Report of a very dangerous bug

2 pages Page 1
N
N1ght
Pre-Searing Cadet
#1
Hi,
i am writting here because i found out that some guys use a very dangerous exploit. i wrote twice @ the NCSoft Support but the response was a stock response. Here is what i wrote:
Quote:
Hi support team,
i am writting to you because i have some important information about a exploit. As i read on a known Guild Wars Botting forums(...), some players are able to cast empty instances of the game.
They are changing the value of a packet to do this. They can now e.g. go into an empty Random Arena battle an get an instant win.
They are writting bots for this methods with multiple accounts, i am afraid, that the whole guild wars ingame market could collapse because of this method. They said that they can do more than 80 ectos within 1 hour.
The good thing is, that i have one character name of these botters. Its a character, which is now gladiator 7 or higher within 2 days. The character name is: ...
I hope that you take this matter very seriously and try to avoid this exploit.
If you have more questions, just message me here.
I also created two thread at the support forums, but they have been deleted.

I hope that they will now work harder to fix this exploit, if the public knows about it.
So if you e.g. dont know why Strongboxes are now very cheap, this is the answer. I also noticed that the real money prices for Guild Wars Items went down drastically in the last weeks. So it seems like these botters are delivering some MMo shops.

I really dont know why the support doesnt work on this issue. They even have the name (+screenshot of his title) of a character.
L
Lordkrall
Frost Gate Guardian
#2
You didnt think about the fact that the threads were deleted simply because describing exploits is considered against the rules?
akelarumi
akelarumi
Wilds Pathfinder
#3
Yip, my suggestion is to edit your post empty. By saying in public how the exploit can be used means your making it worse.
Martin Alvito
Martin Alvito
Older Than God (1)
#4
Quote:
Originally Posted by akelarumi View Post
Yip, my suggestion is to edit your post empty. By saying in public how the exploit can be used means your making it worse.
Which I suspect is the whole point. If ANet won't do something about it, making it publicly known intensifies the problem. That in turn forces them to do something to resolve it.
P
Premium Unleaded
Wilds Pathfinder
#5
ANet stopped caring about these issues ages ago, hence nothing has been done about them for so long.
N
N1ght
Pre-Searing Cadet
#6
Quote:
Originally Posted by akelarumi View Post
Yip, my suggestion is to edit your post empty. By saying in public how the exploit can be used means your making it worse.
Your right. But where do i describe how to use the bug??
I only say that they are changing a packet to use this busg.

Btw reason why the topic has been closed:
Quote:
We are taking this report seriously and are investigating as quickly as possible. I’ve asked a mod to remove your thread to eliminate the link to the exploit from the public forum, and I am sending this to you personally so we don’t inform the botters that we are investigating them.
Well...i understand that. But I reported it one month ago...Should be enough time to fix this issue.
madriel222
madriel222
Krytan Explorer
#7
If you think one month is enough time to fix the issue, you don't know Anet.
S
Spiritz
Forge Runner
#8
Quote:
Originally Posted by N1ght View Post
Well...i understand that. But I reported it one month ago...Should be enough time to fix this issue.
Anet has to investigate this claim which sadly will take time , one problem i could see is anet trying to fix something in the dark - so to speak.
Scenario - a new prototype bot is being worked on , anet is unable to pinpoint the exact method the bot would use because its not in public.Anet cant dissamble the bot to see how it works etc.Posting on the bot site id class as risky as im sure they may take offence to it and also may cause them to make minor changes etc.
Anets got to find a needle in a haystack and it will take time - you could in future if you found another bot in making pm one of the staff ongw support forum and ask whats the safest way to post your problem without needing major edits or deletes.
L
Lordkrall
Frost Gate Guardian
#9
It does seem that some people here have no grasp what so ever about how programming and such works.

It is not just: "Oh, there might be a problem here *work a few minutes* Solved!"

Also keep in mind that there are currently very few people working at GW.

Making more people exploiting the system aint going to make it go away faster.
Ewon
Ewon
Wilds Pathfinder
#10
For starters, i would suggest removing the link to one of the known boting sites. I don't think we need mroe traffic heading there.

I'm not sure if anyone else noticed, by while I was in kama ad1 trading, I noticed 2 Leg. Gladiators in one night. I have a screenshot of the second, as I thought it was odd that 2 got the title so close together. I kinda wish anet would step in, but given past boting experiences, it will take several months of silence before they do anything.
esthetic
esthetic
Wilds Pathfinder
#11
Thanks to your thread the site overloaded lol
N
N1ght
Pre-Searing Cadet
#12
Well...i know how Programming and Reversing works
But that isnt the point...if they need time to fix the whole issue thats okay...But: They have the character name...If they just check the logged events of the character, they see that the character e.g. wins 500 RA fights in a row. So they could just ban the account and all other accounts which are used from the same IP. But they didnt even did that, that is what suprises me.

Edit: deleted the link
G
Gabs88
Desert Nomad
#13
Meh, people are running this with 12 accounts at a time. And making figures closer to 120e / hour. Per account. It's so broken I can't even bring myself to care.

And these same people are supposed top speed clearers, HA, GVG and missionrunners in the game.

Doesn't really matter to me ^^ Diablo 3 in less then one week and haven't been logged in more then a couple of hours for the past two months this has been going on.
EFGJack
EFGJack
Lion's Arch Merchant
#14
Quote:
Originally Posted by Gabs88 View Post
Doesn't really matter to me ^^ Diablo 3 in less then one week and haven't been logged in more then a couple of hours for the past two months this has been going on.
This pretty much. And I bet this is what ANet thinks of the situation as well, just replace D3 with a certain title and "one week" with 8-10 months.
R
Riot Narita
Desert Nomad
#15
Dhuum will be busy. When he's good and ready.

And the people he bans... will have no HoM rewards in GW2.
Captain Bulldozer
Captain Bulldozer
Wilds Pathfinder
#16
Quote:
Originally Posted by Martin Alvito View Post
Which I suspect is the whole point. If ANet won't do something about it, making it publicly known intensifies the problem. That in turn forces them to do something to resolve it.
Getting a canned response from customer support does not mean that A-net won't do anything about it. In my experience, Anet takes better care of GW than most MMO companies (not that I've had dealing with them all obviously). I'd suggest that a mod should delete this entire thread so as not to encourage exploits.
L
Lordkrall
Frost Gate Guardian
#17
Quote:
Originally Posted by N1ght View Post
Well...i know how Programming and Reversing works
But that isnt the point...if they need time to fix the whole issue thats okay...But: They have the character name...If they just check the logged events of the character, they see that the character e.g. wins 500 RA fights in a row. So they could just ban the account and all other accounts which are used from the same IP. But they didnt even did that, that is what suprises me.

Edit: deleted the link
And do you know that they have not banned said character? Is said character your character?
Martin Alvito
Martin Alvito
Older Than God (1)
#18
Quote:
Originally Posted by Captain Bulldozer View Post
Getting a canned response from customer support does not mean that A-net won't do anything about it. In my experience, Anet takes better care of GW than most MMO companies (not that I've had dealing with them all obviously). I'd suggest that a mod should delete this entire thread so as not to encourage exploits.
ANet has always fixed these problems only when they became so widespread that they could no longer be ignored.

Whether or not this is 'better care' than other MMO producers is subjective. I'd argue that they used to do very well on certain dimensions and remarkably poorly on others. For some time now they haven't done well on upkeep along any dimensions.
Porkchop Sandwhiches
Porkchop Sandwhiches
Lion's Arch Merchant
#19
I hope we get some acknowledgement from Anet, at least. Kuddos to the OP.
Quantum Duck
Quantum Duck
Lion's Arch Merchant
#20
The policy on the support forums is to delete threads that describe or link to exploits after handing them off to a dev. You'd get better results PMing one of the devs there.