Page Index Toggle Pages: 1 2 [3] 4  Send TopicPrint
Very Hot Topic (More than 75 Replies) Exploits! (Read 38531 times)
Silky
Shroud Slacker
***
Offline



Posts: 1267
Joined: Dec 7th, 2011
Gender: Male
Re: Exploits!
Reply #50 - May 19th, 2013 at 10:14pm
Print Post  
sweez wrote on May 19th, 2013 at 7:13pm:
A bit long-winded but still informative if anyone's interested in some more details (and PW's banning policy): http://www.youtube.com/watch?v=nSHO1vjv6UY



Kripp is full of shit, he exploits early and often and knows the deal. He forgot his violin though. lol

Notice how he has to hold back the laughter all throughout his video.
« Last Edit: May 19th, 2013 at 10:18pm by Silky »  

Back to top
 
IP Logged
 
sweez
Abbot Raider
**
Offline


I Love Drama!

Posts: 764
Joined: Aug 29th, 2010
Re: Exploits!
Reply #51 - May 20th, 2013 at 5:37am
Print Post  
Sure he exploits, doesn't mean it's not interesting listening about how he got a permaban in GW2 that basically got reduced to a 72 hour ban because he's a streamer and ArenaNet want free publicity Cheesy

I'm pretty sure he got banned for exploiting the Pirate King bug though, the AH crap blew up later than that (and banning people for PK was pretty arbitrary, if they actually banned everyone who did it they'd have banned 3/4 of NW's endgame, if I exploited that with 4 other people and 3 of us got banned while the other 2 didn't I'd be pissed and amused at the same time as well Cheesy )

Anyway, didn't really seem to me like he was playing for sympathy or anything, just like he wanted to have a rant Huh
  
Back to top
 
IP Logged
 
sweez
Abbot Raider
**
Offline


I Love Drama!

Posts: 764
Joined: Aug 29th, 2010
Re: Exploits!
Reply #52 - May 20th, 2013 at 5:45am
Print Post  
Quote:
In the dark hours of this Sunday morning an in-game bug was discovered and taken advantage of by a very small group of villainous Nashers intent on exploiting Neverwinter's Open Beta Gateway and Auction House systems for unearned Astral Diamonds.


Jesus christ what a bunch of dipshits Cheesy

The bug has been in-game from BEFORE the game even officially went into open beta by all accounts (people say it's been reported AND streamed both in closed betas and early launch), yet they're lying to people to make it seem like they screwed up slightly less Cheesy

Quote:
Thanks in no small part to the efforts of our continually amazing Beta community, we were able to quickly identify the exploit and the perpetrators.


Yes, people turning cats into currency and then spamming zone chat, amazing community Grin

Quote:
Rather than let the malicious efforts of a few unsavory players linger and continually impact the game's economy and balance as we progress through these later stages of Open Beta, we have made the extremely difficult decision to rollback Neverwinter to a time shortly before the abuse and exploitation began.

This means that roughly seven hours of progress made between 5:20 AM and 12:20 PM Pacific Time will be lost to all players. For that, we do sincerely apologize.


Are they playing dumb on purpose or what Cheesy

At least they're trying I guess Cheesy
  
Back to top
 
IP Logged
 
JDollar
Completionist (i.t.p.)
******
Offline


Swarthy as fuck

Posts: 5380
Location: Uttering "death threats"!
Joined: Jun 24th, 2011
Gender: Male
Re: Exploits!
Reply #53 - May 20th, 2013 at 6:43am
Print Post  
Sounds like the chill shard dupping bug in ddo back in 06. only server roll back i remember
  

Quote:
J$ can take great pride that I think he's too revolting for words and will probably post "gtg cat on fire" if he joins a group I'm in.

Quote:
JD is easily the most genuinely mean person I've known

Quote:
SNAP!  Point for the Canadian!
notajedi wrote on Mar 14th, 2013 at 6:47pm:
JonnyD has had way better exploits.
Back to top
 
IP Logged
 
Flav
Vault Frog
*
Offline


One Frog to Rule them
All!

Posts: 9960
Location: Land of the Frogs
Joined: Aug 29th, 2010
Gender: Male
Re: Exploits!
Reply #54 - May 20th, 2013 at 7:38am
Print Post  
JDollar wrote on May 20th, 2013 at 6:43am:
Sounds like the chill shard dupping bug in ddo back in 06. only server roll back i remember


They didn't even rollback for it in Europe...
They just, we had 2 Week time lapse between US updates and European Ones... lots of time to add patches, and various hotfux. ( admitedly the time was supposed to be spent for translating in French and German as we had both clients from the begining )
  

Yes my avatar is an Hermine eating a Greenland Lemming for brunch.
Back to top
 
IP Logged
 
kum-gulp
VoD Slasher
*****
Offline


I Love Tired Vault Memes!

Posts: 1809
Joined: Jul 16th, 2010
Re: Exploits!
Reply #55 - May 20th, 2013 at 10:52am
Print Post  
I had to lol at this, negative AD bids indeed. How the hell did they miss that one?! Heard about it about five minutes after servers kicked everyone last night, as usual.
  
Back to top
 
IP Logged
 
sweez
Abbot Raider
**
Offline


I Love Drama!

Posts: 764
Joined: Aug 29th, 2010
Re: Exploits!
Reply #56 - May 20th, 2013 at 8:06pm
Print Post  
kum-gulp wrote on May 20th, 2013 at 10:52am:
I had to lol at this, negative AD bids indeed. How the hell did they miss that one?! Heard about it about five minutes after servers kicked everyone last night, as usual.


There was even a very similar bug in STO Cheesy
  
Back to top
 
IP Logged
 
Smrti
VoD Slasher
*****
Offline


I Am Fooling No One

Posts: 1920
Location: Denver
Joined: Oct 6th, 2010
Gender: Male
Re: Exploits!
Reply #57 - May 20th, 2013 at 11:25pm
Print Post  
stainer wrote on May 14th, 2013 at 11:38am:
Oh good.

At the end of the quest he turns into a monster called Wezergistan and bad mouths women.


Oooooooohhh... That's who that cunt was?
  

Munkenmo wrote on Jun 20th, 2012 at 9:41pm:
All hail Smrti.

Felgor wrote on Sep 11th, 2012 at 11:18pm:
Fuck Australia.

rev Jim wrote on Sep 12th, 2012 at 8:40am:
I wish I was a rich black woman sometimes........
Back to top
 
IP Logged
 
Asketes
Puppy Farmer
****
Offline


Perma

Posts: 1371
Location: California
Joined: Aug 16th, 2010
Gender: Male
Re: Exploits!
Reply #58 - May 21st, 2013 at 2:00pm
Print Post  
I've been pretty impressed with how they handle their problems publicly rather than hide behind a shroud of denial and malice.





Titles are meh but I've yet to apply one, the item not shown here is a new title "Caturday Survivor" which is some pretty good comic relief to a fairly serious flaw in their code.
  
Back to top
 
IP Logged
 
sweez
Abbot Raider
**
Offline


I Love Drama!

Posts: 764
Joined: Aug 29th, 2010
Re: Exploits!
Reply #59 - May 21st, 2013 at 3:16pm
Print Post  
So how the fuck do I make use of the fact that the XP booster is bound to account when I can't mail it and there's no account bank? Cheesy Cheesy
  
Back to top
 
IP Logged
 
sweez
Abbot Raider
**
Offline


I Love Drama!

Posts: 764
Joined: Aug 29th, 2010
Re: Exploits!
Reply #60 - May 21st, 2013 at 3:18pm
Print Post  
And while I like the fact that they seem to be kinda making fun of themselves, and not hiding behind a communications embargo, they're still dicks for trying to make it look like it was just one afternoon and that all was magically fixed with a 7 hour rollback and a handful of bans when the exploiting has been going on from 25.4. Smiley
  
Back to top
 
IP Logged
 
Luxgolg
Shroud Slacker
***
Offline


So many bugs

Posts: 1221
Location: Over there
Joined: Oct 2nd, 2012
Gender: Male
Re: Exploits!
Reply #61 - May 21st, 2013 at 3:22pm
Print Post  
Asketes wrote on May 21st, 2013 at 2:00pm:
I've been pretty impressed with how they handle their problems publicly rather than hide behind a shroud of denial and malice.


You're confusing it with DDO
  

Frog on all servers, but Cannith is home.
Back to top
 
IP Logged
 
Asketes
Puppy Farmer
****
Offline


Perma

Posts: 1371
Location: California
Joined: Aug 16th, 2010
Gender: Male
Re: Exploits!
Reply #62 - May 21st, 2013 at 4:35pm
Print Post  
Luxgolg wrote on May 21st, 2013 at 3:22pm:
You're confusing it with DDO


I was comparing them kind of subtly but not Wink
« Last Edit: May 21st, 2013 at 4:36pm by Asketes »  
Back to top
 
IP Logged
 
Asketes
Puppy Farmer
****
Offline


Perma

Posts: 1371
Location: California
Joined: Aug 16th, 2010
Gender: Male
Re: Exploits!
Reply #63 - May 21st, 2013 at 4:36pm
Print Post  
sweez wrote on May 21st, 2013 at 3:16pm:
So how the fuck do I make use of the fact that the XP booster is bound to account when I can't mail it and there's no account bank? Cheesy Cheesy


XP booster should be BTC iirc?
  
Back to top
 
IP Logged
 
mystafyi
Abbot Raider
**
Offline


I Love Drama!

Posts: 836
Joined: Nov 10th, 2010
Re: Exploits!
Reply #64 - May 21st, 2013 at 6:20pm
Print Post  
sweez wrote on May 20th, 2013 at 8:06pm:
There was even a very similar bug in STO Cheesy


Indeed there was.

This bug was known about for quite a long while though, many many weeks. Forum post about it was deleted just like turbine would do(and did).
  
Back to top
 
IP Logged
 
Silky
Shroud Slacker
***
Offline



Posts: 1267
Joined: Dec 7th, 2011
Gender: Male
Re: Exploits!
Reply #65 - May 22nd, 2013 at 2:40am
Print Post  
Here's a nice client side stamina hack: source2  and source1

I haven't tried it but I am pretty sure it works.


Quote:
dows.h>
#include <iostream>
#include <tlhelp32.h>
#include <tchar.h>

using namespace std;

HWND windowhandle=0;

DWORD modulebase=0;
HANDLE hopen=0;

HANDLE prozessauf();
DWORD GetModuleBase(LPSTR lpModuleName);
DWORD getadr(DWORD address, HANDLE hopen);
void setadr(DWORD address, int value, HANDLE hopen);


int main()

{   
    SetConsoleTitle("Neverwinter - Mageteleporthack - by Dragonef22");
    cout<<"Updated for 21.05.2013";
   
    while(true)
    {
    hopen=prozessauf();
    modulebase=GetModuleBase("GameClient.exe");
    DWORD adress=0;
    DWORD teleportadress=0;
    adress=adress+modulebase+0x024F50B0;     // GameClient.exe+startoffset
    adress=getadr(adress,hopen);
    adress=adress+0x244; // Offset Nr. 0
    adress=getadr(adress,hopen);
    adress=adress+0x6f8; // Offset Nr. 1
    adress=getadr(adress,hopen);
    adress=adress+0x18; // Offset Nr. 2
    adress=getadr(adress,hopen);
    adress=adress+0x9c; // Offset Nr. 3
    adress=getadr(adress,hopen);
    
    teleportadress=adress+0x244; // Teleportresource

    // Full Teleportresource = 1120403456 - set it
    setadr(teleportadress,1120403456,hopen);
    Sleep(1);
    }
}

   
HANDLE prozessauf()

{
    HWND hwar3=::FindWindow(NULL,"Neverwinter");
    DWORD PID, TID;
    TID = ::GetWindowThreadProcessId (hwar3, &PID);
    HANDLE hopen=OpenProcess( PROCESS_ALL_ACCESS|PROCESS_TERMINATE |PROCESS_VM_READ|
                  PROCESS_VM_WRITE,FALSE,PID);
    return hopen;
}


DWORD GetModuleBase(LPSTR lpModuleName)
{
    DWORD dwProcessId,TID;
    HWND hwar3=::FindWindow(NULL,"Neverwinter");
    TID = ::GetWindowThreadProcessId (hwar3, &dwProcessId);
    
   MODULEENTRY32 lpModuleEntry = {0};
   HANDLE hSnapShot = CreateToolhelp32Snapshot(TH32CS_SNAPMODULE, dwProcessId);

   if(!hSnapShot)
      return 0;
   lpModuleEntry.dwSize = sizeof(lpModuleEntry);
   BOOL bModule = Module32First( hSnapShot, &lpModuleEntry );
   while(bModule)
   {
      if(!strcmp( lpModuleEntry.szModule, lpModuleName ) )
      {
         CloseHandle(hSnapShot);
         return (DWORD)lpModuleEntry.modBaseAddr;
      }
      bModule = Module32Next( hSnapShot, &lpModuleEntry );
   }
   CloseHandle( hSnapShot );
   return 0;
}

// Value eines Adresswerts auslesen

DWORD getadr(DWORD address, HANDLE hopen)
{
    int value =0;
    ReadProcessMemory(hopen,(void*)address,&value,sizeof(value),0);
    return value;
}   
   
void setadr(DWORD address, int value, HANDLE hopen)
{
    WriteProcessMemory(hopen, (LPVOID*)(DWORD) (address), &value, sizeof(value), NULL);
    return;
}




« Last Edit: May 22nd, 2013 at 2:45am by Silky »  

Back to top
 
IP Logged
 
Asketes
Puppy Farmer
****
Offline


Perma

Posts: 1371
Location: California
Joined: Aug 16th, 2010
Gender: Male
Re: Exploits!
Reply #66 - May 22nd, 2013 at 3:56am
Print Post  
Just finished my C Programming class tonight, it's cool to see some source code outside of class and be able to understand some of it!
  
Back to top
 
IP Logged
 
sweez
Abbot Raider
**
Offline


I Love Drama!

Posts: 764
Joined: Aug 29th, 2010
Re: Exploits!
Reply #67 - May 22nd, 2013 at 6:08am
Print Post  
Asketes wrote on May 21st, 2013 at 4:36pm:
XP booster should be BTC iirc?


No idea what it was supposed to be, but mine says BtA Cheesy

  
Back to top
 
IP Logged
 
sweez
Abbot Raider
**
Offline


I Love Drama!

Posts: 764
Joined: Aug 29th, 2010
Re: Exploits!
Reply #68 - May 22nd, 2013 at 6:09am
Print Post  
Quote:
We believe that we have eliminated the majority of the currency that was earned through exploits. If you encounter a player that appears to have currency gained through exploitation, please feel free to report that player to us via the in-game ticket system.


Gunga should report Strake Grin
  
Back to top
 
IP Logged
 
Strakeln
Completionist (i.t.p.)
******
Offline


Lumberjack

Posts: 12345
Joined: Jun 27th, 2009
Re: Exploits!
Reply #69 - May 22nd, 2013 at 10:29am
Print Post  
Asketes wrote on May 22nd, 2013 at 3:56am:
Just finished my C Programming class tonight, it's cool to see some source code outside of class and be able to understand some of it!

That's C++, newb Tongue

Edit: are they teaching you how to build code, too, or is it just push-button compilation so far? That is a common problem... so many code monkeys coming out of college with no idea how to turn source into executables unless there is a button to press. Happened with me, I had never even heard of makefiles when I graduated. Seems mind-boggling now.
« Last Edit: May 22nd, 2013 at 10:35am by Strakeln »  

┌∩┐(◣_◢)┌∩┐
Back to top
 
IP Logged
 
Flav
Vault Frog
*
Offline


One Frog to Rule them
All!

Posts: 9960
Location: Land of the Frogs
Joined: Aug 29th, 2010
Gender: Male
Re: Exploits!
Reply #70 - May 22nd, 2013 at 1:24pm
Print Post  
Strakeln wrote on May 22nd, 2013 at 10:29am:
That's C++, newb Tongue

Edit: are they teaching you how to build code, too, or is it just push-button compilation so far? That is a common problem... so many code monkeys coming out of college with no idea how to turn source into executables unless there is a button to press. Happened with me, I had never even heard of makefiles when I graduated. Seems mind-boggling now.


It's all Visual Stuff nowadays... ( C#, C++, J++, Java, ... pick the one you like )

Give them a good ol' cc ( even a gcc ) in a shell on a Unix system and they are lost.

I won't even talk of when I start talking assembler... Usually I'm met with glazed eyes and a flat EEG.
  

Yes my avatar is an Hermine eating a Greenland Lemming for brunch.
Back to top
 
IP Logged
 
cdr
Horoluth Raider
****
Offline


sleetstormer

Posts: 2813
Joined: Dec 29th, 2011
Re: Exploits!
Reply #71 - May 22nd, 2013 at 1:45pm
Print Post  
Silky wrote on May 22nd, 2013 at 2:40am:
Here's a nice client side stamina hack: source2  and source1

I haven't tried it but I am pretty sure it works.



That's incredible. Not even Turbine is stupid enough to put that kind of stuff clientside.
  
Back to top
 
IP Logged
 
Asketes
Puppy Farmer
****
Offline


Perma

Posts: 1371
Location: California
Joined: Aug 16th, 2010
Gender: Male
Re: Exploits!
Reply #72 - May 22nd, 2013 at 2:08pm
Print Post  
Strakeln wrote on May 22nd, 2013 at 10:29am:
That's C++, newb Tongue

Edit: are they teaching you how to build code, too, or is it just push-button compilation so far? That is a common problem... so many code monkeys coming out of college with no idea how to turn source into executables unless there is a button to press. Happened with me, I had never even heard of makefiles when I graduated. Seems mind-boggling now.



There was plenty i did not understand, which is why I said mostly. C++ is still C, it's just the next ... iteration Wink. hahaha I kill myself.

We were using visual studio to compile. Our prof is the software security guy for one of our local aerospace companies.  We didn't do much with command line building and using using the make command, no. I've got a little experience doing that with Linux though.

EDIT: It was a fun class nonetheless and probably not a half bad introduction; not being fluent in C or any of it's subsets drastically prohibits me from knowing if it was a good intro or not but well, whatevers  Grin
« Last Edit: May 22nd, 2013 at 2:12pm by Asketes »  
Back to top
 
IP Logged
 
Asketes
Puppy Farmer
****
Offline


Perma

Posts: 1371
Location: California
Joined: Aug 16th, 2010
Gender: Male
Re: Exploits!
Reply #73 - May 22nd, 2013 at 2:10pm
Print Post  
Flav wrote on May 22nd, 2013 at 1:24pm:
It's all Visual Stuff nowadays... ( C#, C++, J++, Java, ... pick the one you like )

Give them a good ol' cc ( even a gcc ) in a shell on a Unix system and they are lost.

I won't even talk of when I start talking assembler... Usually I'm met with glazed eyes and a flat EEG.


Yeah, unfortunately we were being taught just basic fundamentals of the language rather than the rest. I sincerely doubt it's as relevant to be able to use a GNU compiler nowadays as it might have been in the past; though possibly still just as relevant. It's a good skill to have no doubt.

I didn't complain for receiving a free copy of Visual Studio.
  
Back to top
 
IP Logged
 
Strakeln
Completionist (i.t.p.)
******
Offline


Lumberjack

Posts: 12345
Joined: Jun 27th, 2009
Re: Exploits!
Reply #74 - May 22nd, 2013 at 2:30pm
Print Post  
Asketes wrote on May 4th, 1974 at 2:37pm:
I sincerely doubt it's as relevant to be able to use a GNU compiler nowadays as it might have been in the past; though possibly still just as relevant. It's a good skill to have no doubt.

There's not really any skill involved in the use of specific compilers, they all work about the same once you understand how to use them. For example, I typically support Windows and Linux with gcc, intel, and cl.exe (the Visual Studio compiler) all in the same makefile. Switching between compilers is a matter of syntax, not semantics.

As for the relevance of GNU, don't let others fool you. GNU has a distinct advantage over many other popular compilers: it's free. Compiler optimization nowadays tends to be based on hardware, which changes rapidly... thus requiring regular updates of compilers. That's a lot easier to do when there's no associated cost. Consider this: I work for a huge company with scads of money. We JUST updated to VS 2010... we've been riding on 6.0 forever. Pretty difficult to optimize code for today's CPUs when the compiler you're using thinks P4s are the top of the food chain. Intel, I'm still using 8.0. It also thinks P4s are hot shit, but updating to 13.0 (or whatever their latest tier is) would cost several thousands. Every year.

...or we could update gcc for free.
« Last Edit: May 22nd, 2013 at 2:31pm by Strakeln »  

┌∩┐(◣_◢)┌∩┐
Back to top
 
IP Logged
 
Page Index Toggle Pages: 1 2 [3] 4 
Send TopicPrint