:36 AM // 03:36   #253
Frost Gate Guardian
 
Join Date: Jun 2006
Location: nyc
Profession: A/Mo
Default

sorry way to many posts to read but r u sure u got hacked? or you have done something that made you forget what you have done? if i had the skills to hack, i would definetly have the smarts to just transfer over the keys. its stupid to open the chest with your account. this story doesnt make sense
exstoges is offline   Reply With Quote
Old May 20, 2008, 03:39 AM // 03:39   #254
Hell's Protector
 
Jetdoc's Avatar
 
Join Date: Jul 2005
Guild: The Eyes of Texas [BEVO]
Profession: D/A
Default

Quote:
Originally Posted by exstoges
sorry way to many posts to read but r u sure u got hacked? this story doesnt make sense
I think you need to read a bit more to understand what happened...



Quote:
Originally Posted by Nodakim
"your" account is actualy a account owned by anet(thats why you cant sell it legaly)

why the hell would you have to report the crime?
I guess their argument is that the attempted theft of items from one account to another is not a crime...

...but the use of malicious programs to hack into an individual's computer is a crime.

Last edited by Jetdoc; May 20, 2008 at 03:42 AM // 03:42..
Jetdoc is offline   Reply With Quote
Old May 21, 2008, 05:15 PM // 17:15   #255
Krytan Explorer
 
Nodakim's Avatar
 
Join Date: May 2008
Location: Hrvatska
Profession: N/Me
Default

they hacked their account not your computer
Nodakim is offline   Reply With Quote
Old Jun 07, 2008, 07:25 PM // 19:25   #256
Pre-Searing Cadet
 
Aka Devilince's Avatar
 
Join Date: Nov 2006
Location: I would like to know where I live to? o.o;?
Profession: Rt/
Default Murrr

all this seems to me is that A-net is hiding from the fact of doing real work. The Police are'nt going to do shit about a game, I mean really. If I walked up to a police officier and told them I got hacked on my guildwars account all they would do is laugh in my face or put it to the side. I just find it silly that A-net won't take any action to a hacking and look into it instead of leading a person on. I would actually like to see a real representative from A-net post on this, I would really like to have a discussion with one, but it seems they are too busy banning gold sellers and not looking into things that are even more worse then they seem to be. But oh well this is my opinion and my view on the whole thing. I have seen other games take care of their players better then Guild wars has ever done. I still play GW yes, but my hope in A-net as a whole is lacking badly. And I would like to see a real reply from a A-net rep on this forum to clear things up.
Aka Devilince is offline   Reply With Quote
Old Jun 07, 2008, 08:01 PM // 20:01   #257
Ascalonian Squire
 
Rico the Spirited's Avatar
 
Join Date: Jun 2008
Guild: Social Welfare Agency (Special Ops)
Profession: R/
Default An Experiment

Way to go, Jet!

This is concerning, though. I don't know how it would be a vulnerability in the Alliance Battle system.

....Actually, let's find out. Guild Wars was a well-secured program last time I checked, but why not? I'm curious now. Instead of just chewing the fat, let's actually look at the silly thing.

I'm going to run Wireshark, a TCP/IP protocol analyzer, on my local system through Administrative privileges. Wireshark can watch the actual data packets sent back and forth between my computer and the ArenaNet servers. (Take a look: wireshark_login.jpg)

There. Good and healthy. It uses an encryption standard I'm not familiar with (not something that happens every day...) but it's definitely encrypted. Unlike... say... most guild web sites. (Take another look: wireshark_guildsite.jpg)

If you take that as any measure, ArenaNet knows what they're doing. That suggests a problem with local security, not game security: that you need to lock down your own system, not worry about hackers from the outside. It's much more likely that the computer was attacked, and not the game itself.

I propose an infosec sticky. Everyone here should know basic information defense, along the lines of a post made earlier in this thread. (That was a great post.)

And Devilince: If ArenaNet wasn't doing real work, you'd see my Guild Wars login information in plaintext, not ciphertext. So don't think they're just running around giving themselves piggyback rides all day.

~Rico


(...Hey, I know stuff.)
Attached Images
File Type: jpg wireshark_guildsite.jpg (201.9 KB, 36 views)
File Type: jpg wireshark_login.jpg (171.7 KB, 37 views)

Last edited by Rico the Spirited; Jun 07, 2008 at 08:13 PM // 20:13.. Reason: Protecting the innocent.
Rico the Spirited is offline   Reply With Quote
Old Jun 07, 2008, 08:32 PM // 20:32   #258
Krytan Explorer
 
fusa's Avatar
 
Join Date: Mar 2007
Default

Quote:
Originally Posted by Rico the Spirited
Wireshark can watch the actual data packets sent back and forth between my computer and the ArenaNet servers. (Take a look: wireshark_login.jpg)

There. Good and healthy. It uses an encryption standard I'm not familiar with (not something that happens every day...) but it's definitely encrypted.
Members of a well known project to emulate Guild wars were able to decrypt that information. It wouldn't surprise me if thats how people's account information was stolen.
fusa is offline   Reply With Quote
Old Jun 07, 2008, 08:53 PM // 20:53   #259
Ascalonian Squire
 
Rico the Spirited's Avatar
 
Join Date: Jun 2008
Guild: Social Welfare Agency (Special Ops)
Profession: R/
Default

Quote:
Originally Posted by fusa
Members of a well known project to emulate Guild wars were able to decrypt that information. It wouldn't surprise me if thats how people's account information was stolen.
Really? Nice. I'll have to look it up.

My point wasn't that the encryption would be our Savior, though. What I meant was that ArenaNet isn't incompetent, as a good handful of players seem to think. I would still target the client machine first.
Rico the Spirited is offline   Reply With Quote
Old Jun 07, 2008, 10:23 PM // 22:23   #260
Pre-Searing Cadet
 
Aka Devilince's Avatar
 
Join Date: Nov 2006
Location: I would like to know where I live to? o.o;?
Profession: Rt/
Default To say the least

To say the least that is what it seems they are doing. It isn ot only the players responsibility, but it is the companies responsibility to help better with hackings and stuff. What I reado n the first page of what Regina sent to the original poster stated quite well they don't want to handle it. I'am just stating my opinion like I said.
Aka Devilince is offline   Reply With Quote
Reply

Share This Forum!  
 
 
           

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
hacker? possible? the-devl Technician's Corner 6 May 29, 2007 04:04 PM // 16:04
Caught a hacker! Plushie Penguin Off-Topic & the Absurd 15 Aug 07, 2006 07:17 PM // 19:17
Raz Silverwing Off-Topic & the Absurd 24 Nov 18, 2005 10:03 PM // 22:03
MCS Screenshot Exposition 9 Aug 16, 2005 12:30 AM // 00:30


All times are GMT. The time now is 06:23 PM // 18:23.


Powered by: vBulletin
Copyright ©2000 - 2016, Jelsoft Enterprises Ltd.
jQuery(document).ready(checkAds()); function checkAds(){if (document.getElementById('adsense')!=undefined){document.write("_gaq.push(['_trackEvent', 'Adblock', 'Unblocked', 'false',,true]);");}else{document.write("