|
Silkroad Online
|
Silkroad Forums
|
Affiliates
|



|
|
View unanswered posts | View active topics
|
Page 1 of 1
|
[ 15 posts ] |
|
Author |
Message |
Trice
|
Post subject: Uh Oh... Spaghettios. [Recent Hack Related Thread] Posted: Tue Nov 27, 2007 10:43 pm |
|
Ex-Staff |
 |
 |
Joined: Jun 2007 Posts: 2364 Location: Everywhere. All the Time... But more specifically, England
|
Welcome to the 6th revolution Server Statistics
(November 27, 2007)
[Silkroad Exploit confirmed]
Yes it's possible to hack with just an Account name. So, there are a group of steps that make possible to change the password of one account with just an Account name. Joymax website is not safe. Is not simple and I will not say how it is. I just know the the bug, I know who find it, but I am not toilet.
carhartt
This morning, I have personaly received an email claiming that the exploit was true. I denied it and claimed he was lying. He requested me to give him an account name, I gave him the account name sexpro the old password was 123456, he changed the password to channel at 11h30AM GMT-5.
Please request Joymax to investigate that account at this time and to figure out how the password was modified if they claim such a thing can't be possible.
I would believe that Joymax will do a rollback on Tibet and probably a few other server depending on where the people are complaining.
Please make sure to ask then to investigate this as soon as possible.
<copied from http://www.rev6.com>

_________________
My stories + songs Story Search: [Story] author Trice Parody Search: [Parody] author Trice Ty cin Sarcasm makes you more attractive to the opposite sex
|
|
Top |
|
 |
Matrixman__
|
Post subject: Posted: Tue Nov 27, 2007 10:46 pm |
|
Active Member |
 |
 |
Joined: Mar 2007 Posts: 773 Location:
|
rollback Olympus, than my friend gets back his account, i havent done much in the last month, so go nuts and do a rollback
_________________ Chinese INT: S/S lvl 80 Fully Farmed<retired> EURO: Wizard/Cleric lvl 56 (Fully Farmed to 80) <retired> Chinese STR: Glavie lvl 71 (93k sp) <retired> Uranus: pure INT lvl 69 <retired>
Done SRO forever!!!
|
|
Top |
|
 |
Crumpets
|
Post subject: Posted: Tue Nov 27, 2007 10:47 pm |
|
Forum Legend |
 |
 |
Joined: Aug 2006 Posts: 7800 Location:
|
Matrixman__ wrote: rollback Olympus, than my friend gets back his account, i havent done much in the last month, so go nuts and do a rollback
Do a rollback on Olympus do one on every server.
Think of the people on Venus.
|
|
Top |
|
 |
Matrixman__
|
Post subject: Posted: Tue Nov 27, 2007 10:47 pm |
|
Active Member |
 |
 |
Joined: Mar 2007 Posts: 773 Location:
|
Nader wrote: if u have a registered email, u cant get hacked, unless they know it, so idk why poeple would be giving thier id's and emails to someone, unless they really trusted them
umm, you can still have ur account stolen, with only the id, they can change ur pw, and also force a new email verification request and voila, ur account is really gone, no chance for getting it back unless you can hack it back
also, if a rollback does happen, do we get silk refunds for that time frame, and ya, sux for Venus, all back to lvl 1 
_________________ Chinese INT: S/S lvl 80 Fully Farmed<retired> EURO: Wizard/Cleric lvl 56 (Fully Farmed to 80) <retired> Chinese STR: Glavie lvl 71 (93k sp) <retired> Uranus: pure INT lvl 69 <retired>
Done SRO forever!!!
Last edited by Matrixman__ on Tue Nov 27, 2007 10:49 pm, edited 1 time in total.
|
|
Top |
|
 |
Nader
|
Post subject: Posted: Tue Nov 27, 2007 10:48 pm |
|
Loyal Member |
 |
 |
Joined: Sep 2007 Posts: 1591 Location:
|
Matrixman__ wrote: Nader wrote: if u have a registered email, u cant get hacked, unless they know it, so idk why poeple would be giving thier id's and emails to someone, unless they really trusted them umm, you can still have ur account stolen, with only the id, they can change ur pw, and also force a new email verification request and voila, ur account is really gone, no chance for getting it back unless you can hack it back
you cant change your pw unless u put in the registered email., and you cant change the email unless u know that pw
_________________

Post #666 was posted on Sun Jan 13, 2008 6:58 am
 Cin ^^
|
|
Top |
|
 |
jay0303
|
Post subject: x Posted: Tue Nov 27, 2007 10:54 pm |
|
Frequent Member |
 |
 |
Joined: Sep 2007 Posts: 1047 Location:
|
they should email the people the time of roll back so few people actually know about it and what if someone found and seal of sun he probably be mad they got to think about that ass well hell i be pissed if i found an sos because i haven't found any in 7 months
|
|
Top |
|
 |
ScZz
|
Post subject: Posted: Tue Nov 27, 2007 11:25 pm |
|
Common Member |
 |
 |
Joined: Mar 2007 Posts: 141 Location: somewhere over the rainbow
|
they have been informed about it and they said it is not their fault (personally heard the live phone conversation with certain GM ) , they will 99% do nothing about it as before.
the exploit is there , they are looking at bug forums on their site and constantly deleting any post related to the subject. they DO NOT WANT to fix it. period.
_________________ Tibet
|
|
Top |
|
 |
Naigasakis_Rebirth
|
Post subject: Posted: Tue Nov 27, 2007 11:32 pm |
|
Valued Member |
 |
 |
Joined: Nov 2007 Posts: 435 Location:
|
The exploit is real and for those of you who have been around for a while it is the same exploit as before. After september joymax started removing security measures to reduce bandwith usage. They unpatched said exploit 2 weeks ago.
So those of you who have that certain program laying around. Your time for cyber-terrorism has returned.
~Naigasaki
[former sinless-fury member]
_________________ "Rebirth of a legend is usually an indication of death for his enemies"
Ign: Kisses
Guild: Arrogance
Union: Arrogance
Servers: Uranus
6x sos found since server opened
Status: Leveling fast: Remaining Arrogant
|
|
Top |
|
 |
StacE
|
Post subject: Posted: Wed Nov 28, 2007 4:17 am |
|
Active Member |
 |
 |
Joined: Aug 2007 Posts: 502 Location:
|
Nader, obviously this is a little more complicated than just changing the password normally....
Seems as though the next few weeks of SRO is going to be risky business x)
_________________ Crusher - 78 Hybrid Int S/S. Anurin - 80 Pure Int Cleric/Bard.
|
|
Top |
|
 |
the_wicked
|
Post subject: Posted: Wed Nov 28, 2007 5:00 am |
|
Veteran Member |
 |
 |
Joined: May 2007 Posts: 3820 Location: Whisperwind [US-PVE]
|
Well, as long as they don't roll back greece.....
seems as if it has nothing to do with keyloggers and such, but just through a known acct name. So if you bought your acct, you're fk'd cause it can be taken back...
thank god i have an extremely random ID 
_________________

|
|
Top |
|
 |
Matrixman__
|
Post subject: Posted: Wed Nov 28, 2007 5:02 am |
|
Active Member |
 |
 |
Joined: Mar 2007 Posts: 773 Location:
|
the_wicked wrote: Well, as long as they don't roll back greece..... seems as if it has nothing to do with keyloggers and such, but just through a known acct name. So if you bought your acct, you're fk'd cause it can be taken back... thank god i have an extremely random ID 
doesnt matter, they use packet sniffers to get ur id, probably through partying, stalling, possibly even walking past you in town, they all might result in you sending ur id to them via the game
_________________ Chinese INT: S/S lvl 80 Fully Farmed<retired> EURO: Wizard/Cleric lvl 56 (Fully Farmed to 80) <retired> Chinese STR: Glavie lvl 71 (93k sp) <retired> Uranus: pure INT lvl 69 <retired>
Done SRO forever!!!
|
|
Top |
|
 |
the_wicked
|
Post subject: Posted: Wed Nov 28, 2007 5:13 am |
|
Veteran Member |
 |
 |
Joined: May 2007 Posts: 3820 Location: Whisperwind [US-PVE]
|
Matrixman__ wrote: the_wicked wrote: Well, as long as they don't roll back greece..... seems as if it has nothing to do with keyloggers and such, but just through a known acct name. So if you bought your acct, you're fk'd cause it can be taken back... thank god i have an extremely random ID  doesnt matter, they use packet sniffers to get ur id, probably through partying, stalling, possibly even walking past you in town, they all might result in you sending ur id to them via the game
shit.
_________________

|
|
Top |
|
 |
|
Page 1 of 1
|
[ 15 posts ] |
|
Who is online |
Users browsing this forum: No registered users and 30 guests |
|
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot post attachments in this forum
|
|