Page Index Toggle Pages: 1 [2] 3 4 ... 8 Send TopicPrint
Very Hot Topic (More than 75 Replies) Jerry the Banner (Read 56204 times)
Angry
Puppy Farmer
****
Offline



Posts: 1699
Joined: Feb 13th, 2014
Re: Jerry the Banner
Reply #25 - May 21st, 2015 at 8:00am
Print Post  
apep wrote on May 21st, 2015 at 7:46am:
The edit button or the token?


The user id. You really think Jerry has any clue how to decipher the token? It's a hashcode, calculated using a key and the userinfo, it's meant to be secure, not cracked by reading the source code. To be able to translate it, you'd have to know what it's eaten.
  
Back to top
 
IP Logged
 
apep
Dragon Raider
***
Offline


I Love Drama!

Posts: 244
Joined: Apr 11th, 2011
Re: Jerry the Banner
Reply #26 - May 21st, 2015 at 8:09am
Print Post  
Angry wrote on May 21st, 2015 at 8:00am:
The user id. You really think Jerry has any clue how to decipher the token? It's a hashcode, calculated using a key and the userinfo, it's meant to be secure, not cracked by reading the source code. To be able to translate it, you'd have to know what it's eaten.

Or send it to someone at Turbine that knows where the token is stored server side... if any of those are left. A server shouldn't have to reconstruct access tokens; it has to store them in case one gets leaked, so that it can invalidate it.

The 27th tag in the head section is a script tag. It is after the link tag which specifies the favicon and before a group of script tags linking to yui components. Near the end of it, there are variables, one is named SECURITYTOKEN and another named LOGGEDIN, which compares to current user id to 0 to see if the client is logged in.
« Last Edit: May 21st, 2015 at 8:15am by apep »  
Back to top
 
IP Logged
 
OldCoaly
Puppy Farmer
****
Offline


Why did you think this
time would be different?

Posts: 1564
Location: WAAHH!!!Testing stuff is HARD!
Joined: Jul 1st, 2011
Re: Jerry the Banner
Reply #27 - May 21st, 2015 at 8:14am
Print Post  
Angry wrote on May 21st, 2015 at 7:43am:
Please show me this, as I could not find it


Do you need a screen shot with the Edit button circled and a large arrow pointing it out?
  

Groo The Wanderer wrote on Sep 8th, 2013 at 10:43pm:
they will probably congratulate themselves on how long they "kept it going" never able to see that it could have easily managed to keep itself going for far longer if they had just meddled far less drastically and with some semblance of an actual gameplan.
Darth Anonymous wrote on Feb 1st, 2014 at 1:11pm:
Hearing something has "merit" but we don't have "time" kind of says everything about how Turbine works on things.
eighnuss wrote on May 27th, 2014 at 12:52pm:
everyone but turbine knows that we are sad they are destroying our game
majmalphunktion wrote on Aug 30th, 2013 at 12:12am:
I don't make the game, I just get tested what they build. Sorry you are not happy.
Skoodge wrote on Nov 27th, 2014 at 6:54am:
DDO is easy to summarize - the greatest game to suck the most ass.
GooFY wrote on Mar 2nd, 2015 at 5:36pm:
Turbine - So incompetent that we are skeptical when they report their own incompetence.  
Meursault wrote on May 11th, 2015 at 8:10pm:
Other companies will settle for shitting out garbage, Turdbin actually prefers to. Especially if they can get us to buy it, that just cracks them up.
Meursault wrote on Nov 12th, 2015 at 2:50pm:
Breaking something and putting it back together isn't as good as not breaking it to begin with, it's not even close.
palmer01 wrote on Nov 20th, 2015 at 9:05am:
Devs do not care what players want - they already have an agenda and give out token gestures so the paladins can feel worthy.
PersonaNonGrata wrote on Oct 4th, 2016 at 1:24am:
The DDO devs aren't motivated by a positive user experience.

Back to top
 
IP Logged
 
Munkenmo
Epic Poster
*****
Offline



Posts: 4343
Location: A land under down under
Joined: Nov 10th, 2010
Re: Jerry the Banner
Reply #28 - May 21st, 2015 at 8:15am
Print Post  
note pad ++

Find LOGGEDIN = 12345
Replace in all opened documents with LOGGEDIN = 352519

Done in 20 seconds.

About the same amount of time it takes to add/remove edit butons.

*edit. For the sake of clarity, I was banned from the council the day DDO PC Transparency started posting his text based leaks.
« Last Edit: May 21st, 2015 at 8:21am by Munkenmo »  

So you want to know about an exploit?
PM Epoch For Details. Or, in case you don't already know, OnePercenter controls the Exploits Board. Lastly, if you're truly desperate, Vendui Tells Everyone
Back to top
 
IP Logged
 
Lemming
Waterworks Kobold
**
Offline



Posts: 122
Joined: Mar 15th, 2014
Re: Jerry the Banner
Reply #29 - May 21st, 2015 at 8:15am
Print Post  
/Tinfoil hat on
Some Turbine fanboi from the PC leaked the info with the edit buttons to get Munk banned. Or was it Sev himself?  Grin
  
Back to top
 
IP Logged
 
Angry
Puppy Farmer
****
Offline



Posts: 1699
Joined: Feb 13th, 2014
Re: Jerry the Banner
Reply #30 - May 21st, 2015 at 8:16am
Print Post  
apep wrote on May 21st, 2015 at 8:09am:
Or send it to someone at Turbine that knows where the token is stored server side... if any of those are left. A server shouldn't have to reconstruct access tokens; it has to store them in case one gets leaked, so that it can invalidate it.

The 27th tag in the head section is a script tag. It is after the link tag which specifies the favicon and before a group of script tags linking to yui components. Near the end of it, there are variables, one is named SECURITYTOKEN and another named LOGGEDIN, which compares to current user id to 0 to see if the client is logged in.


Well, that would be smart... but I highly doubt they'd go to the trouble
  
Back to top
 
IP Logged
 
Shuy
Stormreaver Piker
*
Offline


I Love Drama!

Posts: 613
Joined: Jun 29th, 2013
Re: Jerry the Banner
Reply #31 - May 21st, 2015 at 8:24am
Print Post  
Munkenmo wrote on May 21st, 2015 at 8:15am:
*edit. For the sake of clarity, I was banned from the council the day DDO PC Transparency started posting his text based leaks.


So it has nothing to do with you.

Sad to see that you got banned for someone else's actions honestly, you were one of the few members that I liked and that was not a yes-man, like many in there. I can see tons of people just ass-licking or approving/suggesting changes based on their personal agenda.
« Last Edit: May 21st, 2015 at 8:24am by Shuy »  
Back to top
 
IP Logged
 
Alex DeLarge
Epic Poster
*****
Offline


Get ready for some of
the 'ol in-out, in-out

Posts: 3481
Location: Foggy Albion
Joined: May 11th, 2013
Gender: Male
Re: Jerry the Banner
Reply #32 - May 21st, 2015 at 8:28am
Print Post  
Lemming wrote on May 21st, 2015 at 8:15am:
/Tinfoil hat on
Some Turbine fanboi from the PC leaked the info with the edit buttons to get Munk banned. Or was it Sev himself?  Grin


What a twist!
  

Back to top
 
IP Logged
 
Angry
Puppy Farmer
****
Offline



Posts: 1699
Joined: Feb 13th, 2014
Re: Jerry the Banner
Reply #33 - May 21st, 2015 at 8:28am
Print Post  
OldCoaly wrote on May 21st, 2015 at 8:14am:
Do you need a screen shot with the Edit button circled and a large arrow pointing it out?


I was looking for anything pointing to Munk in the source code.
  
Back to top
 
IP Logged
 
Munkenmo
Epic Poster
*****
Offline



Posts: 4343
Location: A land under down under
Joined: Nov 10th, 2010
Re: Jerry the Banner
Reply #34 - May 21st, 2015 at 8:28am
Print Post  
Shuy wrote on May 21st, 2015 at 8:24am:
suggesting changes based on their personal agenda.


I was just as guilty of doing this as anybody else.
  

So you want to know about an exploit?
PM Epoch For Details. Or, in case you don't already know, OnePercenter controls the Exploits Board. Lastly, if you're truly desperate, Vendui Tells Everyone
Back to top
 
IP Logged
 
Shuy
Stormreaver Piker
*
Offline


I Love Drama!

Posts: 613
Joined: Jun 29th, 2013
Re: Jerry the Banner
Reply #35 - May 21st, 2015 at 8:37am
Print Post  
Munkenmo wrote on May 21st, 2015 at 8:28am:
I was just as guilty of doing this as anybody else.


I did not see this in your replies. What I saw were some interesting solutions to problems that they created themselves (or problems that don't exist at all but they believe they are).
  
Back to top
 
IP Logged
 
Ah Pook
Puppy Farmer
****
Offline


Posts: 314159265

Posts: 1439
Joined: Mar 10th, 2014
Re: Jerry the Banner
Reply #36 - May 21st, 2015 at 8:46am
Print Post  
Munkenmo wrote on May 21st, 2015 at 8:28am:
I was just as guilty of doing this as anybody else.

Most of us prefer your agenda over, say, Cletus's.
  

Daggertooth wrote on Apr 14th, 2017 at 6:52pm:
I'm pretty fucking sure I am a special snowflake.


Frank wrote on Apr 2nd, 2017 at 8:32am:
Laugh it up, funny man.
Back to top
 
IP Logged
 
Artorias
Shroud Slacker
***
Offline



Posts: 1212
Joined: Mar 21st, 2015
Re: Jerry the Banner
Reply #37 - May 21st, 2015 at 9:00am
Print Post  
So, stuff leaked and shit happened that can be briefly summed up as:

1- Jelly bans munk
2- Jelly takes a screen of the ban
3- Jelly faps on the pic witch EXTREME PREJUDICE

Like any good deviant he decides to take things to next level according to his "bro" Sev and procedes to banning to whole PC. Is that correct? Did I get it right?

If their security was as tight as their asses there wouldn't even been a leak in the first place.  Roll Eyes.
  
Back to top
 
IP Logged
 
Revaulting
Completionist (i.t.p.)
******
Offline



Posts: 10143
Location: Not in my pants
Joined: Apr 3rd, 2014
Gender: Male
Re: Jerry the Banner
Reply #38 - May 21st, 2015 at 9:06am
Print Post  
I like this. Jerry accused us of being tin foil hat conspiracy nuts, and now we can finally deliver on his promise!
  

Silence is golden, but I only get silver rolls.
Back to top
 
IP Logged
 
Kluege
Dragon Raider
***
Offline


Hi

Posts: 246
Location: Philly
Joined: Aug 6th, 2014
Gender: Male
Re: Jerry the Banner
Reply #39 - May 21st, 2015 at 9:27am
Print Post  
Aside from the ban issue....  I am finding it hard to understand why they even have a Player's Council.  All they are doing is what they used to do on the public forums, just with less people giving input.  They post what they want to do, people get all bent out of shape because their build will suck afterwards, they bitch, and ultimately Turbine does whatever they want to anyway.  What is the big mystery?
  
Back to top
 
IP Logged
 
Kluege
Dragon Raider
***
Offline


Hi

Posts: 246
Location: Philly
Joined: Aug 6th, 2014
Gender: Male
Re: Jerry the Banner
Reply #40 - May 21st, 2015 at 9:33am
Print Post  
Also, fwiw, when people in game are telling me "hey kluege, munk told me blah blah blah about rangers, so you should re-roll as pure or 14/6", or whatever.  That probably means more than just me is hearing about it and some not so friendly folks are probably also telling Turbine folks.... so, it may not be from sources you are assuming, but from big mouthed individuals blabbing how much they know and where it came from. 

Although, I could also be way off....
  
Back to top
 
IP Logged
 
Durk
The Deranged
*
Offline


I've got a secret!

Posts: 705
Location: The Harbor
Joined: May 15th, 2012
Gender: Male
Re: Jerry the Banner
Reply #41 - May 21st, 2015 at 10:10am
Print Post  
Maybe it wasn't Munk, he deserves the benefit of doubt.  I liked all his views on the PC.

I do find it strange though that DDO PC Transparency said he was talking to Strake to find a different way to post what he had.  The next day Strake uploads and posts all the html files that were modified to remove names. 

I am not sure which is more likely, that someone forgot to remove that userid, or that someone went through the work to change it and Strake didn't notice either.

If it wasn't Munk I would expect Munk to be furious and screaming at DDO PC Transparency or whoever gave them to Strake in order to blame him, not to mention Strakes view of being used to blame Munk.  If I was used like that and knew it wasn't Munk I would be laying down the banhammer.

Maybe DDO PC Transparency will post something new since Munk was removed.
« Last Edit: May 21st, 2015 at 10:28am by Durk »  
Back to top
 
IP Logged
 
Arkat
Chonus Christ
********
Offline


Hola Bienvenido

Posts: 12345
Location: Wyoming
Joined: Jul 13th, 2009
Gender: Male
Re: Jerry the Banner
Reply #42 - May 21st, 2015 at 10:44am
Print Post  
Durk wrote on May 21st, 2015 at 10:10am:
Maybe DDO PC Transparency will post something new since Munk was removed.

If their agenda was to "frame" Munk, I doubt it.
  

Stand on hills of long-forgotten yesterdays...

Looking for a sign that the Universal Mind has written you into the Passion Play.
Back to top
 
IP Logged
 
Sasha
Abbot Raider
**
Offline



Posts: 818
Joined: Apr 13th, 2014
Re: Jerry the Banner
Reply #43 - May 21st, 2015 at 10:49am
Print Post  
That kinda sucks, can't say I'm surprised tho.

I wouldn't have noticed about those edit buttons if people didn't mention them here either.
  
Back to top
 
IP Logged
 
madman
Waterworks Kobold
**
Offline


I Love Drama!

Posts: 118
Location: da South
Joined: Oct 13th, 2013
Gender: Male
Re: Jerry the Banner
Reply #44 - May 21st, 2015 at 11:13am
Print Post  
Curious.  Yeah it may very well be a frame job.

The edit button could be damning, but the culprit missed something.  Munk was offline.  The source shows him offline and the radio button by his name is grey not green.

Chai and InsanityIsYourFriend were both showing online for the screen grabs on the page I looked at.

Looked at page 1 of the manyshot thread.

Edit: Of course it could have been edited to make him look offline, but where is the fun in that?
« Last Edit: May 21st, 2015 at 11:21am by madman »  
Back to top
 
IP Logged
 
Flav
Vault Frog
*
Offline


One Frog to Rule them
All!

Posts: 9984
Location: Land of the Frogs
Joined: Aug 29th, 2010
Gender: Male
Re: Jerry the Banner
Reply #45 - May 21st, 2015 at 12:45pm
Print Post  
madman wrote on May 21st, 2015 at 11:13am:
Curious.  Yeah it may very well be a frame job.

The edit button could be damning, but the culprit missed something.  Munk was offline.  The source shows him offline and the radio button by his name is grey not green.

Chai and InsanityIsYourFriend were both showing online for the screen grabs on the page I looked at.

Looked at page 1 of the manyshot thread.

Edit: Of course it could have been edited to make him look offline, but where is the fun in that?


Sadly, the online radio button is live... I looked at the code of the page, and that bit points straight to the official website...

So basically you see who is online on the official website at the time you open the page in Vaultleaks.

( yeah I know I keep saying I sucks at coding... It just means that I suck at pissing code, not that I can't read and understand it )
  

Yes my avatar is an Hermine eating a Greenland Lemming for brunch.
Back to top
 
IP Logged
 
Sasha
Abbot Raider
**
Offline



Posts: 818
Joined: Apr 13th, 2014
Re: Jerry the Banner
Reply #46 - May 21st, 2015 at 1:00pm
Print Post  
Flav wrote on May 21st, 2015 at 12:45pm:
Sadly, the online radio button is live..


Damn.. I was all ready to play detective.
  
Back to top
 
IP Logged
 
madman
Waterworks Kobold
**
Offline


I Love Drama!

Posts: 118
Location: da South
Joined: Oct 13th, 2013
Gender: Male
Re: Jerry the Banner
Reply #47 - May 21st, 2015 at 1:09pm
Print Post  
Flav wrote on May 21st, 2015 at 12:45pm:
Sadly, the online radio button is live... I looked at the code of the page, and that bit points straight to the official website...

So basically you see who is online on the official website at the time you open the page in Vaultleaks.

( yeah I know I keep saying I sucks at coding... It just means that I suck at pissing code, not that I can't read and understand it )


Well that sucks

I was going by insanityisyour friend being online on the http://www.ddovault.com/Vault/Manyshot%20and%2010K%20Stars%20-%20Page%201.htm post 18  while being offline on http://www.ddovault.com/Vault/Real-life%20Players%20Council%20Meetup%20%20-%20Pa... post 15 at the same time in thinking it did not post back to the mbs.
« Last Edit: May 21st, 2015 at 1:20pm by madman »  
Back to top
 
IP Logged
 
KilgoreTrout
Dragon Raider
***
Offline


I Love Drama!

Posts: 214
Joined: Mar 17th, 2014
Re: Jerry the Banner
Reply #48 - May 21st, 2015 at 1:16pm
Print Post  
Also, only someone at Turbine and Munk would have access to his session ID.

I think we can pen this down to Munk and Strake slipping up.
  
Back to top
 
IP Logged
 
Lelouch
Shroud Slacker
***
Offline


What is a moron? A person
playing ddo

Posts: 1073
Joined: Apr 19th, 2014
Re: Jerry the Banner
Reply #49 - May 21st, 2015 at 1:42pm
Print Post  
Whoever posted pcouncil stuff made it to  totally backfire.
Honestly without munk there...

You guys prolly saw all the stuff from those forums, be honest and tell beside eth munk and sometimes cetus, who else actually gave any kind proper advice to devs on how to improve this almost dead game?

But who cares in the end
« Last Edit: May 21st, 2015 at 1:46pm by Lelouch »  
Back to top
 
IP Logged
 
Page Index Toggle Pages: 1 [2] 3 4 ... 8
Send TopicPrint