|
You last visited: Today at 00:06
Advertisement
Access to Joymax main PC
Discussion on Access to Joymax main PC within the Silkroad Online forum part of the Popular Games category.
05/25/2011, 04:08
|
#16
|
elite*gold: 260
Join Date: Sep 2007
Posts: 959
Received Thanks: 156
|
the website doesn't really have direct access to the database. instead, it has an API that calls SP (standard procedure) that does the checking on the database. if the hacker is able to manipulate the calling of API's then he might be able to retrieve all the data from the database. but i doubt that this hacker is able to do so by himself
*just my 2 cents*
|
|
|
05/25/2011, 05:49
|
#17
|
Chat Killer In Duty
elite*gold: 5
Join Date: May 2008
Posts: 16,398
Received Thanks: 6,509
|
lets think, if Sony gots lost of users, even more than Silk; that play at their network for money, well, allow me to say it
Sony is WAY better protected and I guess the hacker that stoled their database had med experience.
Silkroad server files are a fortune, but i really doubt it compares with the money Sony has invested
|
|
|
05/25/2011, 05:51
|
#18
|
elite*gold: 0
Join Date: Sep 2010
Posts: 134
Received Thanks: 41
|
I think it's like when I meet my cousins.
Let me explain:
-They see my tattoo which is an spider with its web on my arm
-I start telling them I'm spiderman at night
-They just believe it xD
I agree in the part that this kind of persons who has an incredible "gift" wouldn't ever in their life try to hack an mmo's database... as you all said they would go after credit cards, real money... not 32 (whatever) billons or x amount of items.
I'd do that too if I had that gift (who agree? xD)
But, there is something that you all have to take into account: server topography.
It was in one of pushedx posts at gamedev.net I think... so I'm pretty sure if you want to get access to their database you've to go through tons of other servers and yeah, I'm pretty sure each hosts they have, have their own security (look at server speeds and latency).
To sum up! he was high or he just wanted to "show you his tattoo". xD
|
|
|
05/25/2011, 07:19
|
#19
|
elite*gold: 260
Join Date: Sep 2007
Posts: 959
Received Thanks: 156
|
Quote:
Originally Posted by bootdisk
I think it's like when I meet my cousins.
Let me explain:
-They see my tattoo which is an spider with its web on my arm
-I start telling them I'm spiderman at night
-They just believe it xD
I agree in the part that this kind of persons who has an incredible "gift" wouldn't ever in their life try to hack an mmo's database... as you all said they would go after credit cards, real money... not 32 (whatever) billons or x amount of items.
I'd do that too if I had that gift (who agree? xD)
But, there is something that you all have to take into account: server topography.
It was in one of pushedx posts at gamedev.net I think... so I'm pretty sure if you want to get access to their database you've to go through tons of other servers and yeah, I'm pretty sure each hosts they have, have their own security (look at server speeds and latency).
To sum up! he was high or he just wanted to "show you his tattoo". xD
|
L0L, i like your reply.
Also, from what I know, most databases are on a different VLAN. It's either this so called hacker was able to penetrate the specific server which has direct access to the DB or the hacker had VPN access to RDP into the DB. hahahahaha
|
|
|
05/27/2011, 11:56
|
#20
|
elite*gold: 0
Join Date: Apr 2007
Posts: 9
Received Thanks: 1
|
Finding database shouldn`t be that hard for a experienced hacker. You can just use the sro_client.exe and reach it 
But i can`t say its something easy to hack into it
|
|
|
05/27/2011, 14:39
|
#21
|
elite*gold: 19
Join Date: Aug 2007
Posts: 2,731
Received Thanks: 1,801
|
Quote:
Originally Posted by evrenoguz
Finding database shouldn`t be that hard for a experienced hacker. You can just use the sro_client.exe and reach it 
But i can`t say its something easy to hack into it
|
Im not very experienced when it comes to these things but how the **** would the client be able to do that ?
i can just think of exploiting, tricking the server (youre connected to) into changing stuff in the database
Or did i missunderstand you completely ?
|
|
|
05/27/2011, 21:19
|
#22
|
elite*gold: 0
Join Date: Mar 2008
Posts: 135
Received Thanks: 12
|
That could work if he would be able to send packets via client to the server. Packets with code that will add his account and will give him remote acces to server so he hack do things like that.
|
|
|
05/27/2011, 21:38
|
#23
|
elite*gold: 19
Join Date: Aug 2007
Posts: 2,731
Received Thanks: 1,801
|
Quote:
Originally Posted by Zarielos
That could work if he would be able to send packets via client to the server. Packets with code that will add his account and will give him remote acces to server so he hack do things like that.
|
Not possible :/
|
|
|
05/27/2011, 21:47
|
#24
|
elite*gold: 3
Join Date: Nov 2009
Posts: 825
Received Thanks: 329
|
This is a cool discussion
actually im not sure if the guy was able to do that^^
|
|
|
05/27/2011, 22:35
|
#25
|
elite*gold: 0
Join Date: Jun 2007
Posts: 137
Received Thanks: 11
|
bump for the guy that make the Thread :P
well i can see most of u say´s its impossible, i agree to, im sure ppl with enought skills to do that wont hack a noobie game like this one.
|
|
|
05/27/2011, 23:03
|
#26
|
elite*gold: 0
Join Date: Oct 2010
Posts: 401
Received Thanks: 102
|
Calm down i know a guy in ZSZC had 2 chars with that nicknames "|||||" ||||" he got acces to zszc db :P i saw a pic he got sos sword 11dg ... with stats at mag and phy "-1" ... So that is possible !
|
|
|
05/27/2011, 23:08
|
#27
|
elite*gold: 0
Join Date: Jan 2010
Posts: 1,484
Received Thanks: 809
|
@evrenoguz You do know that the sro_client only connects to the gateway/agentserver right?
I'm pretty sure you can't "hack" the database with the sro_client since it only uses a service which is provided by joymax. I bet that the login server doesn't use the database directly but goes trough a few layers of security first to filter anything which isn't correct and the same for the agent server.
But I guess that there is a better chance at hacking the remote access things or some other backdoor at a server or locate the actual database server which is probably not available for the outside. So you have to gain access to a machine which is able to get data from the database logon to that database make a little rip of that thing steal all their files.
About that gold thingy which you could change at the website is that really what happend:S cause it doesn't sound like very likely since they have those databases completly separate from eachother at least that's what you want if you're hosting such game.
well anyway good luck hacking joymax but it would be very unlikely if you just walk trough their front door and steal their database you really have to find a backdoor mabye it is in the login server which has a secret packet who knows mabye their webserver software is outdated and has a backdoor.
|
|
|
05/28/2011, 00:58
|
#28
|
elite*gold: 0
Join Date: Apr 2009
Posts: 1,300
Received Thanks: 952
|
Quote:
Originally Posted by kevin_owner
@evrenoguz You do know that the sro_client only connects to the gateway/agentserver right?
I'm pretty sure you can't "hack" the database with the sro_client since it only uses a service which is provided by joymax. I bet that the login server doesn't use the database directly but goes trough a few layers of security first to filter anything which isn't correct and the same for the agent server.
But I guess that there is a better chance at hacking the remote access things or some other backdoor at a server or locate the actual database server which is probably not available for the outside. So you have to gain access to a machine which is able to get data from the database logon to that database make a little rip of that thing steal all their files.
About that gold thingy which you could change at the website is that really what happend:S cause it doesn't sound like very likely since they have those databases completly separate from eachother at least that's what you want if you're hosting such game.
well anyway good luck hacking joymax but it would be very unlikely if you just walk trough their front door and steal their database you really have to find a backdoor mabye it is in the login server which has a secret packet who knows mabye their webserver software is outdated and has a backdoor.
|
To get back at your webserver statement.. hmm maybe it is outdated, you know after all these years they still dont support chrome.. well i know thats code wise but im sure they didnt update their webserver for a long time...
But on the other hand Joymax seems to know how to protect their files soooo good, only 2 people got the files so far maybe 3 or 4 but not more then 10 people got their files by hacking them or something.
I think their Database/files are far away.. by far away i mean; just a few servers before you can even get close to them, but it shouldnt be impossible to acces it since like people said.. : Sony's PSN got hacked so why cant we get into Joymax' servers?
It's just that people here don't wanna work together, the hacker which got PSN data is in bigger trouble then the guy which would hack JMX and ohh it should be possible to do it the same way like they did on PSN... Get Amazon cloudserver thing and attack from there.
But this story... I don't think he has any acces.. he just bought gold ;P
|
|
|
05/28/2011, 06:57
|
#29
|
elite*gold: 844
Join Date: Oct 2010
Posts: 839
Received Thanks: 192
|
yeh if all hackers work together they will get the db/sf but they dont wanna to do that i dont know whay !!!!
|
|
|
05/28/2011, 19:34
|
#30
|
elite*gold: 0
Join Date: Apr 2007
Posts: 9
Received Thanks: 1
|
what im saying is every movement you make in the game is recorded by database so you can access ip`s or some adresses i`m saying. Im not just telling that you get some hack program and click on sro_client.exe then wuhoo you are in!. To find your server adresses you have to use client
|
|
|
Similar Threads
|
[Tutorial] How to Call Joymax/Anleitung um Joymax anzurufen
08/03/2010 - Silkroad Online - 24 Replies
Required:
Joymax Phone number : +14084325038
Free Phoning service: VoipCheap - FREE CALLS to regular phones over the internet!
Write your phone number in : "Your Phone Number" and Joymax's one in: "Destination Phone number", now click on Make a Call and you will be connected to them.
Yo123
Nötige Sachen:
Joymax Telefonnummer: +14084325038
Gratis Vermittler: VoipCheap - FREE CALLS to regular phones over the internet!
|
Joymax Selfowned Servers are crowded because of joymax itself !!
06/19/2009 - Silkroad Online - 24 Replies
Hi Guys ,
First of all Some of you already think that Newb chars at constant city and some at donwhang are Joymax's characters .
Some other people claim that joymax can decrease server capacity if they wanna force us to charge premiums .
Well all opinions are respected
But look carefully at this print screen
|
All times are GMT +1. The time now is 00:07.
|
|