Thread Tools Display Modes
03-31-09, 09:24 PM   #1
oakfn
An Aku'mai Servant
Join Date: Nov 2006
Posts: 39
Authicator

Hi I just noticed you can get a Battle.net authicator on your account is there a fee for this?And says can do mobile any idea what phones it works on?


Thanks
  Reply With Quote
03-31-09, 09:27 PM   #2
Cairenn
Credendo Vides
 
Cairenn's Avatar
Premium Member
WoWInterface Admin
Join Date: Mar 2004
Posts: 7,134
http://www.worldofwarcraft.com/index.xml
  Reply With Quote
03-31-09, 09:30 PM   #3
oakfn
An Aku'mai Servant
Join Date: Nov 2006
Posts: 39
Doh! Thanks Cairenn
  Reply With Quote
03-31-09, 09:32 PM   #4
Cairenn
Credendo Vides
 
Cairenn's Avatar
Premium Member
WoWInterface Admin
Join Date: Mar 2004
Posts: 7,134
Hehehe. You're welcome.
  Reply With Quote
03-31-09, 09:33 PM   #5
Sythalin
Curse staff
 
Sythalin's Avatar
AddOn Author - Click to view addons
Join Date: Aug 2006
Posts: 680
Keep in mind that the authenticator is not 100% safe. Guildie of mine the other day got his account hacked and he has one.
  Reply With Quote
03-31-09, 09:50 PM   #6
jonathon
A Chromatic Dragonspawn
 
jonathon's Avatar
AddOn Author - Click to view addons
Join Date: Aug 2006
Posts: 179
Originally Posted by ChaosInc View Post
Keep in mind that the authenticator is not 100% safe. Guildie of mine the other day got his account hacked and he has one.
you know, i've never actually talked to anyone who has had their account hacked while using one... its always a friend of mine, or a guildie of mine, or the friend of my uncles pool boy... not saying it didn't happen, just saying that I've never heard that first hand....
__________________
hackers always learn.. thats why there are security patches.
  Reply With Quote
03-31-09, 10:02 PM   #7
Cairenn
Credendo Vides
 
Cairenn's Avatar
Premium Member
WoWInterface Admin
Join Date: Mar 2004
Posts: 7,134
Pop into the IRC channel sometime, there are people in there that know exactly how to get around it. Nothing like a bunch of geeks presented with a challenge. You should see the fun they have when they get their teeth into a new virus/trojan/keylogger. *giggle*

[edit]For the record, the reason they know how to get around it is because they were deliberately trying to so they could provide the info to Blizz. I know, since I'm the one that forwarded their findings. Not the first time my wonderful geeks have broken stuff so the info can be passed along to Blizz/other game company/virus scanner companies, etc. <3 my geeks.

Last edited by Cairenn : 03-31-09 at 10:05 PM.
  Reply With Quote
03-31-09, 10:21 PM   #8
Vyper
A Rage Talon Dragon Guard
 
Vyper's Avatar
AddOn Author - Click to view addons
Join Date: Jul 2008
Posts: 317
Originally Posted by Cairenn View Post
<3 my geeks.
/sigh.... I wish I was one of Cairenn's geeks.
  Reply With Quote
03-31-09, 10:39 PM   #9
Cairenn
Credendo Vides
 
Cairenn's Avatar
Premium Member
WoWInterface Admin
Join Date: Mar 2004
Posts: 7,134
/me chuckles
  Reply With Quote
04-02-09, 03:44 AM   #10
DamonDK
A Deviate Faerie Dragon
AddOn Author - Click to view addons
Join Date: Dec 2006
Posts: 14
While I ofc am glad that there's some white-hat hackers who see every securitymeasure as a challenge and can present the inventors of said measures with ways to improve them, I'm very interested in hearing how it's possible to hack an authenticator?

I would presume the setup is this :
There's a keylogger installed and you have X amount of valid keycodes complete with timestamps.

You then reverse engineer the algorithm (or allready know it because you've bought 2+ authenticators to compare the outputs with their serial number)

So in the end what you're going for is the serial code of the authenticator, since that is the "seed" by which blizz can verify the authenticator codes.

How many keycodes would it take from a keylogged pc to come up with the serial number and thus enable a full working authenticator emulation?
  Reply With Quote
04-02-09, 03:49 AM   #11
Cairenn
Credendo Vides
 
Cairenn's Avatar
Premium Member
WoWInterface Admin
Join Date: Mar 2004
Posts: 7,134
Well it's not like I'm about to post it here, now is it?
  Reply With Quote
04-02-09, 05:48 AM   #12
DamonDK
A Deviate Faerie Dragon
AddOn Author - Click to view addons
Join Date: Dec 2006
Posts: 14
I'm not asking for a complete guide on how to do it, and my math/programming skills aren't up to that kind of work anyway.

I'm asking for a ballpark figure here, so I'll use a metaphor :
Is the Authenticator as safe as WEP or WPA2?

WEP can be hacked in less than 5 minutes if you have the software to do so.
WPA2 can be hacked, in theory, but in reality it would take months to compute and try out all the combo's.
  Reply With Quote

WoWInterface » General Discussion » Chit-Chat » Authicator


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off