(WARNING)Compromised FFXI Discord Accounts

Language: JP EN DE FR
users online
Forum » FFXI » General » (WARNING)Compromised FFXI Discord Accounts
(WARNING)Compromised FFXI Discord Accounts
 Odin.Senaki
Online
Server: Odin
Game: FFXI
user: Senaki
Posts: 1,185
By Odin.Senaki 2023-01-14 14:23:14
Link | Quote | Reply
 
Good morning everyone,

I was informed that some members within the FFXI Discord community have been getting their Discord accounts hacked by clicking a suspicious discord link from their friends.

If you get this discord link, do NOT go to it.

I do not know how far it has spread yet, but I wanted to warn people.

- Senaki



[+]
 Bahamut.Negan
Offline
Server: Bahamut
Game: FFXI
user: Negan
Posts: 2,396
By Bahamut.Negan 2023-01-14 14:29:27
Link | Quote | Reply
 
Check out Verifpro.net for the fix!

JUST A JOKE
[+]
 Asura.Bippin
Offline
Server: Asura
Game: FFXI
user: Gunit
Posts: 1,093
By Asura.Bippin 2023-01-14 14:30:28
Link | Quote | Reply
 
Why cover the name of the account people should ban?
[+]
 Odin.Senaki
Online
Server: Odin
Game: FFXI
user: Senaki
Posts: 1,185
By Odin.Senaki 2023-01-14 14:31:59
Link | Quote | Reply
 
Asura.Bippin said: »
Why cover the name of the account people should ban?

Because they are good friends of mine and for their privacy. But from what I hear, this is infecting ffxiv as well so it won't be localized anyway to 1-2 accounts.

Also player warnings are against ffxiah rules.
[+]
 Asura.Eiryl
Offline
Server: Asura
Game: FFXI
user: Eiryl
By Asura.Eiryl 2023-01-14 14:33:46
Link | Quote | Reply
 
Good rule to not use the name regardless. It won't be sent by the same person anyway.

Knowing who means nothing. Knowing what means everything.
[+]
 Bahamut.Negan
Offline
Server: Bahamut
Game: FFXI
user: Negan
Posts: 2,396
By Bahamut.Negan 2023-01-14 14:33:59
Link | Quote | Reply
 
Odin.Senaki said: »
this is infecting ffxiv as well
[+]
Offline
Posts: 5,173
By RadialArcana 2023-01-14 15:54:53
Link | Quote | Reply
 
I don't use discord but how can clicking an invite link lead to your account getting hacked? Unless it's a fake link and it's just a link to something else?
 Carbuncle.Waterdust
Offline
Server: Carbuncle
Game: FFXI
user: Waterdust
By Carbuncle.Waterdust 2023-01-14 16:05:29
Link | Quote | Reply
 
ty for the warning about it, the general rule of this should actually be like opening emails. If you don't know the sender or you weren't expecting the content to begin with, just delete it.

Don't open suspicious emails and certainly don't open strange links regardless of it being in discord or not.
[+]
 Asura.Daleterrence
Offline
Server: Asura
Game: FFXI
user: Dalight
Posts: 5,163
By Asura.Daleterrence 2023-01-14 17:25:42
Link | Quote | Reply
 
There has to be extra steps here. Clicking an invite isn't enough to lose your account. Either they downloaded something after joining that server or there is a massive vulnerability in Discord.

This also isn't a specific issue to FFXI or any game. Trust nothing on Discord if it's not an official link (discord.com, discord.gg), or going to a trusted site. If someone, even someone you know is asking you to download something, be immediately skeptical. Trust nobody implicitly.
[+]
 
Offline
Posts: 0
By 2023-01-14 18:22:11
 Undelete | Edit  | Link | Quote | Reply
 
Post deleted by User.
 Leviathan.Boposhopo
Offline
Server: Leviathan
Game: FFXI
user: Boposhopo
Posts: 229
By Leviathan.Boposhopo 2023-01-14 18:50:33
Link | Quote | Reply
 
Odin.Stayfresh said: »
Has anyone ever seen a discord invite with more than 8 characters? Any time I’ve created a link or been sent one, it has always been a combo of 8 letters/numbers.

First thing I noticed was that one has 10.

8 is for temporary links, 10 is for permanent links.
[+]
 
Offline
Posts: 0
By 2023-01-15 02:11:39
 Undelete | Edit  | Link | Quote | Reply
 
Post deleted by User.
Offline
By Draylo 2023-01-15 02:16:07
Link | Quote | Reply
 
My tin foil hat has activated... interesting.
 Asura.Melliny
Offline
Server: Asura
Game: FFXI
user: melphina
Posts: 659
By Asura.Melliny 2023-01-15 03:12:20
Link | Quote | Reply
 
Quote:
There has to be extra steps here. Clicking an invite isn't enough to lose your account. Either they downloaded something after joining that server or there is a massive vulnerability in Discord.

I'd also like to know how clicking a discord invite link can get your account hacked. I thought client / server data was separated to the point that invite links shouldn't pose a threat. How does joining a server enable account hacking?
 Odin.Senaki
Online
Server: Odin
Game: FFXI
user: Senaki
Posts: 1,185
By Odin.Senaki 2023-01-15 03:42:29
Link | Quote | Reply
 
All I know is, people who have gone to the discord in that link have reported getting their accounts hacked.

And the discord link is being spread by said hacked accounts.

Beyond that, I don’t have any information on the mechanism behind how the hacking works.

—-
One friend told me as soon as he Clicked the link, the discord app on his phone went ‘weird’ and then he realized he had gotten hacked and reset his password.
Offline
By Afania 2023-01-15 03:48:27
Link | Quote | Reply
 
Probably the good old QR code trick...

Offline
Posts: 520
By mhomho 2023-01-15 08:12:41
Link | Quote | Reply
 
Asura.Daleterrence said: »
there is a massive vulnerability in Discord.

Always has been.
VIP
Offline
Posts: 910
By Lili 2023-01-15 12:18:30
Link | Quote | Reply
 
The way these servers work is as such:
- you click on the invite and enter the server
- the server lands you on a welcome channels that says "to access all channels and all content you need to validate your account. to validate your account scan this QR code with the mobile app"
- every 30 to 60s, one of the admins sends a message in the welcome channel: "@everyone validate". after 30-60s, they delete the message and send it again.

rest is the same: soon as you validate the bot logs into your account, changes your password, and spams every channel of every server that you're in with the invite link, fishing for other people. Links in big public discords generally get you banned, but smaller, small-group-centered discords, the likes of which there's a million, are a big source of new hax since there's a stronger layer of implicit trust if you see your buddy say "guys check this out, I won't tell you what is it to not spoil the surprise".

So, the people who got hacked, well, they really wanted to see those underage anime boobs. Or they were really high. Or both.

No kinkshame, but eh.
 Asura.Daleterrence
Offline
Server: Asura
Game: FFXI
user: Dalight
Posts: 5,163
By Asura.Daleterrence 2023-01-15 12:26:50
Link | Quote | Reply
 
mhomho said: »
Asura.Daleterrence said: »
there is a massive vulnerability in Discord.

Always has been.

People don't count as a vulnerability in this respect.

Lili said: »
The way these servers work is as such:
- you click on the invite and enter the server
- the server lands you on a welcome channels that says "to access all channels and all content you need to validate your account. to validate your account scan this QR code with the mobile app"
- every 30 to 60s, one of the admins sends a message in the welcome channel: "@everyone validate". after 30-60s, they delete the message and send it again.

rest is the same: soon as you validate the bot logs into your account, changes your password, and spams every channel of every server that you're in with the invite link, fishing for other people. Links in big public discords generally get you banned, but smaller, small-group-centered discords, the likes of which there's a million, are a big source of new hax since there's a stronger layer of implicit trust if you see your buddy say "guys check this out, I won't tell you what is it to not spoil the surprise".

So, the people who got hacked, well, they really wanted to see those underage anime boobs. Or they were really high. Or both.

No kinkshame, but eh.

Okay I figured there had to be a step there which involved people doing something stupid, painful lesson to learn I guess.
[+]
 Asura.Melliny
Offline
Server: Asura
Game: FFXI
user: melphina
Posts: 659
By Asura.Melliny 2023-01-15 12:48:48
Link | Quote | Reply
 
I've never been asked to authenticate myself via a QR code to any discord server I've joined, and I've been invited to quite a few over the years. Servers can require you to have certain roles to gain access to specific channels, which lets server admins set up a hierarchy for group leaders and group members, but they don't authenticate via QR. If I ever saw that extra step I'd be immediately suspicious. But this is the first time I've heard about this and I appreciate the information. Thanks for sharing.
[+]
 
Offline
Posts: 0
By 2023-01-15 13:43:22
 Undelete | Edit  | Link | Quote | Reply
 
Post deleted by User.
[+]
 Odin.Senaki
Online
Server: Odin
Game: FFXI
user: Senaki
Posts: 1,185
By Odin.Senaki 2023-01-15 15:40:00
Link | Quote | Reply
 
Asura.Melliny said: »
I've never been asked to authenticate myself via a QR code to any discord server I've joined, and I've been invited to quite a few over the years. Servers can require you to have certain roles to gain access to specific channels, which lets server admins set up a hierarchy for group leaders and group members, but they don't authenticate via QR. If I ever saw that extra step I'd be immediately suspicious. But this is the first time I've heard about this and I appreciate the information. Thanks for sharing.

I joined one for school once that asked me to enter my school email into a bot for ‘verification’. Fortunately, I think this WAS just for verification.
Lol
 Odin.Senaki
Online
Server: Odin
Game: FFXI
user: Senaki
Posts: 1,185
By Odin.Senaki 2023-01-16 15:20:52
Link | Quote | Reply
 
I have recently been told by 2 separate people that all they did was click on the discord invitation link to get hacked.

I do not know the mechanics behind how clicking a discord invite can get you hacked. But I do trust the sources.
Offline
Posts: 464
By drakefs 2023-01-16 20:55:22
Link | Quote | Reply
 
Odin.Senaki said: »
I have recently been told by 2 separate people that all they did was click on the discord invitation link to get hacked.

I highly doubt this. If there was a way to "hack" discord account just by clicking an actual join link it would be more widespread. More likely they are clicking on links made to look like a join link or clicking on something else after joining a server.
 Odin.Senaki
Online
Server: Odin
Game: FFXI
user: Senaki
Posts: 1,185
By Odin.Senaki 2023-01-17 06:23:00
Link | Quote | Reply
 
drakefs said: »
Odin.Senaki said: »
I have recently been told by 2 separate people that all they did was click on the discord invitation link to get hacked.

I highly doubt this. If there was a way to "hack" discord account just by clicking an actual join link it would be more widespread. More likely they are clicking on links made to look like a join link or clicking on something else after joining a server.

Idk, you might be right.
 Carbuncle.Waterdust
Offline
Server: Carbuncle
Game: FFXI
user: Waterdust
By Carbuncle.Waterdust 2023-01-17 08:09:32
Link | Quote | Reply
 
Ya know what.. everything = sus

Run with that and a yellow light =)
 Odin.Senaki
Online
Server: Odin
Game: FFXI
user: Senaki
Posts: 1,185
By Odin.Senaki 2023-01-17 12:46:39
Link | Quote | Reply
 
Carbuncle.Waterdust said: »
Ya know what.. everything = sus

Run with that and a yellow light =)

What if you drop the light?
Log in to post.