Warning.

Discussion in 'Neopets Chit-Chat' started by Shawn, Jul 20, 2010.

Thread Status:
Not open for further replies.
  1. Shawn

    Shawn Level IV

    Joined:
    Jul 15, 2009
    Messages:
    1,989
    Likes Received:
    76
    Location:
    Somewhere, lah.
    Apparently, there's CGing going around. Here's how they do it, (Not to educate you, you wont have the cookiegrabber php source anyway), but to let you look out for signs, and to read page source.

    Firstly, they link offsite like that:
    Code (Text):
    1. <a href="http://istealyourcookie.urlhere.com" + "http://neopets.com">CLICK HERE TO GET HAXXED</a>
    When you click the link, you're directed offsite for a split second, here's how they do it:
    Code (Text):
    1. setTimeout( "window.location.href = 'http://www.neopets.com/pagetoreturnonneopets'", 1*1000 );
    That's just the redirect-me-back-to-neopets part of the code.
    The cookie grabbing code is like that, and is explained here.

    (Image grabbed from some battledome chatter)
    [​IMG]
     
    Freja likes this.
  2. Badge

    Badge Level II

    Joined:
    Jul 20, 2010
    Messages:
    201
    Likes Received:
    6
    Location:
    Perth
    Thankyou for the warning! CG'ers are out heaps lately!!
     
  3. tharoux

    tharoux Level IV

    Joined:
    Dec 30, 2006
    Messages:
    2,733
    Likes Received:
    126
    Location:
    In front of my PC, Montreal
    You left one important thing out: How they link to the other site.

    Until last week, there was an exploit (I won't say more than that) and trust me, you wouldn't have known that you were CGed.

    Now, you can still convince a user to click a link but it's highly inefficient.
     
  4. SoC

    SoC Moderator
    Staff Member

    Joined:
    Jan 24, 2007
    Messages:
    4,551
    Likes Received:
    105
    Location:
    Maaaaaaanchester!
  5. Shawn

    Shawn Level IV

    Joined:
    Jul 15, 2009
    Messages:
    1,989
    Likes Received:
    76
    Location:
    Somewhere, lah.
    Wow tharoux secrets
     
  6. Grimwolf08

    Grimwolf08 Level I

    Joined:
    Jul 19, 2010
    Messages:
    67
    Likes Received:
    0
    Nifty to know.

    And SoC....That sig is amazing.
     
Thread Status:
Not open for further replies.