Beware ! I just got in a CG shop !!

Discussion in 'Neopets Chit-Chat' started by singapore, Jul 11, 2010.

  1. singapore

    singapore Level III

    Joined:
    Jan 4, 2010
    Messages:
    554
    Likes Received:
    10
    i was searching for Codestones..

    the username is something like Ber******* the * means i forgot what are they..but it was only letters, not numbers or underscores..

    if you check your history, you'll see that you went to a www.neopets2.50/******..

    if you do meet with this, change your CLEAR YOUR HISTORY, CHANGE YOUR Password to EVERYTHING !!
    NOT JUST NEOPETS !! EVERYTHING THAT YOU LOGGED ON USING YOUR BROWSER..EMAILS, FORUMS, EVERYTHING THAT REQUIRES A PASSWORD !!!

    BEWARE MY FELLOW Neofriends:)
     
    Rundownandy likes this.
  2. Rundownandy

    Rundownandy Level IV

    Joined:
    Feb 20, 2007
    Messages:
    785
    Likes Received:
    33
    Damn...I wonder when this CG S@#% is going to stop! Thanks for the warning!!!
    I've been training my pet lately and now I'm very concerned about who to buy codestones from.
    I'm thinking about paying for overpriced codestones in well known malls..
     
  3. singapore

    singapore Level III

    Joined:
    Jan 4, 2010
    Messages:
    554
    Likes Received:
    10
    i think overpaying would be a very good choice..users on BD are saying that the user(s) have been frozen..but yeah i was CG before they were frozen..really hope nothing happens to me..:(
     
  4. Rundownandy

    Rundownandy Level IV

    Joined:
    Feb 20, 2007
    Messages:
    785
    Likes Received:
    33
    I'm gonna stick to very well known people, that have a low chance of getting cged. I would love to see someone post a list of safe mallers to buy from. lol
     
  5. singapore

    singapore Level III

    Joined:
    Jan 4, 2010
    Messages:
    554
    Likes Received:
    10
    fuck man..i just found out i lost some items worth nearly 10 million..the CGer is good man..i think he was damn fast or he preprogrammed to grab my item..
     
  6. Rundownandy

    Rundownandy Level IV

    Joined:
    Feb 20, 2007
    Messages:
    785
    Likes Received:
    33
    Ouch...Sorry to hear about your loss. Hopefully TNT can track him down... Hopefully they will patch this problem and press charges against the person doing it...Would definitely put a stop to anybody considering using a cg.
     
  7. singapore

    singapore Level III

    Joined:
    Jan 4, 2010
    Messages:
    554
    Likes Received:
    10
    sigh..i didn't get back anything :(..not even a pathetic reply from TNT..
     
  8. SoC

    SoC Moderator
    Staff Member

    Joined:
    Jan 24, 2007
    Messages:
    4,551
    Likes Received:
    105
    Location:
    Maaaaaaanchester!
    PIN everything.... Rookie mistake
    FF + Noscript also
     
  9. Shawn

    Shawn Level IV

    Joined:
    Jul 15, 2009
    Messages:
    1,989
    Likes Received:
    76
    Location:
    Somewhere, lah.
    well of course, change PW, pin, clear cache+cookies, change email address' PW if it's the same. Side accounts too.
    (SoC i wanna be white)
     
  10. singapore

    singapore Level III

    Joined:
    Jan 4, 2010
    Messages:
    554
    Likes Received:
    10
    hmm..what is FF + Noscript ? Firefox + Noscript ?

    i was just too lazy to PIN everything..i PIN-ed everything AFTER i realize that my items were gone..i know i know its too late :(..

    luckily for me, i access my sides on Firefox and my main on chrome and my main was the one that got CG and lost the item..would be really troublesome if i have to change all my side password..furthermore, ff is my main browser..i use this to surf the net..
     
  11. Rundownandy

    Rundownandy Level IV

    Joined:
    Feb 20, 2007
    Messages:
    785
    Likes Received:
    33
    FF = Firefox.
    So it's Firefox + Noscript
    Definitely one of the best add-ons for safety, just really annoying sometimes if you don't have exceptions for it. Just becareful which exceptions you add for it, because it could defeat the purpose of having it in the first place.
     
  12. snadyy

    snadyy Level I

    Joined:
    Jul 11, 2009
    Messages:
    73
    Likes Received:
    3
    Yeah, I was taken into a off-site login form almost a week ago when I was sniping codestones and reported it immediately. I didn't bother to change my pw or pin though, so I guess I got lucky in the sense that I haven't lost anything nor did my account got frozen. This morning my best friend had asked me whether I went into her account, me being the cheater, and her having a completely legit account for three years, and I told her I didn't, and then warned her about CGers being back on-site. Apparently the reason why she had asked was because she had gotten frozen for suspicious activity :( It really sucks.
     
  13. Rundownandy

    Rundownandy Level IV

    Joined:
    Feb 20, 2007
    Messages:
    785
    Likes Received:
    33
    Ouch. All I can say is try to be safe. This CG problem seems to only be with shops at the moment. Users looking to snipe codestones are at high risk.
    On another note: TNT seems to love freezing for suspicious activity lately. Hope she gets her account back.
     
  14. singapore

    singapore Level III

    Joined:
    Jan 4, 2010
    Messages:
    554
    Likes Received:
    10
    sorry for being a noob :D..but erm, can i have a bit more desription? as in what exceptions should i or should i not add?


    i think it was because you had to actually login into the off-site form in order for it to work or in this case, in order for your cookies to be grabbed..for me, i actually went and click on the codestone without thinking..
     
  15. Josh21227

    Josh21227 Level I

    Joined:
    May 23, 2009
    Messages:
    57
    Likes Received:
    10
    o_O Thats not how a CGer works.
     
  16. xiatus

    xiatus Level III

    Joined:
    Feb 10, 2007
    Messages:
    572
    Likes Received:
    3
    Thanks for the head up.
    I'll be more careful when buying from shop.
     
  17. singapore

    singapore Level III

    Joined:
    Jan 4, 2010
    Messages:
    554
    Likes Received:
    10
    :D i was just guessing..meaning for my case, i was already CGed when i click on the link via the SW usernames link? or it was because i clicked on the codestone that was in the fake shop?
     
  18. Rundownandy

    Rundownandy Level IV

    Joined:
    Feb 20, 2007
    Messages:
    785
    Likes Received:
    33
    Yea, the current cg problem is the cgers are putting codestones in shops for super cheap, and when the user goes to buy it, it redirects you to a page with a cger on it.
     
  19. Josh21227

    Josh21227 Level I

    Joined:
    May 23, 2009
    Messages:
    57
    Likes Received:
    10
    The shop CGer I believe is now patched. The bypass that was being used to post an offsite link has been patched, so fake codestones should no longer be a problem.

    Note: I was not the one CGing. I found the offsite CGer exploits, and a friend found the offsite link exploit. All of that was sold to someone else who was using it.

    That does not mean you are safe. Just that fake codestones should no longer be possible.
     
  20. snadyy

    snadyy Level I

    Joined:
    Jul 11, 2009
    Messages:
    73
    Likes Received:
    3
    Care to share some insight on the possibility of why I wasn't affected when I went to the offsite link by clicking on the codestone? Just really, really curious. :)