Slashdot Mirror


Dark Age of Camelot European Server Compromised

Revz writes "The company in charge of the Dark Age of Camelot servers in Europe finally admitted they have been having security problems, after over a week of unusual happenings for the players of this PC MMORPG. Unknown people have been causing havoc with GM admin tools on live servers and have potentially gained access to account passwords. Sanya (the community relations manager from Mythic, who run the servers in the US) has commented on the whole thing in this thread on the DAoC Catacombs site, saying 'server security has never been compromised... there is an explanation for this that doesn't involve anybody breaking into databases or servers'. Pictures and videos of the situation on the European servers where multiple high level creatures were spawned can be found in this thread on an unofficial forum."

24 comments

  1. fp! by Anonymous Coward · · Score: -1, Troll
    GNAA (GAY NIGGER ASSOCIATION OF AMERICA) is the first organization which
    gathers GAY NIGGERS from all over America and abroad for one common goal - being GAY NIGGERS.

    Are you GAY ?
    Are you a NIGGER ?
    Are you a GAY NIGGER ?

    If you answered "Yes" to any of the above questions, then GNAA (GAY NIGGER ASSOCIATION OF AMERICA) might be exactly what you've been looking for!
    Join GNAA (GAY NIGGER ASSOCIATION OF AMERICA) today, and enjoy all the benefits of being a full-time GNAA member.
    GNAA (GAY NIGGER ASSOCIATION OF AMERICA) is the fastest-growing GAY NIGGER community with THOUSANDS of members all over United States of America. You, too, can be a part of GNAA if you join today!

    Why not? It's quick and easy - only 3 simple steps!

    First, you have to obtain a copy of GAY NIGGERS FROM OUTER SPACE THE MOVIE and watch it.

    Second, you need to succeed in posting a GNAA "first post" on slashdot.org, a popular "news for trolls" website

    Third, you need to join the official GNAA irc channel #GNAA on EFNet, and apply for membership.
    Talk to one of the ops or any of the other members in the channel to sign up today!

    If you are having trouble locating #GNAA, the official GAY NIGGER ASSOCIATION OF AMERICA irc channel, you might be on a wrong irc network. The correct network is EFNet, and you can connect to irc.secsup.org or irc.isprime.com as one of the EFNet servers.
    If you do not have an IRC client handy, you are free to use the GNAA Java IRC client by clicking here.

    If you have mod points and would like to support GNAA, please moderate this post up.

    This post brought to you by thedomina/hasek39, a proud member of the GNAA

    G_____________________________________naann_______ ________G
    N_____________________________nnnaa__nanaaa_______ ________A
    A____________________aanana__nannaa_nna_an________ ________Y
    A_____________annna_nnnnnan_aan_aa__na__aa________ ________*
    G____________nnaana_nnn__nn_aa__nn__na_anaann_MERI CA______N
    N___________ana__nn_an___an_aa_anaaannnanaa_______ ________I
    A___________aa__ana_nn___nn_nnnnaa___ana__________ ________G
    A__________nna__an__na___nn__nnn___SSOCIATION_of__ ________G
    G__________ana_naa__an___nnn______________________ ________E
    N__________ananan___nn___aan_IGGER________________ ________R
    A__________nnna____naa____________________________ ________S
    A________nnaa_____anan____________________________ ________*
    G________anaannana________________________________ ________A
    N________ananaannn_AY_____________________________ ________S
    A________ana____nn_________IRC-EFNET-#GNAA________ ________S
    A_______nn_____na_________________________________ ________O
    *_______aaaan_____________________________________ ________C
    um, dolor. Nunc nec nisl. Phasellus blandit tempor augue. Donec arcu orci, adipiscing ac, interdum a, tempus nec, enim. Phasellus placerat iaculis orci. Cras sit amet quam. Sed enim quam, porta quis, aliquet quis, hendrerit ut, sem. Etiam felis tellus, suscipit et, consequat quis, pharetra sit amet, nisl. Aenean arcu massa, lacinia in, dictum eu, pulvinar ac, orci. Mauris at diam tempor ante ullamcorper molestie. Ut dapibus eleifend ipsum. Nam dignissim.

    1. Re:fp! by Digital11 · · Score: 1

      Undoing mod.. somehow i hit interesting instead of troll.....

      --
      I am a leaf on the wind. Watch how I soar.
    2. Re:fp! by Anonymous Coward · · Score: 0

      A full grown stallion's cock, when fully erect, will measure some two to
      three feet long. It can be three to six inches thick at the base, to about
      two inches thick at the head. Horses are somewhat different from other
      animals in the way their cock head works. When a horse is fully erect and
      excited and ready to mount, his cock head is somewhat pointed and not as
      thick as might be normally observed. This is to facillatate an easier
      entry into the mare. After the horse has entered and reaches a climax the
      head swells (though it is more spongy then hard) into a fist sized mass as
      he ejacultates. It is thought that this serves as a plug to force the
      semen deep into the mare rather then allowing it to leak out. A full grown
      stallion can ejaculate about one cup ( 8 ounces ) of semen. It will take
      quite a few spurts to accomplish this. Each time his tail will raise and
      lower in a brief flick. The first few jets are of a thin to average
      consistency of cum. The final few jets are of a thick gelatinous
      substance... it is thought that this serves to "seal" the mares pussy so
      that the semen has time to do it's thing before leaking out. Horse semen
      is extremely viscous, if you touch your finger to a pool of it you can draw
      a thin string of it five to six feet long! Horse cum has a nice flat taste
      to it...not at all bitter like man's cum. You can easily drink cups of it
      with no discomfort.

      The Mare - how to do it.

      Mares can be quite satisfactory for the average well endowed male. If you
      are somewhat less developed you might find better pleasure with a pony or
      Miniature Horse. These are also better as they are lower to the ground. A
      pony you can fuck standing up. A miniature horse on your knees or
      squatting depending on the size. A mare will require something to stand on
      or "platform shoes"...(IE mini stilts to raise you a foot off the ground)
      so that you can reach her pussy.
      Fucking any horse will depend on the horse. Some will be ready right
      away...some will take coaxing. Pet the animal, talk to it softly, spend
      time with it gaining it's trust. If something you are doing upsets it then
      don't force it. Talk to it and calm it. If you work slowly you can make
      an animal accept anything. It is just a question of helping it overcome
      it's fears. All animals fear man if raised in the wild. How any animal
      reacts will depend on it's own experiences. If you haved raised the animal
      yourself in a loving enviroment, then you should have no problem
      associating with it, if it is a strange animal that you have met in the
      wild then you will have to go through an extended "courtship" to learn how
      to respond to the beast.

      MARES - TRAINING YOUR OWN

      When the filly reaches weaning age, seperate her from her dam. If you have
      limited time to spend then she should be put to pasture. If you have
      plenty of time then you should keep her in a stall. Spend time with her
      during the day petting and grooming her and allow her some time to run
      free. Limit her access to other horses though and see that she spends at
      least 8-12 hours a day in the stall. (Start with more free time and as she
      approaches her first birthday confine her more...she is now at the right
      age and her confinement will have made her so bored that she is amenable to
      any new experience so long as it is not unpleasant)Young fillys have no
      objection to someone playing with their pussy's. I have walked up on a pen
      full of strange fillys at night and they came right up to me and I petted
      them and felt up their pussys and they just lifted their tales and seemed
      to enjoy it. These fillys didn't even know me but they were young,
      inexperienced and bored...also since they were penned they were used to the
      presence of people and did not fear me. Most horses in a large pasture
      will run when they scent a strange human in their pasture at night.
      If you sit on the ground and wait patiently, they will get downwind of you
      and s

  2. This was no hack by JFMulder · · Score: 2, Funny

    It was the god in the game, sending Behemoths to eliminate all the infidels!

  3. in UK by benhuot · · Score: 0

    Isn't Camelot in the UK, not Europe.

    1. Re:in UK by Anonymous Coward · · Score: -1, Flamebait

      What the fuck are you smoking? Seriously.

    2. Re:in UK by wickedj · · Score: 0, Offtopic

      There's a lot of camels in Egypt...

  4. Sounds like the .Hack anime... by wickedj · · Score: 2, Interesting

    This is right out of .Hack where players in beginner areas are confronted with high-level creatures that shouldn't be there. I wonder if there is someone who isn't "bound" by the game rules, is not sitting in front of a pc while playing, and is currently in a comatose state. Of course, that last part could apply to a lot of people I know who play video games...

  5. Maybe someone was about to quit. by darkmayo · · Score: 3, Insightful

    Maybe an employee of GOA (the company running the european side of DAOC) was disgruntled logged in and used his GM toolset to spawn mobs and cause a bit of a ruckus before they quit.

    Seems the most plausible to me, since daoc has been the most stable and secure MMORPG release..(IMO) unlike a certain PVP centric one..

    --
    "I am a kernel in the linux army"
  6. Typical by gasaraki · · Score: -1

    DAoC continues to be a piece of shit.

  7. Movie link by Lord_Dweomer · · Score: 2, Informative
    For those who didn't want to search through that massive thread to find the video link, here it is.....be gentle!

    Some poor sop's FTP

    Heh, I was smart, waited to post this AFTER I downloaded it.

    --
    Buy Steampunk Clothing Online!
  8. Lock and Key by August_zero · · Score: 3, Interesting

    I wonder if the security for the current crop of MMORPGs is that much more lax than the older generation or is it that more people are gunning for them? I suspect that its a little of both. I remember back when I was playing AC there were a few cases of people messing up the servers (someone actually worked out how to crash an entire server) but I seem to recall that these troubles were from exploits in the game itself and not the actual work of any hackers.

    With these types of games becoming more and more popular, and the fact that we are getting closer and closer to the day that items in game will carry real legally recognized value (lawsuits over lost items, are already starting to appear and even if you find it absurd, it is what things are moving towards) It may become really expensive for companies to put out games that are not perfectly secure (and what is perfectly secure anyway?) How many years will i get for hacking in my own LongSword of Holocaust?

    --
    On Wall Street they say "buy low, sell high" On the pad we say, "buy high, sell high" Isn't that somehow better?
  9. I agree by Anonymous Coward · · Score: 0

    This game is hopeless. Total compromitation, not only for the server, but also for the client developers. What a shame. I am sure everyone will agree with me.

  10. Seriously by Anonymous Coward · · Score: 0

    What does this game have which is not already in Ultima? It is just a reinvention of a circle. Neet, but still a reinvention.

  11. These guys don't understand "security" by tc · · Score: 4, Interesting
    These guys clearly don't understand the meaning of the word 'security'. Literally. They say that security has not been compromised because there was no server break-in, and yet all these game-wrecking events are happening. Sounds like a security problem to me.

    The deal here is that security is an end-to-end process. It's not a single lock that gets picked, or a server that gets hacked. It's a whole system, which may involve a large number of human factors. It doesn't matter how security was breached, but if the assets are compromised (in this case game integrity), then there has been a security failure. Even if this didn't involve a direct attack on the server, it's no less of a security failure.

    1. Re:These guys don't understand "security" by TempeTerra · · Score: 1
      The deal here is that security is an end-to-end process. It's not a single lock that gets picked, or a server that gets hacked. It's a whole system, which may involve a large number of human factors. It doesn't matter how security was breached, but if the assets are compromised (in this case game integrity), then there has been a security failure. Even if this didn't involve a direct attack on the server, it's no less of a security failure.


      I agree. My experiences of MMORPGs (can't someone find a better acronym?) keep being spoiled by people messing with the server or somehow fscking with the clients. There's only one security solution... keep developers the hell away ;)
      --
      .evom ton seod gis eht
  12. I'm surprised by TechnoPope · · Score: 1

    I'm surprised that people not only keep playing these games, but that people keep signing up for them. Over the past couple of weeks, the security of MMORPG's has become somewhat of a joke. Ragnarok might as well be called Ragnahack because it's been compromised so many times. And now this. Even Microsoft does a better job of protecting their information.

    What gets me is that people are still signing up for these games. I personally haven't because the only one I've liked was RO, but I didn't have time to join. Now, I'll probably never join, based only upon the fact that their system has been severely compromised many times. How can someone be willing to pay money, every month, to play on a system that is probably open to attack. Sure a lot of the hacks have come in game, but if the game can be hacked, what is to stop them from actually getting my Credit Card or personal information. For me, it's just to risky to even join one of these games.

    --
    Slashdot...it's like Fox news, but without the biased sl...or maybe not.
  13. It's even worse by Yomar · · Score: 4, Interesting

    If you check out Barrysworld (http://forums.barrysworld.com/forumdisplay.php?s= b74713e616fe7316d4cbdc2f9963005d&forumid=160) you will notice that many users will never be able to retrieve their passwords, because they cannot update their e-mail addresses. After all, when RightNow (their customer support tool) will be up again they can't gain access to it, because the passwords have changed. So to get their password, these people need to change their profile. To gain access to their profile, they need to know the password. But they don't know the password, because the password was changed.

  14. In Mythic's defense... by wynterwynd · · Score: 3, Informative

    So far there have been no serious security compromises on the US DAOC servers, mostly just the occasional dupe item bug, player radar, or 'speed hack', which are almost always dealt with quickly. And they have always said their European servers were almost completely outsourced, which may not have been the best idea and I'm sure they regret to some degree now. So much of DAOC is server-side that I don't see how this could've happened unless a rebellious GM (or their account) was involved.

    --
    "Not all who wander are lost" -- JRR Tolkien
    1. Re:In Mythic's defense... by PainKilleR-CE · · Score: 4, Informative

      So far there have been no serious security compromises on the US DAOC servers, mostly just the occasional dupe item bug, player radar, or 'speed hack', which are almost always dealt with quickly

      I'm amazed they have problems with speed hacks after these were so well publicized in fps games (Half-Life, Quake 3, and other Quake-based games, UT managed to escape it due to player location synchronization and speed limitation being built into the server before the hacks even started). Radar and occasional dupe-item bugs are going to be problems for some time, but speed hacks, especially extreme cases, can be easily stopped.

      --
      -PainKilleR-[CE]
    2. Re:In Mythic's defense... by Auburn_Jack · · Score: 1

      My guess is that a developer of an MMOG isn't too concerned about a speed hack. After all, considering how games like EQ and DAoC operate (even in regards to PvP), the very worst it's going to do is unbalance the classes a little. MMOG's usually need to be designed for stat numbers rather than twitch.

  15. CC details safe, they reckon by Scorchio · · Score: 3, Informative

    In a further news article on the DAoC site :

    Your billing information is not stocked on our servers. Everything related to your money is handled by a billing partner specialised in online transactions. Your billing information is totally safe and isolated from the platform targeted by the recent attacks.

  16. Speed hacks aren't the problem by Anonymous Coward · · Score: 0

    Speed hacking is a nice parlor trick, but you can't actually use it to accomplish much in the game: the people you kill will rat you out to the in-game customer service reps, who will then hover invisibly and watch to see if you are cheating. If you are moving faster than you are supposed to it'll be pretty obvious and your account will be banned (effectively resulting in the permanent loss of all characters, gold and items in it, into which you can and usually will have invested hundreds of hours).

    "Money machine"-type bugs are very rare and are squashed quickly. Mythic claims to have alarms that start ringing whenever in-game money totals rise too fast or exceed trigger amounts. I can remember two occasions when all servers were taken down on short notice to correct dupe bugs. Mythic can also confiscate the ill-gotten gains or ban the accounts of the most flagrant abusers, although this was apparently not necessary in the cases I remember.

    The real problem is radar. Other than having the CSRs keep an eye on people accused of using it (ie, putting out nominally-invisible bait and seeing if they respond to it) there isn't much they can do. Server-side line-of-sight checks are computationally infeasible for servers that must support 4000 clients at once, and locking down the client software (to add encryption, say) is a hopeless arms race barring some future Palladium-like hardware horror.

  17. Stuff by E_elven · · Score: 1

    Well, EQ was reputedly written based on the ubiquitous DIKU-family of MUDs (some say the original EQ engine was actually a DIKU.) DIKUs have been out there for a long time and a lot of the bugs have been quashed. Then again, maybe you're right.

    --
    Marxist evolution is just N generations away!