[REQUEST]DP Injection Fix

04/27/2012 22:21 johnnyhh#1
Hello

Noticed lately that there is a method out there that allows players to recharge there DP from in game. They keep popping every day and start finding players with huge amounts of DP. As far as i know it's done by injection and the player needs to already have some DP to start with and judging by the ip patterns they are all from Philippine. I don't know if everyone else knows about it but i doubt it's an isolated problem, you might want to check for DP on accounts or the mall history. Anyways i think it's a huge security treat to everyone and it worth looking in to it.
04/28/2012 15:53 JohnHeatz#2
To be honest I hadn't heard about this in the past, mostly taking into account that points are server sided as that information is merely stored in the database; yet it will be needed to check about this in the case that there is any kind of glitch that can be exploited to do this.

Some questions needed to ask are though:
  • What episode is your server?
  • Did you use any of the databases released in here?
  • What actiontype is showed when those toons are doing this?
04/28/2012 18:24 johnnyhh#3
Hi again

Well thanks for taking interest in this issue and i think the reason no one heard about it is that is pretty much recent and as far as i notice i think this method hasn't been released to the public and for the moment it is used only by a few ppl. Access to the database is impossible from my point of view since the SQL server is accessed by the game server thru local area connection and this made me think that it has to be some kind of injection or access to some stored procedures somehow.
The game is ep 5 and the database that i'm using is the one released by KillSteal and i think is the one who most of us use. Didn't think at looking in to actiontypes since 90% of them i don't understand what they mean, will post some if i find anything on those accounts.

Thanks Again
05/01/2012 11:35 johnnyhh#4
Here is something in found interesting in GameLog, it might mean smt or nothing at all since ActionTypes are a bit of a mystery to me.

[Only registered and activated users can see links. Click Here To Register...]
05/01/2012 17:54 ·Tyler·#5
It would be of more use if we could read it. :p

Tyler
05/01/2012 20:40 VIAT#6
Quote:
Originally Posted by johnnyhh View Post
Here is something in found interesting in GameLog, it might mean smt or nothing at all since ActionTypes are a bit of a mystery to me.

[Only registered and activated users can see links. Click Here To Register...]
um can't really see it but are you talking about whats in the middle part with the 10+ number in it?