Self Replicating Attack@2128 SLT
|
|
Suzanna Soyinka
Slinky Slinky Slinky
Join date: 25 Nov 2005
Posts: 292
|
09-18-2006 21:29
Live help closed.
Nothing in the blog.
Can't even search for Lindens by name because the database is chugging so bad that TD everywhere is under 0.50
Yeah this is working great guys.
|
|
Takuan Daikon
choppy choppy!
Join date: 22 Jun 2006
Posts: 305
|
09-18-2006 21:32
Yeah, it's everywhere. This time it's objects from Datura Fairchild. I dunno, this seems like there is either a huge exploit where someone can re-use someones object, or it is symptomatic of a larger hacking problem.
|
|
Eddy Stryker
libsecondlife Developer
Join date: 6 Jun 2004
Posts: 353
|
09-18-2006 21:37
From: Takuan Daikon I dunno, this seems like there is either a huge exploit where someone can re-use someones object There is, but most people call being able to transfer and reuse objects a feature.
_____________________
http://www.libsecondlife.org From: someone Evidently in the future our political skirmishes will be fought with push weapons and dancing pantless men. -- Artemis Fate
|
|
Joannah Cramer
Registered User
Join date: 12 Apr 2006
Posts: 1,539
|
09-18-2006 21:46
From: Eddy Stryker There is, but most people call being able to transfer and reuse objects a feature. I'll take it the scripts don't carry some sort of internal data to the effect of "I was compiled from source filed under UUID x on asset server", then, which would allow to nip them in the bud no matter who the owners of copies were? :<
|
|
Usagi Musashi
UM ™®
Join date: 24 Oct 2004
Posts: 6,083
|
09-18-2006 22:32
We got hit hard too.........it crashed us twices.
|
|
Esch Snoats
Artist, Head Minion
Join date: 2 May 2006
Posts: 261
|
09-19-2006 00:34
Although it wouldn't stop the problem entirely, I think the smart thing to do is to get rid of unverified accounts. Bring back the old system because allowing anyone to sign up without verification is creating a million alts that will keep doing these attacks over and over. They have nothing to lose and the normal players have everything to lose.
E
|
|
Usagi Musashi
UM ™®
Join date: 24 Oct 2004
Posts: 6,083
|
09-19-2006 01:57
We really need a solve this...........and stopping freebie accounts wil do it.......
|
|
Espresso Saarinen
old geek
Join date: 22 Jan 2006
Posts: 93
|
09-19-2006 12:12
From: Usagi Musashi We really need a solve this...........and stopping freebie accounts wil do it....... yes, as soon as you stop kiddies stealing credit cards. i.e. this is not the solution. perhaps limiting the object creation rate of removed accounts is a more rigorous approach? but why limit to removed accounts?
|
|
Thili Playfair
Registered User
Join date: 18 Aug 2004
Posts: 2,417
|
09-19-2006 13:14
doesnt matter if kids steals their parents CC, thats one way to ban a account by blocking their visa, as its now theres no way, ip ban useless, hardware ban also useless (tho take abit more time to get rid of) Free accounts now sure make SL a boring place, expect to see more and more acts like this, nothing seems to be done about it either. most of the attacks are comming from freebee accounts without any payment or info about, oh gee wonder why, could it be thats so easy to remake if you get one account banned? SL 2006 > Griefer friendly Alot of threads about this since they decided to let anyone in without any verification , age, pff theres kids everywhere now.
|
|
Espresso Saarinen
old geek
Join date: 22 Jan 2006
Posts: 93
|
09-19-2006 13:21
From: Thili Playfair doesnt matter if kids steals their parents CC, thats one way to ban a account by blocking their visa did i say steal parents' credit cards? a stolen credit card number is worth about a nickel on the underground cracker market. they are more disposable than bog paper. and a smart cracker, or good script kiddie, knows how to obscure ip address too, btw. not that i am more happy with no bill info accounts. just that i am possibly more pessimistic about social solutions to technical problems. note that attacks very similar to this were used before the no bill info change. [ uncloak: part of my rl job is internet security ]
|
|
Flash Ferguson
Registered User
Join date: 8 Aug 2006
Posts: 96
|
09-19-2006 14:46
LL should just restrict the use of scripts by unverified accounts.
|
|
Teeny Leviathan
Never started World War 3
Join date: 20 May 2003
Posts: 2,716
|
09-19-2006 19:26
From: Takuan Daikon Yeah, it's everywhere. This time it's objects from Datura Fairchild. I dunno, this seems like there is either a huge exploit where someone can re-use someones object, or it is symptomatic of a larger hacking problem. There is a fairly well known way to hide the true creator of an item. I will not go into detail about how its done, but this has been around since beta.
|
|
Usagi Musashi
UM ™®
Join date: 24 Oct 2004
Posts: 6,083
|
09-19-2006 20:39
From: Espresso Saarinen yes, as soon as you stop kiddies stealing credit cards. i.e. this is not the solution.
perhaps limiting the object creation rate of removed accounts is a more rigorous approach? but why limit to removed accounts? well its been known that kids always get their nands on cc these days. I was shocked to learn when i was inthe usa a few months back you can use gift cards cc as well on sl. its no wonder LLabs lefted the CC signup. Anyways there has to be a better way do free signup besides this mess we are in now.
|
|
Drizzt Naumova
Teh Foxeh DJ
Join date: 9 Oct 2005
Posts: 116
|
Freebie accounts here to stay
09-21-2006 17:06
Give it up. Phillip made it clear at the town hall meeting that free accounts are here to stay. "it will help us grow". Ya, it will help us grow..but at what expense? Our uptime..Our creation time...etc etc etc... And also about the grey goo fence that was suppose to contain replicating objects...where did that go? LL having to completely shut off scripts gridwide proves just how powerless things really are at this point. Sorry just seen a chance to rant.  peace out. ~ DJ Drizzt ~
|