Page 1 of 1

=/ i got pretty big probleme here..

Posted: Thu May 10, 2007 2:29 am
by keny_paintball
Ok.. my friend got hacked 2 days ago.. he can't change hi's password the hacker still go on his account and try to scamm everybody in his friend list The hacker is english and me and my friend are french but the hacker use a translator for speak french.. so ppl who don't know can't be scammed too so
EVERYBODY on eldrado who know Mahad! if he talk to you don't listen him don't give him anythings and be carefull Mahad its my friend caracther name but he don't go anymore on it but the hacker still go watch out :S

Posted: Thu May 10, 2007 2:37 am
by PureOwnage
Your friend didnt "hacked" so stop using the word hacked. What he did get was owned. He either gave his username and password to a friend or someone who he thought was a friend, and got owned. Or he downloaded some 3rd party software and got a keylogger and got owned. Neither of these are called getting "hacked", so please for the love of all that is SRO stop saying omfg I got hacked, when in reality it should read, "omg i screwed myself because I am an idiot" 8)

Posted: Thu May 10, 2007 2:39 am
by keny_paintball
yo man just shut the hell up if you only have shit to say for the love of sro kill your self

Posted: Thu May 10, 2007 2:39 am
by LadyB
PureOwnage wrote:Your friend didnt "hacked" so stop using the word hacked. What he did get was owned. He either gave his username and password to a friend or someone who he thought was a friend, and got owned. Or he downloaded some 3rd party software and got a keylogger and got owned. Neither of these are called getting "hacked", so please for the love of all that is SRO stop saying omfg I got hacked, when in reality it should read, "omg i screwed myself because I am an idiot" 8)


i hate it when people put it that way. what if you didnt get your info out and someone the next day you end up with nothing or no acc at all

Posted: Thu May 10, 2007 2:39 am
by _.-JaCk-._
i got hacked without keyloggers and 3rd party software. No one knew my login info when this happened. So, am i an idiot too?

Posted: Thu May 10, 2007 2:40 am
by PureOwnage
_.-JaCk-._ wrote:i got hacked without keyloggers and 3rd party software. No one knew my login info when this happened. So, am i an idiot too?


You got socially engineered, not hacked.

Posted: Thu May 10, 2007 2:42 am
by PureOwnage
LadyB wrote:
PureOwnage wrote:Your friend didnt "hacked" so stop using the word hacked. What he did get was owned. He either gave his username and password to a friend or someone who he thought was a friend, and got owned. Or he downloaded some 3rd party software and got a keylogger and got owned. Neither of these are called getting "hacked", so please for the love of all that is SRO stop saying omfg I got hacked, when in reality it should read, "omg i screwed myself because I am an idiot" 8)


i hate it when people put it that way. what if you didnt get your info out and someone the next day you end up with nothing or no acc at all


Its called social engineering, when you get close to someone and dig up information on them, information enough to get their account info. Here for all the people who dont know I'll break it down for you so you can understand:

90% of all sro "hacked" accounts are from 3rd party program w/ keyloggers

5% is idiots who give out their acc info to "friends"

and 4% is social engineering and 1% is actually getting "hacked"

Posted: Thu May 10, 2007 2:45 am
by Blurred
_.-JaCk-._ wrote:i got hacked without keyloggers and 3rd party software. No one knew my login info when this happened. So, am i an idiot too?


yes.

You cant get hacked outta thin air. If people actually did get hacked. The hacker will have access to the database in which all our accounts and personal CC info are stored.

Stop giving out account info to people you "trust".

1% of trust is alot of trust to give.

Posted: Thu May 10, 2007 2:45 am
by _.-JaCk-._
PureOwnage wrote:
_.-JaCk-._ wrote:i got hacked without keyloggers and 3rd party software. No one knew my login info when this happened. So, am i an idiot too?


You got socially engineered, not hacked.


hmmm, maybe i posted in the SRO.net forums when they first went to phpBB. I lead a VERY private life, my real info is really hard to get.

Posted: Thu May 10, 2007 2:48 am
by PureOwnage
_.-JaCk-._ wrote:
PureOwnage wrote:
_.-JaCk-._ wrote:i got hacked without keyloggers and 3rd party software. No one knew my login info when this happened. So, am i an idiot too?


You got socially engineered, not hacked.


hmmm, maybe i posted in the SRO.net forums when they first went to phpBB. I lead a VERY private life, my real info is really hard to get.


If someone hacked the SRO.net database then 1000's of accounts would have been hacked not just yours. I will repeat this so people keep saying zomg JM can have their database haxz0red11!one!!!!!! JM has 3 firewalls up and over 128 byte encryption on their database, you cannot hack it so stfu with the phpBB switcheroo. The only way you can get "hacked" is what I posted in my post with the % statistics.

Posted: Thu May 10, 2007 2:55 am
by _.-JaCk-._
obviously you were not around then...

Posted: Thu May 10, 2007 2:56 am
by PureOwnage
_.-JaCk-._ wrote:obviously you were not around then...

obviously I was because like I said again 1000's of accounts would have been owned. From what i remember only a few got owned.

Posted: Thu May 10, 2007 3:00 am
by LadyB
PureOwnage wrote:
LadyB wrote:
PureOwnage wrote:Your friend didnt "hacked" so stop using the word hacked. What he did get was owned. He either gave his username and password to a friend or someone who he thought was a friend, and got owned. Or he downloaded some 3rd party software and got a keylogger and got owned. Neither of these are called getting "hacked", so please for the love of all that is SRO stop saying omfg I got hacked, when in reality it should read, "omg i screwed myself because I am an idiot" 8)


i hate it when people put it that way. what if you didnt get your info out and someone the next day you end up with nothing or no acc at all


Its called social engineering, when you get close to someone and dig up information on them, information enough to get their account info. Here for all the people who dont know I'll break it down for you so you can understand:

90% of all sro "hacked" accounts are from 3rd party program w/ keyloggers

5% is idiots who give out their acc info to "friends"

and 4% is social engineering and 1% is actually getting "hacked"


it could of been the 90%

Posted: Thu May 10, 2007 3:00 am
by Blurred
_.-JaCk-._ wrote:obviously you were not around then...


JM security was exposed by a worker whom worked in the USA office. He knew the ups and downs, the person who did it was never known. This is why when people claimed they got hacked after the incident JM dident do anything.

Source: a person who works for JM in korea(i wont say his name but he was in infensus guild on xian server)

Posted: Thu May 10, 2007 3:02 am
by PureOwnage
Blurred wrote:
_.-JaCk-._ wrote:obviously you were not around then...


JM security was exposed by a worker whom worked in the USA office. He knew the ups and downs, the person who did it was never known. This is why when people claimed they got hacked after the incident JM dident do anything.

Source: a person who works for JM in korea(i wont say his name but he was in infensus guild on xian server)


exactly, but people on these forums think they know more than me (sarcastically put, they need to look @ my forum join date lol and Ive played SRO since closed beta)

Posted: Thu May 10, 2007 3:04 am
by Sharp324
PureOwnage wrote:
_.-JaCk-._ wrote:
PureOwnage wrote:
_.-JaCk-._ wrote:i got hacked without keyloggers and 3rd party software. No one knew my login info when this happened. So, am i an idiot too?


You got socially engineered, not hacked.


hmmm, maybe i posted in the SRO.net forums when they first went to phpBB. I lead a VERY private life, my real info is really hard to get.


If someone hacked the SRO.net database then 1000's of accounts would have been hacked not just yours. I will repeat this so people keep saying zomg JM can have their database haxz0red11!one!!!!!! JM has 3 firewalls up and over 128 byte encryption on their database, you cannot hack it so stfu with the phpBB switcheroo. The only way you can get "hacked" is what I posted in my post with the % statistics.


Actually a very skilled, real hacker, could find a way to get through....sadly enough all the best hackers are working for governments

Posted: Thu May 10, 2007 3:04 am
by Blurred
PureOwnage wrote:
Blurred wrote:
_.-JaCk-._ wrote:obviously you were not around then...


JM security was exposed by a worker whom worked in the USA office. He knew the ups and downs, the person who did it was never known. This is why when people claimed they got hacked after the incident JM dident do anything.

Source: a person who works for JM in korea(i wont say his name but he was in infensus guild on xian server)


exactly, but people on these forums think they know more than me (sarcastically put, they need to look @ my forum join date lol and Ive played SRO since closed beta)


This is another reason why the USA office dident get the title of [GM] to the ladyasiana account. After the incident, JM lost trust in the Usa office.

Posted: Thu May 10, 2007 3:09 am
by PureOwnage
Blurred wrote:
PureOwnage wrote:
Blurred wrote:
_.-JaCk-._ wrote:obviously you were not around then...


JM security was exposed by a worker whom worked in the USA office. He knew the ups and downs, the person who did it was never known. This is why when people claimed they got hacked after the incident JM dident do anything.

Source: a person who works for JM in korea(i wont say his name but he was in infensus guild on xian server)


exactly, but people on these forums think they know more than me (sarcastically put, they need to look @ my forum join date lol and Ive played SRO since closed beta)


Yep! +2

This is another reason why the USA office dident get the title of [GM] to the ladyasiana account. After the incident, JM lost trust in the Usa office.
:D

Posted: Thu May 10, 2007 3:21 am
by Farmer Oreo
i highly doubt that someone actually "hacks" an account without keylogger or just gettin info straight from the source cuz of the time and resources it would take, you would have to bypass and decode and it doesnt seem like n e one would spend that much time to do that

Posted: Thu May 10, 2007 11:20 am
by MrFudge
rofl, "your friend didnt get "hacked" , your friend got owned." :D

Posted: Thu May 10, 2007 4:34 pm
by TheGiftedOne
this guy is warning you and you all say "AHHAHA YOUR FRIEND GOT OWNED NOT HAX0RED GTFO LOLZZZZZ!!!!"
that's a pretty ..... reaction to a person who is trying to do something good for the community

Posted: Thu May 10, 2007 4:41 pm
by Vandango
Look

Hacked is the Term used on this forum
Hijacked is the term but hacked sounds so much more simpler

+

its not very hard to find an e-mail adress attached to an account just google the name lol and you might get lucky

+ the secret answers are a joke lol theres no brute force protection agasint them lol

e-mail+ Secret Asnwer = Owned

Posted: Thu May 10, 2007 5:46 pm
by Spanktastik
TheGiftedOne wrote:this guy is warning you and you all say "AHHAHA YOUR FRIEND GOT OWNED NOT HAX0RED GTFO LOLZZZZZ!!!!"
that's a pretty ..... reaction to a person who is trying to do something good for the community

+1

People are arses, what are ya gonna do? :?

Posted: Thu May 10, 2007 8:32 pm
by PR0METHEUS
PureOwnage wrote:If someone hacked the SRO.net database then 1000's of accounts would have been hacked not just yours. I will repeat this so people keep saying zomg JM can have their database haxz0red11!one!!!!!! JM has 3 firewalls up and over 128 byte encryption on their database, you cannot hack it so stfu with the phpBB switcheroo. The only way you can get "hacked" is what I posted in my post with the % statistics.


Firewalls can be broken into. You just have to find out what ports are open, and find a way to get through those ports. Encryption doesn't matter if you already have a ligitimate connection to the database and use SQL Injection attacks to run commands that you "shouldn't" be able to run.

Simply relying on a firewall (or 5 firewalls) provides a false sense of security.