Wednesday, January 25, 2012

Account Hacking

I've shut the server down until I can make it secure.

We've been hacked! More correctly, about seven months ago Bioware was hacked and the player accounts / passwords were compromised. Several months ago Bioware shut down their server that authenticates player account names and passwords. That means anybody can log in to any account without a password check, all they need to know is the correct spelling.

You can follow these links for further information:

I was unaware of this until informed by a player. I did some checking and found out a few things. Our accounts been accessed by "people" other than ourselves. I have a list of accounts that I know have been compromised and I have two CD Keys that are being used to do the hacking.

One of the CD Keys belongs to our old friend, Gart. Somehow Gart managed to get passed my permanent ban list. For those who don't know Gart, he got banned on five (5) CD Keys, most of which were probably stolen.

Gart, if you're reading this, "Your a jerk!" I would use stronger words, but this is a family channel. Someday you're going to end up in prison as Bubba's Backdoor Bitch. My only regret is the video won't be published to YouTube.

The other CD Key points to "Ruby der Killer" and the IP being used is in Germany.

The following is a list of accounts that have been compromised. Please note that my account is in this list. These are only the ones that I know about. No doubt there are other accounts and other CD Keys involved.

Ruby der Killer
Mr. Chemical
Simon Hawk
Hubert Pape
Bunte Reiter
Bluntmad Joker
the master devil

So, until I can figure a way to secure your accounts, I've shut my server down.


Qwildurn said...

Just a nudge to get this emailed out to those that subscribe.

Simon Hawk said...

It's a shame that your server is plagued by such moronism. How could you know those two idiots messed with our toons?

Hopefully you can address the issue without to much hassle.

Good luck to you.

Deimonos said...

Not sure if it makes you feel any better but I remember logging on months ago and bashing this Ruby dude into oblivion several times on the mines. Little boy got so scared he'd even called one of his oki friends to help him fend off the constant abuse he was suffering.. ohhh sad, sad boy.

All the very best to you powerful warriors. Oh, and you too Simon.

Qwildurn said...

Simon Hawk said...
It's a shame that your server is plagued by such moronism. How could you know those two idiots messed with our toons?

Hopefully you can address the issue without to much hassle.

Good luck to you.

The server records certain things in the database...

I sorted (database) the player names (not toons) by CD Key and easily saw many logons attached to certain keys. Very clearly Simon, Deimonos, Qwildurn, Conan and a few others are separate players and don't share CD Keys. But, here they were, attached to the same one key and the time-stamp for said key was this month, not in 2009, just after the last crash.

After reviewing a few other things I opened the player folders on the servers hard-drive and sorted the toons by date modified. The toons in these accounts were all dated about one minute apart, and in alphabetic order. I may not know what you guys do with your toons and when, but I know I didn't do that with my toons.

My best guess is they were exporting toons to study the builds.

Simon Hawk said...

Understood, thanks for the info. I just hope the 'peeping toms' didn't turn into thieves and steal any of our characters gear. Getting spied on is bad enough.

Simon Hawk said...

Oh, and LOL, if they took build ideads from MY toons then they probably did more damage to themselves then if they tried to make a new character on their own, hahaha.

Qwildurn said...

The server is back online :)

Player Security System