WTF Items stolen directly from your inventory? - Page 4 - SLUniverse Forums
 
Navigation » SLUniverse Forums > Community Discussion > General SL Discussion » WTF? Items stolen directly from your inventory?


General SL Discussion Discuss topics related to Second Life

Reply
 
LinkBack (1) Thread Tools Display Modes
Old 11-16-2008, 01:51 AM   #76 (permalink)
Is a bastage!
 
Macphisto Angelus's Avatar
It puts the lotion on it's skin!!
 
Join Date: May 2008
Location: Cali
Posts: 3,066
My Mood:
SL Join Date: 10-21-2004
Right now OpenLife is set up where bots cannot log in. No copybot can enter. This is NOT a plug for OpenLife.. this is just a sad post that says it is VERY much something LL can do to prevent some of this theft. But, as long as those other bots are giving them the illusion of log in numbers they will let it ride.

Copybot can be stopped for joe kiddie hacker. LL just has more to lose on it's end by putting the plug in place I suppose.
__________________
If life is just a joke, why aren't we laughing?



Macphisto Angelus is offline   Reply With Quote
1 User Laughed:
Old 11-16-2008, 02:18 AM   #77 (permalink)
Senior Member
 
Rebel Television's Avatar
I want my RTV
 
Join Date: Dec 2007
Posts: 575
My Mood:
SLShopper Ads: 1
Business: ChibiTech
How do they prevent bots from logging in? The only method I could think of is a Punkbuster-type verification tool that checks the client executable against the current version to see if its exactly the same.
Rebel Television is offline   Reply With Quote
1 User Said Thanks:
Old 11-16-2008, 02:21 AM   #78 (permalink)
Wired Faerie
 
cala's Avatar
 
Join Date: Mar 2008
Location: RP Faerie
Posts: 29
SL Join Date: 03-28-2006
Business: Noumenon
Quote:
Originally Posted by Macphisto Angelus View Post
Right now OpenLife is set up where bots cannot log in. No copybot can enter.
Shenanigans. Link proof, or you're full of it.

Proof: I can log in to both Second Life *and* any OpenLife sim with a production LL client, any opensource-built current client, any one of the 3 bot engines I test, tweaked versions of AjaxLife (running on my machines), and most importantly, any LibSL-based client including any that might or might not have copybot features. There is no block on "channel" in OpenLife, and even if there was, that's 2 seconds of work to spoof.
There is no copybot-blocker in OpenLife, and never was.
cala is offline   Reply With Quote
2 Users Said Thanks :
Old 11-16-2008, 03:25 AM   #79 (permalink)
The Purple
 
Chalice Yao's Avatar
Kinda at work. Somewhat.
 
Join Date: Dec 2007
Location: Somewhere purple, Germany
Posts: 3,096
My Mood:
Quote:
Originally Posted by Macphisto Angelus View Post
Right now OpenLife is set up where bots cannot log in. No copybot can enter.
I have to agree with the others. Wrong. You can't prevent it, sorry to say it. And if no copybot can log in, the functionality is patched into a normal client into a matter of hours, if that.
Chalice Yao is offline   Reply With Quote
1 User Said Thanks:
Old 11-16-2008, 08:11 AM   #80 (permalink)
Senior Member
 
Tary Allen's Avatar
still rezzing ...
 
Join Date: Nov 2007
Location: Portugal
Posts: 397
My Mood:
SL Join Date: 2007-03-27
I have to start looking at the posts date, for almost 2 minutes I was really alarmed , and was ready to log and start tooking things back to inventory.
__________________
"This is an important announcement. This is flight 121 to Los Angeles. If your travel plans today do not include Los Angeles, now would be a perfect time to disembark."
Douglas Adams (1952 - 2001), "So Long and Thanks For All The Fish"
Tary Allen is offline   Reply With Quote
1 User Laughed:
Old 11-16-2008, 08:29 AM   #81 (permalink)
Doing stuff
 
WarKirby Magojiro's Avatar
Happles!
 
Join Date: Sep 2007
Location: Glasgow, Scotland
Posts: 2,778
My Mood:
SLShopper Ads: 1
SL Join Date: 14/10/2006
Business: MagoTek Industries
Mac, what the hell are you talking about? We're going to need some more clarification of these claims.

Also, Cris, what happened to that automatic 45 day thread lock? This one is 5 months old
__________________
Wounds, both physical and mental, heal in time. bones reknit, therapy and drugs make you forget. Life goes on.
But nothing cures death. Please remember this.


Quote:
"Beware he who would deny you access to information, for in his heart he dreams
himself your master."
WarKirby Magojiro is offline   Reply With Quote
1 User Said Thanks:
Old 11-16-2008, 05:03 PM   #82 (permalink)
Is a bastage!
 
Macphisto Angelus's Avatar
It puts the lotion on it's skin!!
 
Join Date: May 2008
Location: Cali
Posts: 3,066
My Mood:
SL Join Date: 10-21-2004
What clarification do you want, War?

As of now there is some way that they can block a port bots use. Things have to come through a viewer type connection. OLG is not the only one that can do this either.. others are.

First clue I had it was going on was when someone came to the forums mad because they could not get their libsl based bot in to use as an "NPC". It was said then this was going on and was said at least three times in meetings over the last month or so.

So, if they are doing it LL likely can to. Want specifics? sakai (@) openlifegrid.com may get time to fill it all in. He is pretty hammered right now but if he has a chance I am sure he can answer.

Part of Lilybeth Filth's Legend City spamming on our forums said they could do it too so maybe Lala over there can explain. Not my area of knowledge but when people say they can't log in with bots I have to think it is happening.


Can it be gotten around? Hell, probably but for those who don't know the ways around it stops them.

Let me know what you find out.



Quote:
Originally Posted by WarKirby Magojiro View Post
Mac, what the hell are you talking about? We're going to need some more clarification of these claims.

Also, Cris, what happened to that automatic 45 day thread lock? This one is 5 months old
Macphisto Angelus is offline   Reply With Quote
Old 11-16-2008, 05:06 PM   #83 (permalink)
Is a bastage!
 
Macphisto Angelus's Avatar
It puts the lotion on it's skin!!
 
Join Date: May 2008
Location: Cali
Posts: 3,066
My Mood:
SL Join Date: 10-21-2004
Quote:
Originally Posted by Chalice Yao View Post
I have to agree with the others. Wrong. You can't prevent it, sorry to say it. And if no copybot can log in, the functionality is patched into a normal client into a matter of hours, if that.

K... let me repeat. Not my area of knowledge. But the grids claiming this is possible may be able to explain. As of now.. I accept it as fact when I see people saying they can't do it.

OH, and I can ask what is happening but you all have the knowledge of what would make it possible or impossible so better for one of you coders to ask. Nothing I come back with will be considered less then shenanigans or whatever.

Also one final note: Soon OLG will only accept log ins from it's own KirstenLee made viewer as a further security measure.
So do you coders think this is possible or BS?

And don't shoot the messenger here, I am only going by what I have seen posted and heard in meetings. Thanks to Warkirby and Chalice and others who asked me to clarify respectably. Besides Cala up there you all should know by now if I am wrong I will say so and will listen to the other side with an open mind most of the time. I tend to try to stay on the level headed side of stuff.

Last edited by Macphisto Angelus; 11-16-2008 at 07:50 PM.
Macphisto Angelus is offline   Reply With Quote
1 User Said Thanks:
Old 11-17-2008, 03:10 AM   #84 (permalink)
The Purple
 
Chalice Yao's Avatar
Kinda at work. Somewhat.
 
Join Date: Dec 2007
Location: Somewhere purple, Germany
Posts: 3,096
My Mood:
Quote:
Originally Posted by Macphisto Angelus View Post
K... let me repeat. Not my area of knowledge. But the grids claiming this is possible may be able to explain. As of now.. I accept it as fact when I see people saying they can't do it.

OH, and I can ask what is happening but you all have the knowledge of what would make it possible or impossible so better for one of you coders to ask. Nothing I come back with will be considered less then shenanigans or whatever.

Heeh, no problem :>

Lemme get into a little detail about how the client connects to the grid first:

Basically on each login, the client sends, among your user, pass and such, a harmless string of text that identifies the version of the client. Usually something like 'Second Life 1.21.6'.
Third party clients pretty much always have that string changed by their developers, because it's also what makes Second Life go 'NOES, thou mayeth not entereth before thou upgradethththth'. Basically it's what the servers use to determine if they keep you out til you update.
So, one way I see to keep out copybot is to block its client string. I presume that 90% of copybot users don't know how to change it, or think of the fact that it might be the cause.

But yeah, that's pretty much the only real 'protection' that is possible, unless a grid goes for things like only allowing a specific viewer.

Quote:
Also one final note: Soon OLG will only accept log ins from it's own KirstenLee made viewer as a further security measure.
So do you coders think this is possible or BS?
Like that. But then again, that viewer's version string could simply be matched to get in.
Chalice Yao is offline   Reply With Quote
1 User Said Thanks:
Old 11-17-2008, 04:20 AM   #85 (permalink)
Is a bastage!
 
Macphisto Angelus's Avatar
It puts the lotion on it's skin!!
 
Join Date: May 2008
Location: Cali
Posts: 3,066
My Mood:
SL Join Date: 10-21-2004
Quote:
Originally Posted by Chalice Yao View Post
Heeh, no problem :>

Lemme get into a little detail about how the client connects to the grid first:

Basically on each login, the client sends, among your user, pass and such, a harmless string of text that identifies the version of the client. Usually something like 'Second Life 1.21.6'.
Third party clients pretty much always have that string changed by their developers, because it's also what makes Second Life go 'NOES, thou mayeth not entereth before thou upgradethththth'. Basically it's what the servers use to determine if they keep you out til you update.
So, one way I see to keep out copybot is to block its client string. I presume that 90% of copybot users don't know how to change it, or think of the fact that it might be the cause.

But yeah, that's pretty much the only real 'protection' that is possible, unless a grid goes for things like only allowing a specific viewer.



Like that. But then again, that viewer's version string could simply be matched to get in.
Thanks, Chalice. It is always pleasant to get someone to explain why what I said was possibly wrong as opposed to someone out of the blue getting all snooty. I respect people like you and War more then you know and when you all say something I am more then likely going to see it as what is likely.

I dunno.. time for a break I think. Got so much going on but know that you are appreciated at least by one SLUer that is not always right, but always willing to learn.

See you all in a few days. Be nice.
Macphisto Angelus is offline   Reply With Quote
Old 11-17-2008, 04:25 AM   #86 (permalink)
The Purple
 
Chalice Yao's Avatar
Kinda at work. Somewhat.
 
Join Date: Dec 2007
Location: Somewhere purple, Germany
Posts: 3,096
My Mood:


Enjoy your break!
Chalice Yao is offline   Reply With Quote
Old 11-17-2008, 05:09 AM   #87 (permalink)
Fortuna vitrea est
 
Tyche Shepherd's Avatar
enjoying the victor's spoils
 
Join Date: Aug 2007
Location: UK
Posts: 5,460
My Mood:
SL Join Date: 26th April 2007

Awards: 1
Best Anglo-Saxon High Horse Reference 
Quote:
Originally Posted by Macphisto Angelus View Post
Also one final note: Soon OLG will only accept log ins from it's own KirstenLee made viewer as a further security measure.
So do you coders think this is possible or BS?
Is this really going to be the case - because I thought they were working with the realXtend viewer - KirstenLee's viewer is very good and I do like it but as far as I know there is no public open source code repository for this viewer (please correct me if I'm wrong) so OLG would be effectively running a closed client . The realXtend client however is a publicly open source via Sourceforge .
__________________

Vanguard of the LolCatz Revolution
This Post was financed by The National LolCatz Archives

Clancy Sullivan :Yeah. YEAH! The sultry seamstress of mirth is definitely in charge now.
Certified 7.8 on the Official Non-Arbitrary Trout Algorithmic Slut scale

A public copy of my Second Life Main Grid Survey Database can be found at http://www.gridsurvey.com - Now with added Second Life Incidents !!


Tyche Shepherd is offline   Reply With Quote
Old 11-17-2008, 05:22 AM   #88 (permalink)
The Purple
 
Chalice Yao's Avatar
Kinda at work. Somewhat.
 
Join Date: Dec 2007
Location: Somewhere purple, Germany
Posts: 3,096
My Mood:
From the looks of the website, no, Kirsten's viewer as well as the RealXtend viewer are promoted. Judging by Kirsten's blog tho, her goal is to basically offer the Rex team her viewer as a foundation to build their features on :>

Alas, yes, I don't see a public code repository of hers.
Chalice Yao is offline   Reply With Quote
1 User Said Thanks:
Old 11-17-2008, 09:01 AM   #89 (permalink)
is chasing her tail
 
Arilynn's Avatar
Ninja of love
 
Join Date: Jul 2008
Posts: 5,031
SL Join Date: July 3, 2008
Business: Wandering about in a daze. Tabbing out.
Blog Entries: 5

Awards: 1
Special Achievement in LOLZ 
Quote:
Originally Posted by Macphisto Angelus View Post
Thanks, Chalice. It is always pleasant to get someone to explain why what I said was possibly wrong as opposed to someone out of the blue getting all snooty. I respect people like you and War more then you know and when you all say something I am more then likely going to see it as what is likely.

I dunno.. time for a break I think. Got so much going on but know that you are appreciated at least by one SLUer that is not always right, but always willing to learn.

See you all in a few days. Be nice.
Have a nice break but come back soon, Mac.
Arilynn is offline   Reply With Quote
Old 11-17-2008, 09:07 AM   #90 (permalink)
is fiesty!

SLU Supporter
 
Vertigo Paris's Avatar
Now hiring minions
 
Join Date: Mar 2008
Location: Displaced Bostonian living in a weather confused Texas
Posts: 8,905
My Mood:
SLShopper Ads: 2
SL Join Date: 11/22/2006
Blog Entries: 1
Send a message via ICQ to Vertigo Paris Send a message via AIM to Vertigo Paris Send a message via Yahoo to Vertigo Paris Send a message via Skype™ to Vertigo Paris
Quote:
Originally Posted by Arilynn View Post
Have a nice break but come back soon, Mac.


Take it easy, Mac.
__________________
SLU Clubhouse - Open 24/7
Vist at http://slurl.com/secondlife/Tan/138/25/25

Quote:
Originally Posted by Trout Recreant
Helllllooooo Verti! At last! The chance to rate one of my favorite people! Absolutely beautiful pictures. You are a strong, opinionated woman who is not at all afraid to express herself both verbally and physically. You have a strong sense of fantasy and mystery surrounding a drop dead beauty. You maintain an aloof intelligent exterior that we long to break through, but which might intimidate some men. It shows a complexity of personality that few possess. Based on these pictures, I am giving you an 8.4 on the official Trout Recreant Scale of Slutiness. You are a slut, but only in the best possible way, and any man lucky enough to see that side of you should count his blessings.
Vertigo Paris is offline   Reply With Quote
Old 11-17-2008, 03:28 PM   #91 (permalink)
CS Violator
 
Mecha Dinosaur's Avatar
I make people feel icky
 
Join Date: Sep 2007
Posts: 1,206
My Mood:
SL Join Date: 6/13/2006
Blog Entries: 3
Send a message via ICQ to Mecha Dinosaur Send a message via AIM to Mecha Dinosaur Send a message via Yahoo to Mecha Dinosaur Send a message via Skype™ to Mecha Dinosaur
Quote:
Originally Posted by Joshua Nightshade View Post
Oh I know for a fact at least four Lindens read SLU daily.
Why am I not banned from SL yet?
__________________
I don't use IE
Mecha Dinosaur is offline   Reply With Quote
Old 11-17-2008, 03:41 PM   #92 (permalink)
CS Violator
 
Mecha Dinosaur's Avatar
I make people feel icky
 
Join Date: Sep 2007
Posts: 1,206
My Mood:
SL Join Date: 6/13/2006
Blog Entries: 3
Send a message via ICQ to Mecha Dinosaur Send a message via AIM to Mecha Dinosaur Send a message via Yahoo to Mecha Dinosaur Send a message via Skype™ to Mecha Dinosaur
Quote:
Originally Posted by Stephanie Misfit View Post
They have offered 10K bounties in the past for reporting exploits, not sure if that is still the case.
They have not in a long long time. I know of several people who have found SL economy breaking issues that where never compensated or acknowledge for their help. There was mention it would be profitable to sell possible exploits to third parties then to use them on their own or inform LL. This leaves to question if there are folks doing this right now.
Mecha Dinosaur is offline   Reply With Quote
Old 11-18-2008, 03:23 AM   #93 (permalink)
The Purple
 
Chalice Yao's Avatar
Kinda at work. Somewhat.
 
Join Date: Dec 2007
Location: Somewhere purple, Germany
Posts: 3,096
My Mood:
Quote:
Originally Posted by Mecha Dinosaur View Post
They have not in a long long time. I know of several people who have found SL economy breaking issues that where never compensated or acknowledge for their help.
The bounty still gets given to people. A friend of mine only recently received one. The thing is, it doesn't tend to be given to you unless you ask for it in the report, but then, if it's a grave security bug, it gets handed to you. He's not the only person I know who got it, either.
Chalice Yao is offline   Reply With Quote
Old 11-18-2008, 10:25 AM   #94 (permalink)
Doing stuff
 
WarKirby Magojiro's Avatar
Happles!
 
Join Date: Sep 2007
Location: Glasgow, Scotland
Posts: 2,778
My Mood:
SLShopper Ads: 1
SL Join Date: 14/10/2006
Business: MagoTek Industries
I got paid 10,000 L$ for demonstrating a sim crash to Andrew once
Although I don't think it has, (or can) be patched
WarKirby Magojiro is offline   Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are On


LinkBacks (?)
LinkBack to this Thread: http://www.sluniverse.com/php/vb/general-sl-discussion/14681-items-stolen-directly-your-inventory.html
Posted By For Type Date
Your2ndPlace | Our Realities. Our Worlds. This thread Refback 08-15-2008 04:09 PM