Opticraft Community

Discussion forum => Creative => Archives => General Discussion => Topic started by: velo on May 25, 2015, 12:29:13 am

Title: IMPORTANT! Books with Hacked Clients
Post by: velo on May 25, 2015, 12:29:13 am
Something has recently come to mine, as well as some other staff's attention that needs to be dealt with. Please read this article. This applies to both Creative AND SMP, as well as any other server you play on.
So basically, since this is the second time it's occurred while I've been on, I as well as Alicia agree that you all need to be informed about this "scam," of sorts.
Basically, in both instances a new player joined the server and asked for a staff member. They both said "I found a book on the ground. Can you read it?" or something along those lines. Please heed my advice: DO NOT OPEN THE BOOK!
Hacked Clients make it possible to send you to websites, or make you execute commands in Minecraft.
In the first instance, two players read the book. Both said that their iTunes Account was opened up.
In the second instance, the player was asking for an Admin to see the book, so we assume he was trying to Force OP.
Please take precautions when dealing with players in game who do this, and try to prevent others from making this mistake as well.
Please spread the word to prevent this from becoming a problem. If you see someone in chat doing this, take a screenshot and report it to me or a staff member as soon as possible.
Thanks for your time,
-Velo
Title: Re: IMPORTANT! Books with Hacked Clients
Post by: DeeKay on May 25, 2015, 12:36:04 am
Any idea what the book will look like, like what will be written in them?
Title: Re: IMPORTANT! Books with Hacked Clients
Post by: velo on May 25, 2015, 12:39:51 am
The first time Pim said the only thing in the book was "Hi."
I'm not sure what the second one looked like as he left as soon as I told nobody to look at the book. Some might be links, some might be blank.
Title: Re: IMPORTANT! Books with Hacked Clients
Post by: SJ321987 on May 25, 2015, 01:28:52 am
Someone gave me a book like this and it contained a link which I did not click, I didn't pay attention to see if opening it did anything to my computer though.
Title: Re: IMPORTANT! Books with Hacked Clients
Post by: TheWholeLoaf on May 25, 2015, 01:34:38 am
If this is accurate, and you're a staff member, collect the book by requesting to see it. Sounds like they would want to target staff. Delete it in your inventory, and ban the player. Reporting it to non staff will not help.
Title: Re: IMPORTANT! Books with Hacked Clients
Post by: TarynMai on May 25, 2015, 03:31:56 am
We dont know if theyre trying to do this unless we open the book. Try not to ban if you can help it, just mute the player and watch them. If they continue to look for ways to get people to read the book, then ban them.
Title: Re: IMPORTANT! Books with Hacked Clients
Post by: DeeKay on May 25, 2015, 03:35:47 am
Interesting, I've read some more on this exploit, and it appears to work by creating a book with 'invisible' JSON content, usually in the form of a link, like you said. I'm looking into ways to counter this, besides the obvious "don't click suspicious links in books" thing.
Title: Re: IMPORTANT! Books with Hacked Clients
Post by: 100penguin. on May 25, 2015, 06:57:02 am
We bow down, O knowledgable DK...
Title: Re: IMPORTANT! Books with Hacked Clients
Post by: ~pimkey5~ on May 25, 2015, 09:34:37 am
wElp That worked. I got the book and opened it thinking it was just normal soooooooooo I'm dead
Title: Re: IMPORTANT! Books with Hacked Clients
Post by: Nick3306 on May 25, 2015, 10:45:50 am
Might as well ban books on creative since i doubt anyone used them anyway.
Title: Re: IMPORTANT! Books with Hacked Clients
Post by: TarynMai on May 25, 2015, 01:56:23 pm
Would it be possible to just make books recruit+? Or would that just be a pain? lol