Careful with these links he can reactivate the script at any time.
massive.web44.net/screenshot.jpg
massive.web44.net/screenshot.gif
massive.web44.net/logfile.txt
Sorry I blew off the jpg. Someone is stealing your cookies. If you looked at this site log out of SK asap. Change your password when you get back in.
Comments
http://hellofhackerz.forumotion.com/t172-hack-any-a-c-id-by-cookies-stealer-easily
Pretty much all you need to do is read this website and download live http headers for firefox to replay the cookies. Then it's money.
That if affects the browser ur are using isnt very reassuring.. I mean I sometimes have 10-15 tabs open with all kind of business..
Dank, does someone have access to my bank account?
It doesnt appear that the starkingdoms cookie stores any of your account information like passwords or emails. It only stores your session id. (Which to be fully secure should always compare with something in the database etc - isn't happening here if this is true) (check your own cookies if you dont believe me - if you are using chrome then when ingame: right click->inspect element->resources tab->click the cookies link and then www.starkingdoms.com. other browsers i wouldnt have an idea)
if this whole thing is true then i'm assuming that the person is using your session information to access accounts. (uses your session = website thinks he is you).
So I don't think passwords are at risk but it depends on a few more things we dont know. if you are concerned then change your password.
Also as far as I know your other website cookies shouldnt of been taken. Web browsers would consider that a huge xml vulnerability if it was possible. The only cookies this type of vulnerability takes are those from the website its hotlinked from.
Think of this vulnerability as being similar to those facebook like links you see everywhere. They work in the same way except it uses your cookie to initiate a like on facebook.
So here is what I'm wondering. Somebody ddos'ed Kesha. Beanland mentioned that it hit him as well. Now we have somebody hacking users from the forum. I also saw Kesha mention that his bot wasn't creating all of these accounts to fill up 8 galaxies. I'd like to know if that is true and if we have some competition on the server now. This is one of the things I was warning about. When Kesha is over here building a giant bot the only competition is another bot. We might have a new hacker on the scene that wants to throw down a challenge to his reign.
If so welcome aboard whoever you are. Sorry to rain on your parade but you hit Darubian and Lews who are homies. Otherwise I wouldn't have said a thing.
I say that cause lynog is too computer-stupid to make a bot himself, could be any number of people that was in [Scallywags] or even someone who had the idea beforehand.
Either way, queer made me spend a 2 robs on rebuilding, I would like compensation in the form of a max bank.