ID:35577
 
That's right, we're back baby!

Just take a look at the right side of the screen and there's a lovely link for you, I've even bolded, underlined, and italicized it for you.

WoW is back on, and better than ever. With Evre doing the scripting so we can run events, and the server being actually full of win.
Why should we?
After that password thiefing?

I'm not insulting you, but you could give us a little bit of reassurance.
Use a password that's stupid that you don't care about, as I said before I used "banana".

The last server was run by Hikato. He's a password thief, I give fair warning on the other page that the passwords aren't encrypted, it's just a matter of using a password that you don't normally use.

I chose banana because it's silly and hard to forget.
Mikau wrote:
Use a password that's stupid that you don't care about, as I said before I used "banana".

The last server was run by Hikato. He's a password thief, I give fair warning on the other page that the passwords aren't encrypted, it's just a matter of using a password that you don't normally use.

I chose banana because it's silly and hard to forget.

Okay so no one will figure out the super password that you use for anything else anymore but lets approach this from another direction. Now that the accepted rule is simple passwords, whats there to keep from some troll or someone you piss off royally breaking your easy password and going in and deleting characters or selling gear or whatever?
He didn't say simple password, he said a different password.
In any case, using a completely random but hard to forget word (like banana) is still fairly secure (particularly if you obfuscate it with standard techniques) but easy to remember.
I'm half tempted to join myself, to be honest.
Hazman wrote:
He didn't say simple password, he said a different password.
In any case, using a completely random but hard to forget word (like banana) is still fairly secure (particularly if you obfuscate it with standard techniques) but easy to remember.
I'm half tempted to join myself, to be honest.

Maybe he should probably suggest to people to do those techniques then cause basic words for passwords like banana and automobile and kangaroo will eventually be figured out by guess work or much more easily if someone runs a program of sorts.

For example:

Anytime an 'A' is used, replace it with @ (at symbol)

O: 0 (zero)
S: $
I: ! or | (shift + backslash)
X: *
C: {
V: ^

I'm sure others can be figured out from there. But a simple random word without being enhanced is just not enough in my opinion.

Small example:
Original password: Starbucks
Enhanced password: $t@rbu{k$
CyberHound wrote:
Hazman wrote:
He didn't say simple password, he said a different password.
In any case, using a completely random but hard to forget word (like banana) is still fairly secure (particularly if you obfuscate it with standard techniques) but easy to remember.
I'm half tempted to join myself, to be honest.

Maybe he should probably suggest to people to do those techniques then cause basic words for passwords like banana and automobile and kangaroo will eventually be figured out by guess work or much more easily if someone runs a program of sorts.

For example:

Anytime an 'A' is used, replace it with @ (at symbol)

O: 0 (zero)
S: $
I: ! or | (shift + backslash)
X: *
C: {
V: ^

I'm sure others can be figured out from there. But a simple random word without being enhanced is just not enough in my opinion.

Small example:
Original password: Starbucks
Enhanced password: $t@rbu{k$

People can easily translate passwords that are in leet to their real counterparts.
GoodDoggyTreat wrote:
CyberHound wrote:
Hazman wrote:
He didn't say simple password, he said a different password.
In any case, using a completely random but hard to forget word (like banana) is still fairly secure (particularly if you obfuscate it with standard techniques) but easy to remember.
I'm half tempted to join myself, to be honest.

Maybe he should probably suggest to people to do those techniques then cause basic words for passwords like banana and automobile and kangaroo will eventually be figured out by guess work or much more easily if someone runs a program of sorts.

For example:

Anytime an 'A' is used, replace it with @ (at symbol)

O: 0 (zero)
S: $
I: ! or | (shift + backslash)
X: *
C: {
V: ^

I'm sure others can be figured out from there. But a simple random word without being enhanced is just not enough in my opinion.

Small example:
Original password: Starbucks
Enhanced password: $t@rbu{k$

People can easily translate passwords that are in leet to their real counterparts.

True, thats why you don't do a COMPLETE translation. If people are having to figure out which A's you leet'd when you got say, 4 A's in your password (Anti-authoritarinism-ant), that makes their job that much more difficult. Mix it around, diversify it. Maybe stick in 2 or 3 \\\'s between Star and bucks. Treat your password like a canvas and experiment.

Basically, make it so that the only way another person could figure out your password was if they I got into your brain at the very second you thought it up.
CyberHound wrote:
GoodDoggyTreat wrote:
CyberHound wrote:
Hazman wrote:
He didn't say simple password, he said a different password.
In any case, using a completely random but hard to forget word (like banana) is still fairly secure (particularly if you obfuscate it with standard techniques) but easy to remember.
I'm half tempted to join myself, to be honest.

Maybe he should probably suggest to people to do those techniques then cause basic words for passwords like banana and automobile and kangaroo will eventually be figured out by guess work or much more easily if someone runs a program of sorts.

For example:

Anytime an 'A' is used, replace it with @ (at symbol)

O: 0 (zero)
S: $
I: ! or | (shift + backslash)
X: *
C: {
V: ^

I'm sure others can be figured out from there. But a simple random word without being enhanced is just not enough in my opinion.

Small example:
Original password: Starbucks
Enhanced password: $t@rbu{k$

People can easily translate passwords that are in leet to their real counterparts.

True, thats why you don't do a COMPLETE translation. If people are having to figure out which A's you leet'd when you got say, 4 A's in your password (Anti-authoritarinism-ant), that makes their job that much more difficult. Mix it around, diversify it. Maybe stick in 2 or 3 \\\'s between Star and bucks. Treat your password like a canvas and experiment.

Basically, make it so that the only way another person could figure out your password was if they I got into your brain at the very second you thought it up.

Or if they brute force your password.
I'm surprised there's even an argument about this.

It's just a rogue server of an MMO. If you use a trash password and it gets cracked, you really haven't lost much. If you're really that paranoid, just come up with a random string of characters and write it down on a piece of paper somewhere.
Ah, good times, playing on private servers. I ran my own for a while, and helped Tubby run one for our school for a few months. I'll be sure to check out the server. Make sure you get the script mod that allows the max level to be raised. Level 250 max level FTW.
Oh, and as for the password thiefing, use a trash password as Sarm said.

Burrito, lemons, something random like that.
You guys are funny. The fact of the matter is that only 3 people have access to the scripting database, and only one person has access to the character database. Even if the passwords were hashed, you brute force method would be something to worry about. But the fact of the matter is that it's a private server for us to have fun. I highly doubt anyone's going out of their way to steal your passwords seeing how the people running it are myself, Evre, and Johan(Johan has had the server for quite a while).

Use banan0, nobody would guess that.
Why not simply encrypt the passwords now?

Did you guys really leave the database as it was with Hikato?
Since this is a self hosted server, you dont need a wow account? if so meybe il go back to play wow, since its a full RP server i mean
Flame Sage wrote:
Why not simply encrypt the passwords now?

Or you could just use a throwaway password, and not worry about it. We aren't going to steal your character, since the only people with the ability to do so can auto-level themselves if they wanted, and create items on the fly.
Would be nice to get an response...-_-
Take a look at the page, it's obviously free.
....im...lazy....but thanks, meybe il get my self to install wow and RP whit you guys xD but a pretty small server whit like 20 peoples or more. or does this server have over 100 players like at the same time.
Right now it doesn't have much, but it can hold that many if that many wanted to play it.
Page: 1 2