Official Everybody Edits Forums

Do you think I could just leave this part blank and it'd be okay? We're just going to replace the whole thing with a header image anyway, right?

You are not logged in.

#26 2019-03-24 03:13:05

2b55b5g
Formerly 2B55B5G TNG
Joined: 2016-08-27
Posts: 3,005

Re: Recent Events & Accounts Restored!

Eh maybe I’ll still play EE. Idc my social media getting hacked or my own information getting spread. As long as my life doesn’t have risk it’s fine


she/her

also known as DevilCharlotte

search 2bisniekitastan if you wanna find my worlds on ArchivEE

pfp: https://picrew.me/image_maker/1272810

Offline

#27 2019-03-24 08:24:24

Anatoly
Guest

Re: Recent Events & Accounts Restored!

2B55B5G TNG wrote:

Eh maybe I’ll still play EE. Idc my social media getting hacked or my own information getting spread. As long as my life doesn’t have risk it’s fine

it can be pretty serious, so id suggest not taking unnecessary risks. don't forget you could have viruses installed, etc...

#28 2019-03-24 08:54:57

2b55b5g
Formerly 2B55B5G TNG
Joined: 2016-08-27
Posts: 3,005

Re: Recent Events & Accounts Restored!

My PC was already broken from last year anyway


she/her

also known as DevilCharlotte

search 2bisniekitastan if you wanna find my worlds on ArchivEE

pfp: https://picrew.me/image_maker/1272810

Offline

Wooted by:

#29 2019-03-24 10:36:58

PTU
Formerly Pipec
From: Mailboxٴٴٴٴٴٴٴٴٴٴٴٴٴٴٴٴٴٴٴٴٴٴٴ
Joined: 2017-04-15
Posts: 862

Re: Recent Events & Accounts Restored!

Anatoly wrote:

viruses installed

How are viruses related in this case?

pls


M2my8OF.png M2my8OF.png M2my8OF.png

UUCFFj2.png UUCFFj2.png UUCFFj2.png

Offline

#30 2019-03-24 11:17:35

Gosha
Member
From: Russia
Joined: 2015-03-15
Posts: 6,211

Re: Recent Events & Accounts Restored!

cool stuff

Offline

#31 2019-03-24 11:18:17

Anatoly
Guest

Re: Recent Events & Accounts Restored!

PTU wrote:
Anatoly wrote:

viruses installed

How are viruses related in this case?

pls

did you read what processor said? Even staff agreed that playing the game right now is fatal. The game could simply upload to your computer viruses to get even more information. The hackers have power to edit game files.

#32 2019-03-24 13:36:38

Different55
Forum Admin
Joined: 2015-02-07
Posts: 16,575

Re: Recent Events & Accounts Restored!

Anatoly wrote:
PTU wrote:
Anatoly wrote:

viruses installed

How are viruses related in this case?

pls

did you read what processor said? Even staff agreed that playing the game right now is fatal. The game could simply upload to your computer viruses to get even more information. The hackers have power to edit game files.

We don't know that they have access to game files. Again, in my own personal opinion with 0 internal insight into how the game works or literally anything at all, I think it's very unlikely that they do. They're clearly doing everything they can to get attention, and leaking hashed (irreversibly encrypted) passwords and editing the client would be the exactly the kind of flashy things they'd go for if they could. Since they're only leaking emails and inboxes, it seems like that's the worst they can do at this point.

But, even though it seems unlikely, until we know it's *impossible* we should assume that they have ability just because it'd totally suck to be wrong.


"Sometimes failing a leap of faith is better than inching forward"
- ShinsukeIto

Offline

#33 2019-03-25 00:37:40

HeyNK
Member
Joined: 2017-04-07
Posts: 1,318

Re: Recent Events & Accounts Restored!

Anatoly wrote:
PTU wrote:
Anatoly wrote:

viruses installed

How are viruses related in this case?

pls

did you read what processor said? Even staff agreed that playing the game right now is fatal. The game could simply upload to your computer viruses to get even more information. The hackers have power to edit game files.


ITT: blatant fearmongering from someone who does not know how computers work tbh

Offline

#34 2019-03-25 01:08:17

XxAtillaxX
Member
Joined: 2015-11-28
Posts: 4,202

Re: Recent Events & Accounts Restored!

It is fully valid to state that the Adobe Flash Player plugin may (and most likely does) contain vulnerabilities that could run arbitrary code outside of a sandbox environment.

It is pure speculation as to whether such a vulnerability is within the scope of their ability, although baseless assumptions shouldn't be made in lieu of a false sense of security either, and so I would side with Yonom and Anatoly in this instance and advise people to isolate the game client (ideally in a virtual machine or external computer) if they really wish to play in the meantime, even though relatively few would do so and so that advice only applies to people who sport a tin foil hat.


signature.png
*u stinky*

Offline

Wooted by: (3)

#35 2019-03-25 09:03:48

peace
Member
From: admin land
Joined: 2015-08-10
Posts: 9,226

Re: Recent Events & Accounts Restored!

or you coudl just chage your password i did it just to be safe but i still dont get hoe thye gto to see passwords thats clearly PIO's fault as its PIO's resposebility to sotre passwords safe and none ever gets to see them not even the staff


peace.png

thanks hg for making this much better and ty for my avatar aswell

Offline

#36 2019-03-25 18:29:07

Minimania
Moderation Team
From: PbzvatFbba 13
Joined: 2015-02-22
Posts: 6,393

Re: Recent Events & Accounts Restored!

Different55 wrote:

We don't know that they have access to game files.

LukeM wrote:

We're as sure as we can be that the attacker does not have access to new account information, but we know that the attacker still has access to the database.


21cZxBv.png
Click the image to see my graphics suggestions, or here to play EE: Project M!

Offline

#37 2019-03-25 18:44:23

Different55
Forum Admin
Joined: 2015-02-07
Posts: 16,575

Re: Recent Events & Accounts Restored!

Crybaby wrote:
Different55 wrote:

We don't know that they have access to game files.

LukeM wrote:

We're as sure as we can be that the attacker does not have access to new account information, but we know that the attacker still has access to the database.

by game files I mean client files and by access to the client files I mean the ability to modify them, which is one of two ways that they could possibly get their hands on passwords.


"Sometimes failing a leap of faith is better than inching forward"
- ShinsukeIto

Offline

Wooted by:

#38 2019-03-25 20:04:26

peace
Member
From: admin land
Joined: 2015-08-10
Posts: 9,226

Re: Recent Events & Accounts Restored!

Different55 wrote:
Crybaby wrote:
Different55 wrote:

We don't know that they have access to game files.

LukeM wrote:

We're as sure as we can be that the attacker does not have access to new account information, but we know that the attacker still has access to the database.

by game files I mean client files and by access to the client files I mean the ability to modify them, which is one of two ways that they could possibly get their hands on passwords.

passwords are not in the client im aware of ( i think)


peace.png

thanks hg for making this much better and ty for my avatar aswell

Offline

#39 2019-03-25 20:08:51, last edited by LukeM (2019-03-25 20:10:36)

LukeM
Member
From: England
Joined: 2016-06-03
Posts: 3,009
Website

Re: Recent Events & Accounts Restored!

Just clearing up some terms:

The "DB" (which they have access to) refers to the PlayerIO game BigDB, which is what stores in-game information like worlds, campaign progress, mail, reports, bans, last known IP addresses, etc. (although for the time being we've disabled mail and the collection of IP addresses)

The "backend console" (which we strongly believe has been secure since early January, when the export was made) is what is used to upload new versions of the client and server, and can be used to access account emails / FB names.

peace wrote:

passwords are not in the client im aware of ( i think)

The idea is that if they managed to upload a modified version of the client, it could send them your account info when you type it in. We are very sure that they do not have the ability to do this though, which is why we've kept the game running.

Offline

#40 2019-03-25 20:13:29

peace
Member
From: admin land
Joined: 2015-08-10
Posts: 9,226

Re: Recent Events & Accounts Restored!

LukeM wrote:

Just clearing up some terms:

The "DB" (which they have access to) refers to the PlayerIO game BigDB, which is what stores in-game information like worlds, campaign progress, mail, reports, bans, last known IP addresses, etc. (although for the time being we've disabled mail and the collection of IP addresses)

The "backend console" (which we strongly believe has been secure since early January, when the export was made) is what is used to upload new versions of the client and server, and can be used to access account emails / FB names.

peace wrote:

passwords are not in the client im aware of ( i think)

The idea is that if they managed to upload a modified version of the client, it could send them your account info when you type it in. We are very sure that they do not have the ability to do this though, which is why we've kept the game running.

yeah whatever i rarely-actualy never log otu of ee so i do not to send this infomration


peace.png

thanks hg for making this much better and ty for my avatar aswell

Offline

#41 2019-03-25 20:13:35

Anatoly
Guest

Re: Recent Events & Accounts Restored!

Different55 wrote:
Crybaby wrote:
Different55 wrote:

We don't know that they have access to game files.

LukeM wrote:

We're as sure as we can be that the attacker does not have access to new account information, but we know that the attacker still has access to the database.

by game files I mean client files and by access to the client files I mean the ability to modify them, which is one of two ways that they could possibly get their hands on passwords.

if that's the case then it looks like the entire raid was planned. (not like someone accidentally found an issue and used it).

It looks like they knew about the issue and when they found a way to bypass the security.

Then they simply prepared everything to hit Xenonetix in the heart.

#42 2019-03-25 20:21:59

272
Member
From: Everywhere
Joined: 2015-08-26
Posts: 335

Re: Recent Events & Accounts Restored!

Anatoly wrote:

if that's the case then it looks like the entire raid was planned. (not like someone accidentally found an issue and used it).

It looks like they knew about the issue and when they found a way to bypass the security.

Then they simply prepared everything to hit Xenonetix in the heart.

No, really? I would have never guessed.


Despite what people say, Different55 is the best mod.

Offline

Wooted by: (3)
2721553541719743600

Board footer

Powered by FluxBB

[ Started around 1732211894.8724 - Generated in 0.077 seconds, 12 queries executed - Memory usage: 1.73 MiB (Peak: 1.97 MiB) ]