Regarding the recent rev6 hacking exploit
- SuicideGrl
- Retired Admin
- Posts: 8004
- Joined: Fri Jan 27, 2006 4:17 pm
- Location: World of Warcraft
Regarding the recent rev6 hacking exploit
Greetings SRFers.
As we all know, the recent discovery of a MASSIVE security flaw in JM's new website has caused countless accounts to be stolen in the past several days/weeks. We probably all know someone who was affected by it in one way or another.
In the past few days, there has been a flurry of discussion on this forum about this exploit, with many of our users claming that have hacked or were planning to hack accounts, whether to reclaim what was theirs or to steal others' accounts.
The rules of this forum clearly state that "hacking" (which has developed into a catch-all term for stealing accounts) is prohibited here, regardless of the reason behind it. If you choose to exploit JM's security and voilate their ToS, it is a risk you take on your OWN head, and SRF cannot and will not be held responsible for any punitive action that Joymax takes against you or your characters and accounts. SRF in no way endorses nor approves of the exploiting of security faults to gain access to accounts.
Hopefully Joymax takes from this incident a cue to tighten up their security and do a better job of protecting their users. Thank you for your patience and understanding during this turbulent time in the SRO and SRF communities.
-SG
As we all know, the recent discovery of a MASSIVE security flaw in JM's new website has caused countless accounts to be stolen in the past several days/weeks. We probably all know someone who was affected by it in one way or another.
In the past few days, there has been a flurry of discussion on this forum about this exploit, with many of our users claming that have hacked or were planning to hack accounts, whether to reclaim what was theirs or to steal others' accounts.
The rules of this forum clearly state that "hacking" (which has developed into a catch-all term for stealing accounts) is prohibited here, regardless of the reason behind it. If you choose to exploit JM's security and voilate their ToS, it is a risk you take on your OWN head, and SRF cannot and will not be held responsible for any punitive action that Joymax takes against you or your characters and accounts. SRF in no way endorses nor approves of the exploiting of security faults to gain access to accounts.
Hopefully Joymax takes from this incident a cue to tighten up their security and do a better job of protecting their users. Thank you for your patience and understanding during this turbulent time in the SRO and SRF communities.
-SG

Thx IceCrash for my awesome sig :)
SRF Name Change Policy
Having trouble accessing SRF?
dom wrote:He's from Jersey. Close enough.RuYi wrote:Are you from outer space or something?
- _Shinigami_
- Advanced Member
- Posts: 2191
- Joined: Tue May 29, 2007 9:25 pm
- Quick Reply: Yes
- Location: Babel
- Spanktastik
- Active Member
- Posts: 689
- Joined: Fri Feb 02, 2007 9:01 pm
- Quick Reply: Yes
- Location: Xian
_Shinigami_ wrote:missed 3 days of silkroad and this happens
Better than logging on, going to town, and becoming a target to some hacker. Was better to stay on the D/L through that whole thing. ^^
Edit:
Ps. My irl friend is a SuicideGirl <3 Shes hawt.
Last edited by Spanktastik on Thu Nov 29, 2007 9:28 pm, edited 1 time in total.

Forever an Avalonian.
- Spanktastik
- Active Member
- Posts: 689
- Joined: Fri Feb 02, 2007 9:01 pm
- Quick Reply: Yes
- Location: Xian
-
cin
sama98b wrote:Until the security hole was patched no topics were closed or locked on this forum from the so called hackers, wondering why ...
we cleaned out as many as possible.
all the topics that had tips to hacking in them were removed or edited.
some of us tried talking sense into the members but got completely ignored
and contradicted by them. it was when the one of the admins got online that
we got a clear answer to what to do with the topics.
My god. Reading the announcement joymax is refusing to take responsibility. WTF?! They have a security flaw that allowed you to use their forums to get any user login you wanted. Then a few months later they have another flaw that allows you to use any login without it's password to change the password. And somehow it was the users fault? BS joymax. Total BS.
- Grimjaw
- Elite Member
- Posts: 5136
- Joined: Thu Nov 30, 2006 6:17 pm
- Quick Reply: Yes
- Location: Final Fantasy Versus 13.
ping_lo wrote:My god. Reading the announcement joymax is refusing to take responsibility. WTF?! They have a security flaw that allowed you to use their forums to get any user login you wanted. Then a few months later they have another flaw that allows you to use any login without it's password to change the password. And somehow it was the users fault? BS joymax. Total BS.
Inconceivable i know,they totally refuse to give a damn,and completely neglect the necessity of even the slightest form of apology.
Major Fail right there.
- hemagoku
- Addicted Member
- Posts: 2720
- Joined: Sun Apr 29, 2007 11:42 pm
- Quick Reply: Yes
- Location: Artist Corner
they hack what they canWNxMegax wrote:What do Hackers hack your character or your account with money in it or both?
check my dA : http://hemagoku.deviantart.com/ 
- DietSunkist
- Common Member
- Posts: 103
- Joined: Mon Aug 20, 2007 2:36 pm
Thats why I quit...I better log and and see if my stuffs still there XD
Joymax is really lacking as a company, I have moved on to World of Warcraft and I never looked back.
Joymax is really lacking as a company, I have moved on to World of Warcraft and I never looked back.
Level 80....quit.
Playing World of Warcraft now.....such a better game, it really is amazing how lacking SRO is once you venture out XD
Playing World of Warcraft now.....such a better game, it really is amazing how lacking SRO is once you venture out XD
What Can I say
I was probably the first to be hacked in Olympus with this flaw, back in October right b4 GNGWC semi s in Cal. I flushed out the hacker by giving him time to think he got away with it. Guess what, I was accused by most you in forum of boting, visiting suspect websites, giving id away to frnds., etc etc. I mentioned in this forum back in October that there was an exploit, and yes the culprits have been located thru IP addresses. Guys, this is something very serious. DONT DO IT! I think you're all jumping the gun in pressumng JM will do nothing. Obviously for me, being the first hacked with this flaw, Im screwed, roll back wont help me. For recent, hacked accounts you maybe saved. JM will come thru, I just hope that they dont allow access to their programs to outside Co's (this is the only way this can happen as it did to Microsoft). JM is going to patch in order to ensure the safety and respect to its members that we deserve...Good luck, don't log into game until its fixed, you're at risk.
BTW
That its not the only exploit in the game.. You can actually send packets thru a game exploit, directly from the game from a character (the hacker) to the character you want to hack. This packet goes thru firewall as SRO is authorize by your firewall to internet access. The packet is hidden as a SRO file, so your Comp. uploads it, sends it back thru game to hacker, with all your login and PW info (yes ouch!!) So if you have the nice pixel stuff (SUN ONLY), you're going to be hacked. I started to Global this info in game, and GM (yes sometimes they're there) told me (yes in pink letters) to stop...The problems is being worked on and once its fixed every one thats been affected (and they know who is, and who is lying), will be compensated, in one way or another. So dont go out now and start pretending you're hacked, half the problem is fixed...Wish them well, and either quit playing or be patient, I'm waiting, iM A NOOB IN ANOTHER SERVER ROFL...peace
- sloweredmangyang
- Active Member
- Posts: 605
- Joined: Wed Jul 19, 2006 12:12 am
- Quick Reply: Yes
- Location: alps
- MoneymakerR
- Common Member
- Posts: 102
- Joined: Tue Sep 18, 2007 3:34 pm
- Quick Reply: Yes
- Location: Artist Corner
Re: BTW
Blasjr wrote:That its not the only exploit in the game.. You can actually send packets thru a game exploit, directly from the game from a character (the hacker) to the character you want to hack. This packet goes thru firewall as SRO is authorize by your firewall to internet access. The packet is hidden as a SRO file, so your Comp. uploads it, sends it back thru game to hacker, with all your login and PW info (yes ouch!!) So if you have the nice pixel stuff (SUN ONLY), you're going to be hacked. I started to Global this info in game, and GM (yes sometimes they're there) told me (yes in pink letters) to stop...The problems is being worked on and once its fixed every one thats been affected (and they know who is, and who is lying), will be compensated, in one way or another. So dont go out now and start pretending you're hacked, half the problem is fixed...Wish them well, and either quit playing or be patient, I'm waiting, iM A NOOB IN ANOTHER SERVER ROFL...peace
Your optimism is refreshing but misplaced. Joymax will do naught. World keep on turning game keep on rotting.
:((((((((((((((((((((((((((((((((((((((((((((((
i can't believe it i got hacked again
this time they turned me into murderer and i lost nearly all my prot gear as well as my shield what's the point this game has cost a fortune in real money for premium and joymax do nothing, six comendations for hacking security phawwwwwwww yeah right i quit and i will be keeping my money sick of these stupid hackers and there jealousy keep the game i'm outa here good luck to you all hope you can keep your accounts clear of these people 
ign, PLUG
build, str x bow
lvl, 45
wolf lvl 40
build, str x bow
lvl, 45
wolf lvl 40
- AngloKnight
- Loyal Member
- Posts: 1504
- Joined: Sat Jul 21, 2007 12:37 pm
- Quick Reply: Yes
- Location: Venus
:((
i don't want to quit but i'm afraid i can't afford to rebuild my prot set and weap/shield anymore
no gold now, gutted actually oh wellnever mind it's been great mostly friends made all over the world pity it came to this but joymax do nothing so why should i keep giving them my money 
ign, PLUG
build, str x bow
lvl, 45
wolf lvl 40
build, str x bow
lvl, 45
wolf lvl 40
- AngloKnight
- Loyal Member
- Posts: 1504
- Joined: Sat Jul 21, 2007 12:37 pm
- Quick Reply: Yes
- Location: Venus
-
Spyder25000
- Hi, I'm New Here
- Posts: 3
- Joined: Fri Mar 23, 2007 10:27 pm
FFS , rev6 didnt not event this problem many other sites/fourms
Rev6 is the reson JoyMax fixed it, THE owner of the site contacted joymax and talked about the explooit
So dont go balaming Rev6 just because it was famous site for its serverstats
BLame (sites like) gamerplanet not rev6
and can i point out that GZP is spreading Bots, cracked bots which is breaching 2 compays policys, the bot company and JoyMax
(i got to much time on my hand)
Rev6 is the reson JoyMax fixed it, THE owner of the site contacted joymax and talked about the explooit
So dont go balaming Rev6 just because it was famous site for its serverstats
BLame (sites like) gamerplanet not rev6
and can i point out that GZP is spreading Bots, cracked bots which is breaching 2 compays policys, the bot company and JoyMax
(i got to much time on my hand)
Spyder NICE BUT NO CIGAR
Sounds like you have a plan with all nice bot arguments, etc etc., but one mishap, I NEVER BOT, EVER!!! I was the first one to be hacked back in October 13/14, stolen everything thru JM mainsite. So there...And I've I stated in other Posts, make a mule account no one knows, transfer your shit to it b4 you log off. Hackers still sending packets thru Game Guard, Game is not safe, and not sure it will ever be. As long as the're is an exploit, hackers will find it. Live with it or play elsewhere...
Peace
Peace














Avalon | T3DDY | Pure STR Warrior/lock | 8x ***
