![]() |
|
|||||||
| Notice |
| Security Discussion relation to Entropia Universe account security. |
![]() |
|
|
LinkBack | Thread Tools |
|
|
#1 | ||||||
|
Young
|
I saw this article on a hacking conference that says money can be lifted off avatars using a streaming video flaw. Since EU also uses streaming video for ads the same hack could be used here. I'm turning off streaming video until MA or some tech people here on the forum look into.
Streaming Media vulnerability Buk Last edited by YoBuk; 02-17-2008 at 16:51. Reason: fix URL |
||||||
|
|
|
|
|
#2 | |||||||
|
EntropiaForum Owner/Admin
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]()
|
Quote:
|
|||||||
|
|
|
|
|
#3 | |||||||
|
Old Alpha
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]()
Posts:
Gender:
Ingame: ![]() Avatar Name:
Casay Casay Onyx Soc: Damage Inc.
Location: USA
EFD: 10,786.75
|
Quote:
![]() |
|||||||
|
|
|
|
|
#4 | ||||||
|
Young
|
Thanks for the reply 711, I went to the Wiki link you gave preparing to feel all better, but the last sentence made me feel it would be even easier to hack then Quick time.
"The codec places emphasis on lower decoding requirements over other video codecs with specific optimizations for the different computer game consoles it supports" Last edited by YoBuk; 02-17-2008 at 17:06. Reason: speling |
||||||
|
|
|
|
|
#6 | ||||||
|
Elite
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]()
|
even if media were streamed using Quicktime, i dont think this would have any direct impact since we dont have the user generated content in EU that SL does. You cant access someones Ped card as you might in SL to take a payment for a service.
Everyone should be far more concerned about the use of this Quicktime vulnerability for general virus/trojan/keyloggers. If you have Quicktime get patched asap and be carefull where quicktime movies come from before opening. |
||||||
|
__________________
OFFICIALLY a Pirate consider a cockup before a conspiracy |
|||||||
|
|
|
|
|
#7 | ||||||||
|
EntropiaForum Owner/Admin
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]()
|
Quote:
Bink technology has been used in over 3600 games, and there have not been any reports of major issues related to hacking as the article you provided describes. I would thus say your concerns about the potential of an EU avatar being hacked via this method pretty unlikely, especially considering that the database transactions are probably totally unrelated to avatar and video animations. Quote:
As always, security best practices should always be employed on any PC used for monetary or highly sensitive communications. Further, every participant in EU with an avatar worth more than say 1000 PED should invest in a Gold Card to increase the security of their account. |
||||||||
|
|
|
![]() |
| Bookmarks |
| Thread Tools | |
|
|
| EntropiaTracker.com Loot Trends | ||
| Hunting Loot: - -12.92 % | Mining Loot: + 19.9 % | Crafting Loot: - -19.14 % |