Yay new security alert.
http://www.escapistmagazine.com/news/view/...n-Game-AccountsThe TL:DR version: Hackers have managed to get hold of 2 million NCSoft accounts through means unknown (probably though a trojan such as
Infostealer.Gampass but possibly through forums)
What this means for you: While browsing forums and the wiki I've seen a sharp rise in the number of people being banned for "payment fraud". It seems (although I'm awaiting confirmation) that the fraudsters log into the compromised PlayNC Master Account, buy an account of something with a bad creditcard or through paypal and charge back the payment hoping to get a free game from NCSoft presumably for botting purposes. NCSoft then close down the master account. Hello ban in every game and account.
NB: In general Guild Wars accounts seem to be untouched. It may be that NCSoft and ArenaNet have tightened up their security enough that Guild Wars is a harder target than the Master Accounts themselves.This post was made on Guru earlier today by Kuntz, a person who has been around in Guild Wars for a long time and is the creator of KSMod (approved by ArenaNet as a usable 3rd party mod). When the hackings that spawned this thread were at its height, he attempted to see how easy it was to get hold of people's credentials. Below is a section of his post.
QUOTE(Kuntz)
I acquired a total of 200,000+++ database accounts from various Aion and Guild Wars fansites. After writing some text parsers and other various tools to sort and consolidate them into one giant ass file, I had 185,000 e-mails with matching MD5 hashes and Salts in a format hashcat liked.
I then set out and downloaded some simple dictionaries, the two best ones were milw0rm's and Argon's List ver2. I made another text script to consolidate and remove duplicate words from the dictionaries, and once again, form a giant ass dictionary. I can't remember how many words there were, but it was something like 40 million.
So here we go, I have a Quad Core at 4.4GHz, 1680MHz memory at CAS 6, and a 4GHz QPI bus, and it took almost exactly 5 hours to dictionary attack all 185,000 accounts.
Now before I give you the stats, I want to explain to you my theory that I wrote down before I set out to do all this. My theory that was that 1% of fansite users are dumb enough to use the same email and password as their game accounts.
Boy was I wrong.
-185,000 forum/gamesite accounts (email and hash+salt)
-54,366 used easily guessed passwords (md5 cracked) (29.4%)
-Of those 54k, 10,900 were the same email/passwords as used on NCSoft accounts (20%)
In several hours over the course of a weekend, in my spare time, I gained access into 10,900 NCSoft accounts purely based on the stupidity of people using the same email/passwords on various fansites as their NCSoft account.
<other stuff removed>
So let this be a lesson to you all, don't be one of the 20% of morons out there that use the same password on dirty fansites like Guru and your game account. You will get hacked eventually, and all the A/V firewall spybuster software in the world wont protect you from being a dummy.
So while it won't save everyone's account (some people will just be unlucky :/), please make sure that email addresses and passwords stored on forums do not correlate to your Guild Wars, NCSoft or any other game accounts you may own as much as possible. It won't help if you've already been compromised but it will help in the future. Make passwords to games as long as possible with alphabetic and numeric characters that are not words. Run preventative measures on your OS and browser (such as NoScript on Firefox and Spybot Search And Destroy) so you minimise the chance of your system being compromised. Don't log in from systems you don't trust.
I hope I'm preaching to the choir
