| |||||
| | #1 | ||
| ~ Mama Gamer ~ Golden Star Join Date: May 2006 Location: Al'Taieu
Posts: 4,480 Style: Light Theme V7 Thanks: 610
Thanked 880x in 569 Posts
My Mood: | New Hackings Begin ... Security Token or Not.
Yeah, that's right, people are getting hacked with the security tokens at work. I understand how it works but not well enough to explain it, so I'll quote BG: Quote:
Apparently it's been reported on sites like slashdot and a few others (forgot which) that this is a new token exploit for much more secure companies like banks, government agencies, etc., and the RMT have found their new niche. Awesome. So yeah, no one's safe anymore. Not that we assumed security tokens were 100% secure, but we sure didn't expect a new hacking method to come about so soon. Apparently there's a stink about it on Alla as well, but I really can't stand to go there anymore to read about it. I'd suggest watching your shit closely.
__________________ ~Aksannyi~~Hades~~75WHM~75RDM~75BLM~75SMN~73WAR~67SCH~47BRD~ ~Mama Gamer~~Quitted July 2009~~Excellence LS~ ~~ ~~ ~~ ~~ ~~ ~~ ~~ Quote:
| ||
| | |
| | #2 | |
| Senior Veteran Iron Emblem of Service | Re: New Hackings Begin ... Security Token or Not. Quote:
| |
| | |
| The Following 15 Users Say Thank You to Mhurron For This Useful Post: | Akashimo (08-25-2009), Armando (08-24-2009), Auron517 (08-30-2009), Feba (08-24-2009), Grizzlebeard (08-25-2009), Jarre (08-25-2009), Kailea (08-24-2009), Kasandaro (09-03-2009), Ketaru (08-25-2009), Losrase (09-03-2009), Malacite (08-24-2009), Omniblast (08-24-2009), Satori (08-25-2009), Wise Donkey (08-24-2009), Yellow Mage (08-25-2009) |
| | #3 | |||
| The Closer Super Moderator Brass Wings of Service Join Date: Nov 2004 Location: In the little corner in my mind
Posts: 6,942 Style: Light Theme V7 Thanks: 306
Thanked 1,111x in 657 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not.
Ya I think I pretty much reported this issue a while ago when I told how my son was hacked and was using the token. Of course, everyone ignored it and thought I was full of shit.
__________________ Quote:
Quote:
Quote:
| |||
| | |
| | #4 | |
| ~ Mama Gamer ~ Golden Star Join Date: May 2006 Location: Al'Taieu
Posts: 4,480 Style: Light Theme V7 Thanks: 610
Thanked 880x in 569 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not.
You were one of the first people I thought if when I saw the thread on BG, TGM. I mean we knew it was possible somehow, but hell if I know the way this shit all works. People were clinging to the token as a security blanket, and probably still are. >< I read you don't really d/c from the game ... you red dot, and when you recover from the red dot, your game is crashed but the hacker remains in control of the character and strips it. So you never even know that your account has been accessed, and when you attempt to log back into FFXI, the hack prevents POL from loading all the way through. Sophisticated and creepy.
__________________ ~Aksannyi~~Hades~~75WHM~75RDM~75BLM~75SMN~73WAR~67SCH~47BRD~ ~Mama Gamer~~Quitted July 2009~~Excellence LS~ ~~ ~~ ~~ ~~ ~~ ~~ ~~ Quote:
| |
| | |
| | #5 | |
| Soldier Tony Allied Ribbon of Bravery Join Date: Oct 2006 Location: Flint, MI
Posts: 1,760 Style: Light Theme V7 Thanks: 398
Thanked 259x in 177 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not.
Crazy, somebody was mentioning that "You <----> Hacker <----> SE" thing possibly happening awhile back on this board. Don't remember where exactly, probably in one of the token discussions lol.
__________________ ----------------------- ![]() "There will come a day when the world will realize that Superman can no longer create miracles. If my name was Superman, that day would be today." 4/29/2009 - Me Quote:
| |
| | |
| | #6 |
| Crime Solving Rank 11 Paladin! Steelknight Emblem Join Date: May 2006 Location: None of your damn business
Posts: 5,840 Style: Light Theme V7 Thanks: 1,375
Thanked 524x in 365 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not.
And this is why I never use 3rd party software regardless. Also, Microsoft Onecare FTW. |
| | |
| | #7 | |
| Dark Arts Master Bronze Ribbon of Service Join Date: Sep 2008 Location: Conneticut
Posts: 994 Style: Light Theme V7 Thanks: 41
Thanked 28x in 20 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not.
Dang. That really sucks. Just don't download any files or open any emails that you don't trust. Thats the only real way to prevent hacking. Even then, you can still get hacked. Even having the most up to date fire wall, anti virus, and anti spyware. Hell, if my account gets hacked I'd be pissed, but I'll be quitting soon enough anyways, so it wont matter all that much to me. (FFXIV!)
__________________ Quote:
http://www.ffxionline.com/forums/ffx...00b-guide.html | |
| | |
| | #8 | ||
| Expert Chocobo Cook Join Date: Jul 2006 Location: El Paso, TX
Posts: 458 Style: Light Theme V7 Thanks: 145
Thanked 36x in 26 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not.
This is why i play on a console ^^b
__________________ Quote:
Quote:
![]() Hexx of Quetzalcoatl - 75PLD, 75NIN, 75WAR, 75SAM, 75BLU | ||
| | |
| | #9 | |
| Dark Arts Master Bronze Ribbon of Service Join Date: Sep 2008 Location: Conneticut
Posts: 994 Style: Light Theme V7 Thanks: 41
Thanked 28x in 20 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not. Well... With the way technology is getting now. Even using a console wont be safe soon. A PS3 is what? A computer bassically, and it has internet. Phones are being hacked now, so I don't doubt that a system can't be hacked with a keylogger if you hooked it up to your main PC and you had a kew logger on it.
__________________ Quote:
http://www.ffxionline.com/forums/ffx...00b-guide.html | |
| | |
| | #10 | |
| ~ Mama Gamer ~ Golden Star Join Date: May 2006 Location: Al'Taieu
Posts: 4,480 Style: Light Theme V7 Thanks: 610
Thanked 880x in 569 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not.
There have been some console users reporting hacks on Alla. So yeah, not exactly sure how, but it seems nothing is safe. If they're hijacking your online internet session (which it was what it sounds like) then they may have some way to track your console on your network and figure out how to un-encrypt the data sent to the server or something. Hell if I know if that even makes any sense. But with this new session hijack thing people are talking about on BG, I wouldn't be too surprised.
__________________ ~Aksannyi~~Hades~~75WHM~75RDM~75BLM~75SMN~73WAR~67SCH~47BRD~ ~Mama Gamer~~Quitted July 2009~~Excellence LS~ ~~ ~~ ~~ ~~ ~~ ~~ ~~ Quote:
| |
| | |
| | #11 | |||
| Expert Chocobo Cook Join Date: Jul 2006 Location: El Paso, TX
Posts: 458 Style: Light Theme V7 Thanks: 145
Thanked 36x in 26 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not. Quote:
And that is also why I do not link my consoles to computers. Besides, to be able to access my consoles, they would have to be parked outside my house, within range of my wireless network, to be able to intercept it, if at all with all the security I have attached to mine. Never the less, I'll be keeping a close eye on it just in case.
__________________ Quote:
Quote:
![]() Hexx of Quetzalcoatl - 75PLD, 75NIN, 75WAR, 75SAM, 75BLU | |||
| | |
| | #12 |
| Junior Member | Re: New Hackings Begin ... Security Token or Not.
Its probably because Playonline is a crappy online medium and SE just needs to develop something better and more secure for customers to use.
|
| | |
| | #13 | |
| Sticky Paws Sterling Star Join Date: May 2006 Location: Southern California
Posts: 3,201 Style: Light Theme V7 Thanks: 256
Thanked 678x in 434 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not.
hmm. This reminds me of the descriptions for the "packet sniffer" third party apps. (BTW, "packet sniffer" is the wrong term; more like "packet-intercept-modify-generate" programs, but I digress.) Wonder where these thieves cut their computing-fu teeth at. lol. Hack FFXI for fun and in-game profit -> write bots and tools for RL $$$ while 'helping' other players -> hijack FFXI accounts for gil to sell to poor FFXI players who 'need' more in-game money. Interesting career path there. The next step would be finding horrific systemic weaknesses to exploit, and blackmail SE into paying "protection money" if the company doesn't want the FFXI cash cow to croak. We don't walk up and loot the lying on the ground unconscious players for gil in FFXI--we go to the web and buy the gil taken from the kidnapped and then horribly butchered characters instead. Well, the gil buyers do; the rest of us just tolerate their dealings with the body snatching mobsters. Edit: Quote:
Faults with POL client's security or lack of aside, there's not much the application developers can do when facing compromised network stack and computers infected by rootkits without going through extraordinary measures (which probably wouldn't withstand hack attempts for long anyway). Like Mhurron says, nothing saves the users from themselves. If you don't know how to protect your lousy PC from at least the worst of the attacks, it's your fault for being ignorant and lazy.
__________________ “I’m in pain, but I’m happy.” “It hurts, but I can smile.” “That’s why I can tell you from the depths of my being…” Last edited by IfritnoItazura; 08-24-2009 at 05:15 PM. | |
| | |
| | #14 |
| Altanaの戦士 Golden Star Join Date: May 2006 Location: Fenrir Server
Posts: 4,100 Style: Light Theme V6 Thanks: 228
Thanked 500x in 322 Posts
| Re: New Hackings Begin ... Security Token or Not. Death is salvation. ...what? <_<; Ok, ok, I've been watching The Lost Canvas.
__________________ Sanctuary of Zi'tah! ![]() "In this world, the one who has the most fun is the winner!" C.B. Prishe's Knight since 2004. その目だれの目。 |
| | |
| | #15 |
| Raidou Kuzunoha Vs. Demi-Fiend Brass Wings of Service Join Date: May 2006 Location: Windurst
Posts: 6,798 Style: Light Theme V7 Thanks: 208
Thanked 2,097x in 1,142 Posts
My Mood: | Re: New Hackings Begin ... Security Token or Not.
You mean if I download all these crazy plug-ins for Windower that I don't know are trustworthy or not, I might get session hacked? Shit, I'll delete all that stuff right now. Oh, wait, I play on PS2. Each new security scare is always the same, someone got "hacked" when in reality they didn't secure their PC well or trust the wrong people with their information. And its always SE's fault, never the user's fault. Because this is the internet, where everyone is always right. |
| | |
| The Following 6 Users Say Thank You to Omgwtfbbqkitten For This Useful Post: | AngelX (09-02-2009), Auron517 (08-30-2009), Electricity Gone Human (09-07-2009), Kailea (08-25-2009), Ketaru (08-25-2009), Yellow Mage (08-25-2009) |
![]() |
| Tags |
| begin, hackings, security, token |
| Thread Tools | |
| Display Modes | |
| |