0. In game mail and speed hacks 06/22/2009 11:08:07 AM PDT
Hello,
Recently, I have encountered more and more players using some kind of hacks program. The 3 most obvious ones:
1. Receiving in game mail from a supposedly "guildy" asking us to download some .exe program.
2. I noticed that my new mail is grey, as if I already opened it., which I haven't
3. I encounter some players using some kind of speed hacks. They appear jumpy and they run faster than me on 280% flying mount. I can't catch their name since they move so fast.
I am concern that there's a vulnerability in the email system. Now, they seem harmless, but I am afraid they will be able to access and got the content of the mail(and the item attachment) later.
The speed hacks destroys the experience of gathering resource. There should be a built in mechanism on the server for this. For example, if one mines an ore at location x at t1 and later mines another one at location y at t2. The server must enforce that the elapse time between t1 and t2 are within the parameter that the games allowed (i.e max 280% speed). If it's not, then perma ban!!!
5. Re: In game mail and speed hacks 06/22/2009 01:05:32 PM PDT
Q u o t e:
2. I noticed that my new mail is grey, as if I already opened it., which I haven't
You may have a mod that does this. I know for a fact that BeanCounter (which is standard with Auctioneer) will open and read all AH mail before you get a chance to see it,
6. Re: In game mail and speed hacks 06/22/2009 02:25:32 PM PDT
Q u o t e: 1. Receiving in game mail from a supposedly "guildy" asking us to download some .exe program.
Note this has been running rampant on my server lately as well, and it isn't a hack of the mail system. The "guildy" is actually a new character named similarly to someone in your guild, usually with a special í (Alt-0237). They mine armory for large guilds, find the highest ranking member (usually a GM or officer) with an i in their name for whom that alternate name isn't taken, create the character, and spam that guild, "Hey my brothers" and a link to an exe. My own guild hasn't had anyone stupid enough to open that exe, but another guild on my server had their guild bank cleaned out when a member fell for the ruse and downloaded the keylogger.
Blizzard should probably post a general notice about this, and a reminder NEVER to visit an executable web link sent to you in game, even if it appears to be from a guildmate, because for now the hack attempts are following a very basic and very strict pattern.
7. Re: In game mail and speed hacks 06/22/2009 04:09:53 PM PDT
Q u o t e:
Note this has been running rampant on my server lately as well, and it isn't a hack of the mail system. The "guildy" is actually a new character named similarly to someone in your guild, usually with a special í (Alt-0237). They mine armory for large guilds, find the highest ranking member (usually a GM or officer) with an i in their name for whom that alternate name isn't taken, create the character, and spam that guild, "Hey my brothers" and a link to an exe. My own guild hasn't had anyone stupid enough to open that exe, but another guild on my server had their guild bank cleaned out when a member fell for the ruse and downloaded the keylogger.
Oh that makes sense. Yup, none of our member fell into this as well. In game mail is text based, hence it's hard to hide the glaring "wow.exe". I am sorry to hear other got hacked
8. Re: In game mail and speed hacks 06/22/2009 04:49:58 PM PDT
I myself have personally seen the speed/flight hack in WG. I was trying to mine one day and this level 70 rogue was flying through the air at 300% speed at least and auto mining nodes somehow. There was no point in me mining if he could simply zoom around taking nodes like that. I reported him and said 'they'd look into it' yet I saw him the next day doing the same thing.
10. Re: In game mail and speed hacks 06/22/2009 06:58:48 PM PDT
One thing to bear in mind: Some rare mounts (notably the Glory of the Raider mount rewards) are actually faster than standard epic flying mounts. I believe Ashes of Alar is the same, and possibly the Gladiator mounts. Are you certain these fast flyers aren't simply using one of these mounts?