Jump to content

>
Viewing Profile

IBNobody

Member Since 16 Nov 2006
Offline Last Active Today, 03:00 PM

Topics I've Started

Diablo 3 Accounts Being Hacked

21 May 2012 - 06:56 PM

UPDATE 2:

Blizzard

From Bashiok:


Quote

We've been taking the situation extremely seriously from the start, and have done everything possible to verify how and in what circumstances these compromises are occurring. Despite the claims and theories being made, we have yet to find any situations in which a person's account was not compromised through traditional means of someone else logging into their account through the use of their password. While the authenticator isn't a 100% guarantee of account security, we have yet to investigate a compromise report in which an authenticator was attached beforehand.

If your account has been hacked, please view the previous post for information on contacting our support department.


http://us.battle.net...846?page=29#571

----------------------------------

Apparently, there is a wave of account hacks going around for Diablo 3. Thieves are taking control of characters, looting all equipment, and stealing all their gold. Account stealing is old news with WoW, but it appears that there is more going on than just stolen passwords. Some are saying that it may be a session ID hack or a server-side hack.

Hacked users log in to find their items looted and mysterious entries on their recently played list.
Warning! Spoiler inside. 


Here are a few examples of game reporters getting hacked.

http://www.eurogamer...nd-items-stolen
http://www.examiner....diablo-3-hacked

Quote

This reporter, after having her own account with authenticator hacked, firmly believes this is a serious security breach on Blizzard’s side, though they either do not want to admit it, or are still unaware of the problem. Many who have had their account on Diablo 3 hacked were logged in at the time of the hack and support staff tells them there was no evidence of their account being hacked. That indicates there is an exploit in the system being taken advantage of.


Here's a link to a massive thread on Blizzard's website:
http://us.battle.net...49008518?page=1

People are reporting that they've been hacked even though they have an authenticator and a secure password.
People are reporting that they were hacked even though they only played single-player.

Here's some theorycraft on Session ID Theft.

http://us.battle.net...8518?page=8#156

Quote

You make a credential handshake once in the entire session. This happens at the time of login and this is what gets logged (IPs, account IDs, etc.).

At this point only session identifiers get transferred back and forth for each transaction. A transaction is whenever the state on your account changes. This could be anything from making an AH purchase to picking up some uber sword, or completing a quest, etc..

If I steal your session identifier and send that instead of mine, then I now have access to your account and I completely bypassed the need to login. This could happen in real time. It's possible Blizzard made the system spaz out when it detects multiple detections from the same account ID, so it keeps the most recent one logged in and kicks the old one.

The tools to do this might have also allowed the malicious user to change credentials on the fly. The game client assumes it's not hacked and the session is legit, so it makes the changes live.


NOTE: I'm not a security expert. I have not had my account hacked.

8-Bit Google Maps for NES

31 March 2012 - 10:03 PM

http://maps.google.com/

For April Fools, Google has released an overlay for Google Maps that renders everything in Dragon Quest NES graphics.

Check out their promo video, featuring a Google Maps Famicom cart and DQ music!

http://www.youtube.com/googlemaps


Classic Controller - Too Late to Buy?

27 February 2012 - 03:59 PM

I've had my Wii since launch, but I never bought a classic controller. I've been able to make-do with a Wavebird for GC/Emulators, and I've been extremely satisfied with it.

I finished Xenoblade with the standard Wiimote/Nunchuck. I was on the cusp of buying a classic controller then, but I figured that Xenoblade would be the last game I'd play on the Wii that supported the classic controller. The Last Story came out, and now I'm re-evaluating my decision. With TLS and possibly Pandora ahead of me, should I fork over the $15-$20 and buy a classic? Or do you think that it's too late in the Wii's lifecycle for me to get much use out of the classic?

Money isn't a problem, but I don't like buying one-off controllers that I use infrequently.

X-COM: Enemy Unknown Remake by Firaxis for PC/X360/PS3

06 January 2012 - 03:55 PM

Quote

Today we're proud to announce that Firaxis Games is developing XCOM: Enemy Unknown, an action strategy game releasing this fall. Long-time XCOM fans will instantly recognize XCOM: Enemy Unknown's gameplay, which has both deep strategic elements and tactical combat. Players are put in control of a secret paramilitary organization known as XCOM, and as commander, defend against a terrifying global invasion of aliens. Success hinges on resource management, technology advancements, and overseeing both combat strategies and securing victories with superior individual unit tactics.

Excited? Good - so are we - and starting today, you'll be able to find out more about XCOM: Enemy Unknown by grabbing a copy of Game Informer Magazine (which is chock full of new info, including a first look at four alien enemy types, combat strategy and tactics, the new base setup, and tons of images - including 20 screenshots!)


http://www.firaxis.c...l.php?gameid=81

Finally, a qualified studio has picked up the rights to do a proper X-COM remake. They've yet to say that it's turn-based, though, or if it will have a Blaster Launcher. This is a separate project from the "XCOM FPS".

iPhone 4S on Display Tells 12-Year-Old to STFU

30 December 2011 - 03:56 PM

Quote

Charlie Le Quesne was trying out the iPhone 4S at a Tesco store in Coventry when it told him: "Shut the f*** up, you ugly t***."
The boy had been using the phone's Siri system – which answers spoken questions – and had asked it: "How many people are there in the world?"


Quote

The Siri system addresses the phone's user by name – using information entered in its contact system.
But someone had entered the obscene seven-word phrase as the user's name, so the phone blurted it out when it answered a question.


Source: http://www.telegraph...p-in-Tesco.html

I admit to a misspent youth. Had the iPhone 4S come out when I was a teen, I'd be reprogramming every display model in sight.