90305 Accounts

08/06/2020 21:50 daprise#1
Hi,

is there any method to log on locked accounts (90305) on official FlyFF server?
It would just be, to get the Stuff from the Account back.


German:

Hi, gibt es irgendeine Methode wie man sich unabhängig eines Bannes 90305 auf einen Account Zugriff haben kann? Es geht nicht darum mit dem Account weiterzuspielen eher nur um die Gegenstände welche sich drauf befinden wieder zu erlangen.


Best regards
08/06/2020 23:15 netHoxInc#2
Yes. There's surely a method, but it would probably get you caught pretty fast aswell.

So take the answer as a theoretical one, not a practical one.

You wont be able to get those items back & stay safe.
08/08/2020 22:48 TheAllfather#3
People always said there was a method, but no one could really excerise it (yet). I know there was a method on private serves long time ago with cheat engine
08/09/2020 00:53 netHoxInc#4
Quote:
Originally Posted by TheAllfather View Post
People always said there was a method, but no one could really excerise it (yet). I know there was a method on private serves long time ago with cheat engine
There's a exploit in a serversided callback which allows modifications on that end. Wont go into details, it's been tested on a private local v21.2 setup and i go no doubt's that it'll still work on the current version of the game.

The reason why no one yet used it or even spoke about it much is simple aswell, there has no good use been found for it yet, the codespace is limmited to a certain amount of bytes, allowing some painful and impacting attacks, but none that would profit the hacker/attacker in any way apart of dealing damage to the server.

Combine this with the fact that the Exploit is not an undercover process in any way, as it broadcasts a message which even reveals the manipulated code parts, it would be rather stupid to use it at all, unless you find somethinig useful for a 'One-Time-Possibility'-Attack.

Cheers.
08/09/2020 10:13 TheAllfather#5
Quote:
Originally Posted by netHoxInc View Post
There's a exploit in a serversided callback which allows modifications on that end. Wont go into details, it's been tested on a private local v21.2 setup and i go no doubt's that it'll still work on the current version of the game.

The reason why no one yet used it or even spoke about it much is simple aswell, there has no good use been found for it yet, the codespace is limmited to a certain amount of bytes, allowing some painful and impacting attacks, but none that would profit the hacker/attacker in any way apart of dealing damage to the server.

Combine this with the fact that the Exploit is not an undercover process in any way, as it broadcasts a message which even reveals the manipulated code parts, it would be rather stupid to use it at all, unless you find somethinig useful for a 'One-Time-Possibility'-Attack.

Cheers.
There could be a good use for it. Some Accounts do have as example a huge amount of duped items which could be in IRL money 5.000+ EUR or have unique items like GM awakes.

I personally would also buy a 'unban' service if there was any for official.
08/10/2020 23:20 daprise#6
the main reason is that i am like a lot of other guys who are banned from different reasons and only want to get her stuff back. They bann all ur Accounts perm for diffrent reasons like realmoneytrade or trading with duped Stuff from Market or or or but 5 Years ago they only banned the Account wo has make or trade but meanwhile they bann all Accounts on the same IP adress. Normally in the past they give a strike on you if it was your first mistake but meanwhile they give instant a perm bann.
08/13/2020 02:04 TheAllfather#7
Quote:
Originally Posted by daprise View Post
the main reason is that i am like a lot of other guys who are banned from different reasons and only want to get her stuff back. They bann all ur Accounts perm for diffrent reasons like realmoneytrade or trading with duped Stuff from Market or or or but 5 Years ago they only banned the Account wo has make or trade but meanwhile they bann all Accounts on the same IP adress. Normally in the past they give a strike on you if it was your first mistake but meanwhile they give instant a perm bann.
I doubt there is one for official atm and if someone really knew a method, I dont think they would reveal it or offer the service for free.

I was thinking at one point you could maybe login the 'character' by login on into another account changing of a character the character ID, Name and Account ID.

But unfortunately theres another Authenticaton key which is required for you to that. Maybe you find a method to generate it? Apparently its randomly generated everytime u login on a account.
08/17/2020 15:48 jooodzszsz#8
Quote:
Originally Posted by netHoxInc View Post
There's a exploit in a serversided callback which allows modifications on that end. Wont go into details, it's been tested on a private local v21.2 setup and i go no doubt's that it'll still work on the current version of the game.

The reason why no one yet used it or even spoke about it much is simple aswell, there has no good use been found for it yet, the codespace is limmited to a certain amount of bytes, allowing some painful and impacting attacks, but none that would profit the hacker/attacker in any way apart of dealing damage to the server.

Combine this with the fact that the Exploit is not an undercover process in any way, as it broadcasts a message which even reveals the manipulated code parts, it would be rather stupid to use it at all, unless you find somethinig useful for a 'One-Time-Possibility'-Attack.

Cheers.


Its not possible. You are talking about the SQL-Injection in the set guildname functions.
But the limitation of 42 chars in the SQL-Injection isnt enough to do anything.
08/19/2020 17:32 TheAllfather#9
Quote:
Originally Posted by jooodzszsz View Post
Its not possible. You are talking about the SQL-Injection in the set guildname functions.
But the limitation of 42 chars in the SQL-Injection isnt enough to do anything.
Maybe he is confused or doesnt know what we talking about lolz.

Unban method would be op considering how much money u could make with it by unbanning players.