Reply
 
LinkBack (1) Thread Tools Display Modes
Old 06-11-2008, 11:02 AM   #31 (permalink)
RANK 5 IS BULLSHIT!
Oracle of Knowledge
 
Feba's Avatar
FFXI Character Info.
 
Join Date: Oct 2004
Posts: 7,002
Style: Light - Version 6
Thanks: 1,732
Thanked 1,623x in 1,129 Posts
Gil: 4,269
Bank: 890,539
Total Gil: 894,807
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
Originally Posted by curewhore View Post
I was recently hacked
That's nice. It's not SE's fault, and frankly they have better things to add to their software than something which makes people like yourself feel like you're even more secure when you're still just as at risk. They're doing you a disservice, if anything. If they have to assist people, spend the money they put into having their programmers implement this crap into hiring on some customer service reps to help people get their account backs. At least then you're actually doing something about stopping the abuse (getting the accounts out of their hands quicker, and back to your users with fewer problems) and not just stopping it for a month or two.



Feba is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 12:23 PM   #32 (permalink)
Junior Member
 
Phanex's Avatar
FFXI Character Info.
 
Join Date: Nov 2007
Location: Kinston, NC
Posts: 121
Style: Light - Version 6
My Mood:
Thanks: 28
Thanked 10x in 8 Posts
Gil: 11,596
Bank: 17,137
Total Gil: 28,733
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
Well there is a bit of difference between the players who used a 3rd party tool vs. someone who just went to a common website and DL the virus/worm/w/ever to their pc.

We all know that somepage was one of the few websites believed to be behind some of the earlier attacks, and we all know, if I remember correctly, that Somepage was hacked, and SE got in touch with them telling them what happened. I read all this on here, and I’m too busy to go back and look it all up.

So blaming the players cause they went to somepage, like they always did, is kinda foolish. If it were something an anti-spy/virus program could detect, then it wouldn’t have gone on as long as it did. In fact, SE customer service simply says there is NO way to remove/detect it as of yet, short of formatting your hard drive. And since it is a keylogger, and since not everyone can format their pc’s due to lack of cd’s or w/ever the case may be, this new security measure will help those folks out.

And didn’t the Flash player also have a security risk that SE told ppl to go update it as soon as possible? The hackers are using all the weakness of the Window’s system and other programs it uses to gain access to the player’s information. At least from what I can gather.

Will this solve future problems, I don’t know, but it might. I find it sad that some people go around saying, it’s the user’s fault cause they didn’t do this, the user should do that, yet them same people wont’ tell anyone where to go, what to do, which page to view, etc. Be part of the solution, not part of the problem.

And I don’t see McAfee or Windows spending their research money trying to solve this little keylogger program, at least until whoever made it starts using it to steal credit card info or making a bigger presence outside of the FFXI community.

And yes, there are the few ppl out there do “leave their car unlocked”, but don’t criticizes everyone else that’s in the same boat as they are.
Phanex is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 12:29 PM   #33 (permalink)
Senior Veteran
Oracle of Knowledge
 
Mhurron's Avatar
FFXI Character Info.
 
Join Date: May 2006
Posts: 4,618
Style: Light - Version 6
Thanks: 116
Thanked 1,434x in 870 Posts
Gil: 2,493
Bank: 333,825
Total Gil: 336,318
Donate
Send a message via ICQ to Mhurron
Re: Heightened Security on the Windows PlayOnline Viewer
Originally Posted by Phanex View Post
So blaming the players cause they went to somepage, like they always did, is kinda foolish.
If you were up-to-date on your patches, you wouldn't have had a problem. The exploits that both of these waves used were fixed weeks or months before they were exploited.

Honestly, users have no one but themselves to blame.



I use a Mac because I'm just better than you are.
Paragon of Red Mage Excellence
Paragon of Black Mage Excellence

Maat Masher - RDM
Shining Ray of Awesome
Mhurron is offline   ::Quote Selected:: Reply With Quote
The following user says "Thank You" to Mhurron for above post:
Feba (06-11-2008)
Old 06-11-2008, 12:48 PM   #34 (permalink)
Junior Member
 
Phanex's Avatar
FFXI Character Info.
 
Join Date: Nov 2007
Location: Kinston, NC
Posts: 121
Style: Light - Version 6
My Mood:
Thanks: 28
Thanked 10x in 8 Posts
Gil: 11,596
Bank: 17,137
Total Gil: 28,733
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
Please inlighten us what these "exploits" were and what update fixed them? Because people are still getting hacked to this day, and they need help.

I never got hacked, but my room mate did, and yes his auto update for windows is on, and always was. And he got hacked last year, around Dec 1. He's not the newer ones.
Phanex is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 01:05 PM   #35 (permalink)
Junior Member
Administrator
FFXI Character Info.
 
Join Date: Dec 2003
Posts: 4,931
Style: Light - Version 6
Thanks: 235
Thanked 683x in 348 Posts
Gil: 28,801
Bank: 86,030
Total Gil: 114,831
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
Originally Posted by Mhurron View Post
If you were up-to-date on your patches, you wouldn't have had a problem. The exploits that both of these waves used were fixed weeks or months before they were exploited.

Honestly, users have no one but themselves to blame.
Heck, in the second round of hackings, somepage got infected with the exact same RealPlayer exploit as before. The same site with the same exploit ... and even though there was mass panic about it the first time it happened there were still tons of people who never bothered to figure out what they could do to protect themselves and kept using the site. SE spoke with the site owners and that made everything ok I guess. It's like Dr Square came in and said "We've talked one of your sexual partners and they've agreed to seek treatment for their syphillus," and the userbase went "Great! Now I can go back to having unprotected sex with them and four other people!"

Which is exactly what's wrong with this update, or rather the reaction to it. SE has done something, a thing, so people are going to assume that they're safe when they're still very much not and continue to visit frequently compromised sites with unsecure browsers and a bunch of useless software on their system with year old security loopholes. Some of them won't even use the virtual keyboard, I bet, and when they get hacked they're going to say SE should have done more.
_______________

And now I'm officially a security snob like Mhurron and Feba.



-
Taskmage is offline   ::Quote Selected:: Reply With Quote
The following user says "Thank You" to Taskmage for above post:
Feba (06-11-2008)
Old 06-11-2008, 01:22 PM   #36 (permalink)
Senior Veteran
Oracle of Knowledge
 
Mhurron's Avatar
FFXI Character Info.
 
Join Date: May 2006
Posts: 4,618
Style: Light - Version 6
Thanks: 116
Thanked 1,434x in 870 Posts
Gil: 2,493
Bank: 333,825
Total Gil: 336,318
Donate
Send a message via ICQ to Mhurron
Re: Heightened Security on the Windows PlayOnline Viewer
Recent - FLASH: Adobe Flash Player Multimedia File Remote Buffer Overflow Vulnerability DATE:Apr 08 2008 PATCHED: Apr 8 2008 EXPLOITED: Two weeks ago

Last year - REAL PLAYER/IE:https://forums.symantec.com/syment/b...age.uid=305543 DATE: Oct 19 2007 PATCHED: Oct 22 2007 EXPLOITED: Late November/Early December

Honestly Taskmage, people already assumed they were safe. Everyone always does until it bites them in the ass. Then they go around crying that someone should have done something about it.



I use a Mac because I'm just better than you are.
Paragon of Red Mage Excellence
Paragon of Black Mage Excellence

Maat Masher - RDM
Shining Ray of Awesome
Mhurron is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 01:30 PM   #37 (permalink)
Achiever
Keeper of Knowledge
 
WishMaster3K's Avatar
FFXI Character Info.
 
Join Date: Apr 2003
Location: Queens, NY
Posts: 2,626
Style: Light - Version 4
My Mood:
Thanks: 442
Thanked 238x in 139 Posts
Gil: 5,468
Bank: 95,000
Total Gil: 100,468
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
I just, generally, stay away from both IE and Realplayer.



Originally Posted by Aksannyi View Post
I swear some melee would forget their fucking weapon if they didn't have it equipped every time they logged in.
WishMaster3K is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 01:33 PM   #38 (permalink)
~ Mama Gamer ~
Keeper of Knowledge
 
Aksannyi's Avatar
FFXI Character Info.
 
Join Date: May 2006
Location: Al'Taieu
Posts: 2,828
Style: Light - Version 6
My Mood:
Thanks: 486
Thanked 485x in 331 Posts
Gil: 519
Bank: 73,165
Total Gil: 73,684
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
Want to know what I learned today?

I learned that POL doesn't accept any of these !@#$%^&*() characters in passwords. You see, I changed my password last night on my laptop, and it contained a * when I typed it. I do this with passwords becaues it makes them harder to figure out.

Well I tried to log in today on the PC, and obviously my new password hadn't been saved on the PC yet, so I knew I'd have to put it in and re-set it. Only I kept getting an "incorrect password" message. Um ... what? I tried it with the CAPS on, just in case I was retrarded enough to change my PW with it on. No dice.

So I close POL on the PC and open it on the laptop, just to make sure that I can actually log into my account. And I can, so (whew) I wasn't hacked. So I figured I'd go into the password menu to maybe see what I could find out, and the soft keyboard thing pops up, with ... you guessed it ... no !@#$%^&*() on it.

Sure enough, I counted the characters of the password I'd saved and it was exactly one less than I thought. Tried it without the * on the PC and I'm in game.

So, this is interesting and pretty stupid. If I want an * or a % in my password, why can't I have one? That makes our passwords stronger, doesn't it? So I went out of my way to make a password that contiained numbers, lowercase, uppercase, and special characters but SE wouldn't allow it. WUT?

Also I cussed out my computer for a solid 3 minutes over this.



~~ ~~ ~~ ~~ ~~
~~ ~~ ~~ ~~ ~~
~Aksannyi~~Hades~~75WHM~75RDM~75BLM~64WAR~~Mama Gamer~~<3 Cerealkiller~
~~ ~~ ~~ ~~ ~~
~~ ~~ ~~ ~~ ~~

~~ ~~ ~~ ~~ ~~
Aksannyi is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 01:44 PM   #39 (permalink)
Senior Veteran
Oracle of Knowledge
 
Mhurron's Avatar
FFXI Character Info.
 
Join Date: May 2006
Posts: 4,618
Style: Light - Version 6
Thanks: 116
Thanked 1,434x in 870 Posts
Gil: 2,493
Bank: 333,825
Total Gil: 336,318
Donate
Send a message via ICQ to Mhurron
Re: Heightened Security on the Windows PlayOnline Viewer
Originally Posted by Aksannyi View Post
If I want an * or a % in my password, why can't I have one? That makes our passwords stronger, doesn't it? So I went out of my way to make a password that contiained numbers, lowercase, uppercase, and special characters but SE wouldn't allow it. WUT?
Input it once when you know it's clean and let it save the password.

Then use this feature:

Quote:
- Security Settings
We introduced "Security Settings" to manage PlayOnline passwords with even further heightened security.

Because passwords entered on the PlayOnline Viewer are encrypted and saved to the hard drive to prevent other computers from decrypting them, even if the corresponding file is stolen, no password information will be accessible.
To advance our security technology even further in dealing with spyware, we have made the encryption key for each computer randomly generated and saved to a destination folder the user designates in "Security Settings." For example, if the user saves the key file to an external device such as a USB memory card and disconnects the device when it is not needed, security will be considerably strengthened.

"Security Settings" has been added to the PlayOnline Viewer's Login menu. After selecting it and designating a destination folder for the encryption key, a file name composed of random alphanumeric characters will be created in that folder.
If you're the only user of your system, don't bother with the software keyboard. Let it save the password so you don't have to enter it anyway. You'll only need to enter it then for doing other account related activities, which for most people are relatively rare.



I use a Mac because I'm just better than you are.
Paragon of Red Mage Excellence
Paragon of Black Mage Excellence

Maat Masher - RDM
Shining Ray of Awesome
Mhurron is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 01:46 PM   #40 (permalink)
~ Mama Gamer ~
Keeper of Knowledge
 
Aksannyi's Avatar
FFXI Character Info.
 
Join Date: May 2006
Location: Al'Taieu
Posts: 2,828
Style: Light - Version 6
My Mood:
Thanks: 486
Thanked 485x in 331 Posts
Gil: 519
Bank: 73,165
Total Gil: 73,684
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
I did save the password. It saved it without the *. And I actually typed it in, I just never realized that it didn't accept the asterisk. But that made the password incorrect when I entered it on the PC.



~~ ~~ ~~ ~~ ~~
~~ ~~ ~~ ~~ ~~
~Aksannyi~~Hades~~75WHM~75RDM~75BLM~64WAR~~Mama Gamer~~<3 Cerealkiller~
~~ ~~ ~~ ~~ ~~
~~ ~~ ~~ ~~ ~~

~~ ~~ ~~ ~~ ~~
Aksannyi is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 02:04 PM   #41 (permalink)
RANK 5 IS BULLSHIT!
Oracle of Knowledge
 
Feba's Avatar
FFXI Character Info.
 
Join Date: Oct 2004
Posts: 7,002
Style: Light - Version 6
Thanks: 1,732
Thanked 1,623x in 1,129 Posts
Gil: 4,269
Bank: 890,539
Total Gil: 894,807
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
Originally Posted by Taskmage View Post
It's like Dr Square came in and said "We've talked one of your sexual partners and they've agreed to seek treatment for their syphillus," and the userbase went "Great! Now I can go back to having unprotected sex with them and four other people!"
Quite possibly the best analogy I've ever heard.

For as much porn as there is on the internet, it's sad people don't realize how close it can be to sex sometimes.

Aksannyi, Mhurron was saying "Don't worry about that, just do this, it's even MORE secure than adding one little character to your password".



Feba is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 02:07 PM   #42 (permalink)
Senior Veteran
Oracle of Knowledge
 
Mhurron's Avatar
FFXI Character Info.
 
Join Date: May 2006
Posts: 4,618
Style: Light - Version 6
Thanks: 116
Thanked 1,434x in 870 Posts
Gil: 2,493
Bank: 333,825
Total Gil: 336,318
Donate
Send a message via ICQ to Mhurron
Re: Heightened Security on the Windows PlayOnline Viewer
I always keep all my passwords 1234, the same a my luggage. It's just easier that way.



I use a Mac because I'm just better than you are.
Paragon of Red Mage Excellence
Paragon of Black Mage Excellence

Maat Masher - RDM
Shining Ray of Awesome
Mhurron is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 02:15 PM   #43 (permalink)
RANK 5 IS BULLSHIT!
Oracle of Knowledge
 
Feba's Avatar
FFXI Character Info.
 
Join Date: Oct 2004
Posts: 7,002
Style: Light - Version 6
Thanks: 1,732
Thanked 1,623x in 1,129 Posts
Gil: 4,269
Bank: 890,539
Total Gil: 894,807
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
Oh?

I thought your password was "ManIAmFuckingAwesome".



I assumed you just had your luggage custom made.



Feba is offline   ::Quote Selected:: Reply With Quote
Old 06-11-2008, 02:28 PM   #44 (permalink)
~ Mama Gamer ~
Keeper of Knowledge
 
Aksannyi's Avatar
FFXI Character Info.
 
Join Date: May 2006
Location: Al'Taieu
Posts: 2,828
Style: Light - Version 6
My Mood:
Thanks: 486
Thanked 485x in 331 Posts
Gil: 519
Bank: 73,165
Total Gil: 73,684
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
Originally Posted by Feba View Post
Aksannyi, Mhurron was saying "Don't worry about that, just do this, it's even MORE secure than adding one little character to your password".
Ahh, okay. I mis-read him then.



~~ ~~ ~~ ~~ ~~
~~ ~~ ~~ ~~ ~~
~Aksannyi~~Hades~~75WHM~75RDM~75BLM~64WAR~~Mama Gamer~~<3 Cerealkiller~
~~ ~~ ~~ ~~ ~~
~~ ~~ ~~ ~~ ~~

~~ ~~ ~~ ~~ ~~
Aksannyi is offline   ::Quote Selected:: Reply With Quote
Old 06-12-2008, 04:33 AM   #45 (permalink)
Junior Member
 
Phanex's Avatar
FFXI Character Info.
 
Join Date: Nov 2007
Location: Kinston, NC
Posts: 121
Style: Light - Version 6
My Mood:
Thanks: 28
Thanked 10x in 8 Posts
Gil: 11,596
Bank: 17,137
Total Gil: 28,733
Donate
Re: Heightened Security on the Windows PlayOnline Viewer
Quote:
Last year - REAL PLAYER/IE:https://forums.symantec.com/syment/b...age.uid=305543 DATE: Oct 19 2007 PATCHED: Oct 22 2007 EXPLOITED: Late November/Early December
LOL as Feba would say, That's nice. But he didnt' have real player on his PC, he only used Window's media player.
Phanex is offline   ::Quote Selected:: Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

LinkBacks (?)
LinkBack to this Thread: http://www.ffxionline.com/forums/news-ffxi/72071-heightened-security-windows-playonline-viewer.html
Posted By For Type Date
How-to: countering hackers - Page 2 - FFXI Final Fantasy XI Quetzalcoatl Daily News This thread Refback 07-04-2008 03:23 PM


All times are GMT -8. The time now is 02:53 PM.


Site Powered by: vBulletin Version 3.6.8 Copyright ©2000 - 2008, Jelsoft Enterprises Ltd. - Modifications by PiNG
©2001-2008 SQUARE ENIX CO., LTD. All Rights Reserved. Title Design by Yoshitaka Amano.
FINAL FANTASY and VANA'DIEL are registered trademarks of Square Enix Co., Ltd. SQUARE ENIX, PLAYONLINE and the PlayOnline logo are trademarks of Square Enix Co., Ltd.
Comments and posts are property of their authors. All the rest, including video, articles, compiled game data, and sections, unless otherwise noted, are
©2002-2008 FFXIOnline.com: Dreams in Vana'diel. All rights reserved.
Page generated in 0.65941 seconds with 30 queries