|
Author |
Thread Statistics | Show CCP posts - 36 post(s) |

Zey Nadar
Gallente Unknown Soldiers Wildly Inappropriate.
|
Posted - 2011.04.11 13:42:00 -
[1]
Edited by: Zey Nadar on 11/04/2011 13:45:25
Originally by: Frecator Dementa
I wouldn't call this the same ****up at all. The signature exploit sounds like they forgot to HTML encode, the boot.ini was a file name conflict.
Pointing out that there are more glaring holes in the new forum than just the signature exploit.
And the best part is that these holes were reported in the test phase. 
|

Zey Nadar
Gallente Unknown Soldiers Wildly Inappropriate.
|
Posted - 2011.04.11 15:01:00 -
[2]
Originally by: Miilla
There is no reason to go exploit the bug to deny us all the service we pay for. That is a no no. Shout all he wants publically, thats what whistleblowers do. End of story.
Given the attitude this guy has, he probably wrote it in rage speak in the email and bug report with l33t too. I can see why it would be downgraded or ignored. He crossed the line.
The new forums put every user who browsed those forums at risk. People could inject any malicious code they wanted into the signatures, including code that defines how the page looks like. So they could have in practise added something extra to the forums which would have made unaware users log in again and give out their login credentials etc to the hackers. The forums should have been pulled down at first light. They were a banal mockery of online security. The guy in question did what he did to force a response and Im happy that he did.
Check eve news site for an article that explains at more detail what was open.
|

Zey Nadar
Gallente Unknown Soldiers Wildly Inappropriate.
|
Posted - 2011.04.11 15:22:00 -
[3]
Edited by: Zey Nadar on 11/04/2011 15:22:28
Originally by: Miilla LALALALALALALA
Jeez dude, get a grip. If you want us to stop posting, why are you yourself still posting?
edit: Actually I don't think youre a guy, only girls are this stubborn.
|

Zey Nadar
Gallente Unknown Soldiers Wildly Inappropriate.
|
Posted - 2011.04.11 15:43:00 -
[4]
Edited by: Zey Nadar on 11/04/2011 15:46:45
Originally by: El'Niaga
Like many events in life, this is a pivot point. It's already on 3rd party sites, many of the same sites that led to the decline of SWG over the NGE. CCP can hone up to what's been done, smooth over community relations or decide not to learn from SOE and have their reputation damaged.
That's what's at stake, it isn't just EVE, this would spill over to all their projects just like it did for SOE. That would greatly hurt a successful launch of DUST and of World of Darkness. There CEO should have come in over the weekend and made a statement etc. Stonewalling will not help them and will only lead to further problems down the road for them.
People though can be fantastically forgiving if you're honest with them, it's when they feel you are hiding something or withholding from them that quickly love turns to hate, and all the energy they used previously to build up something they use to destroy that same thing.
The basic damage-control of politics: Admit as soon as possible that there has been an error, its being worked on, and all the niceties like forum will be back better after that.
And not post blatant lies like that we werent at risk because we were.
Stonewalling is very poor idea at this time and age, the grumblings will only grow exponentially. Im sure you US people know such examples from your politics (Or for example, whats going on at Fukushima nuclear plant in Japan etc). Best method is to soothe the people who are aware of the issue at first, before they start telling other people. If people don't know, they start expecting the worst, and the problems escalate.
|

Zey Nadar
Gallente Unknown Soldiers Wildly Inappropriate.
|
Posted - 2011.04.11 15:51:00 -
[5]
Originally by: El'Niaga
I'm beginning to wonder at your intelligence.
Don't you see Miilla is a professional troll? Youve been trolled! Above post proves it.
|

Zey Nadar
Gallente Unknown Soldiers Wildly Inappropriate.
|
Posted - 2011.04.11 17:36:00 -
[6]
Originally by: Miilla
YAF being open source they could have submitted their functional changes back into the project which would also get a review.
I don't know why Im responding to you, but the point is that CCP ripped off what security measures YAF HAD and tried to put in their own miserable ****-up of eve gate-integration.
|

Zey Nadar
Gallente Unknown Soldiers Wildly Inappropriate.
|
Posted - 2011.04.12 12:21:00 -
[7]
CCP Sreegs' post tells me that its sometimes possible to get on the same wavelength as the devs, for this I am happy. I trust you devs all do your best to avoid something like this happening again. Let the reconstruction begin.
|
|
|
|