Discussion:
Everquest - "How to Make Unlimited Platinum"
(too old to reply)
e***@yahoo.com
2005-12-20 17:43:51 UTC
Permalink
Here's a small list of over 300+ Exploits for Everquest...feel free to
browse all the exploits at http://www.eqtotalsecrets.com


EQ Exploit - Show all mobs: Displays all mobs and NPC's on the /who
list.


EQ Exploit - Jump: Allows you to jump with 0 endurance.


EQ Exploit - Prevent Weather: Tired of the rain in Greater Faydark? Now



you can stop it!


EQ Exploit - Hide, sneak, and pickpocket while attacking: The name says



it all.


EQ Exploit - Hide and run: Be able to run and use your hide skill at
the same time.


EQ Exploit - Beg while invisible and attacking: As the name says.


EQ Exploit - Show spell names: This shows the name of the spell when an



enemy mob casts it.


EQ Exploit - Turn off anonymous: This lets you see anonymous players'
information.


EQ Exploit - Prevent Blindness: This prevents enemy mobs from blinding
you.


EQ Exploit - See Underwater: This allows you to see underwater like you



were on land.


EQ Exploit - Mega Warp: Warp to any location or any NPC in your current



zone with this plug-in.


EQ Exploit - Gate Plugin: Instantly gate to your current bind location
no matter what your class. With this plug-in you will never die again.


EQ Exploit - No-Stun: Never be stunned again.


EQ Exploit - Instant Camp: This will allow you to instantly camp and
leave the game at any-time without having to wait 30 seconds. Using
this you can instantly exit any situation without risk of death.


EQ Exploit - Instant-Zone: Instantly move yourself to any adjacent
zone. Never waste time traveling again.


EQ Exploit - Set-Buff: Instantly turn on and off certain buffs. Can be
used to instantly remove harmful spells such as resurrection effects
and root.


EQ Exploit - Exchange: Quickly exchanges different gear setups with the



click of a button. It's great for melee classes such as warriors or
rogues that often have to exchange gear and weapons. The Exchange
plugin lets you do those transformations in a single click with the
items anywhere in your inventory.


EQ Exploit - Mob Mover: Allows you to use a /stick command to follow
and stay within attacking range of a mob.


EQ Exploit - InstantMem: Instantly memorize spells. Prevents you from
wasting time when switching to new spells.


feel free to browse over 300+ exploits at http://www.eqtotalsecrets.com
Vidden
2005-12-20 20:03:13 UTC
Permalink
You know, I was thinking. If this is legit and he actually really has
found these exploits, wouldnt it be a good idea for Sony to give him
the money so they can find the exploits, fix them, and shut him down?

__________________________________________________________
Submitted by: Vidden
This message was submitted through the Erollisi Marr Forum
Xiphos
2005-12-21 02:02:16 UTC
Permalink
Post by Vidden
You know, I was thinking. If this is legit and he actually really has
found these exploits, wouldnt it be a good idea for Sony to give him
the money so they can find the exploits, fix them, and shut him down?
Some of the exploits, particularly the ones involving local data
display such as weather and mob locations, have no really good
solution. Once it's on the local host, the host owner can do pretty
much anything with the data. Any bit of code can arbitrarily sit
between the EQ client and the 3D hardware abstraction layer, in this
case the Direct3D API, altering visual data such as models, fog,
environment effects, etc. The solution here is to talk directly to the
hardware, but that's not only highly undesireable, it's highly
impractical and is still susceptibl to man-in-the-middle software
written to sit between the client and the hardware on the hardware's
behalf performing the same exploit. Other locally accessible data
include mob locations, since the client needs to know this to properly
place mobs on the screen, and any hand-held objects which might alter
the appearance of said mob. Basically, anything client-side is knowable
and alterable.

Other exploits are so deeply entrenched in the game's architecture as
to involve some unwieldly rewrites. A good example would be the warping
exploit. Due to hardware restrictions of the day, Verant relegated
movement calculations to the client without any sort of sanity checks
on the server side. As a result, you can have man-in-the-middle network
exploits with software designed to read the EQ UDP packets, interpret
them, parse for desired data, alter said data, then re-insert the
packet into the stream. This can also be used to strip data such as
weather from even reaching the client, so the client never knows about
certain effects.

The solution is a complete rewrite of how the game works, and what data
the client sees. Such a monsterous task would be highly impractical and
at this point even undesireable. Instead, best thing to do would be
take the lessons learned, hunt down cheaters for the remaining life of
the game, and make the next one better.

Solutions/lessons learned:
* Don't give the client authoratative power over anything. You can
relegate certain calculations to the client, but when you do, please,
please, PLEASE implement at least some sort of sanity check on the
server side.

* Use discrete zones instead of monolithic ones (thanks guys, for
giving me a technical name for that). You not only eliminate zone times
and give a more fluid and consistent experience in the game, you
eliminate the need to know where all things are at all times on the
client side. Only things which are close are known about. This reduces
client-side data mining

* Use a strong encryption for pakets. This does two things: increases
network traffic security to prevent unwanted third parties from
sniffing your traffic, and makes man-in-the-middle packet altering
attacks/cheats less likely.

I'm sure there's more, but I can't think of them right now. For now,
with WoW being the big boy on the street, EQ exploiters seem to have
been on the decline; where's the bragging rights in it?
--
Xiphos - I mean, come on, hacking EQ? That's like bragging about taking
down an unpatched Windows 95 box. It's just emberassing. ... ...not
that I would know anything about that sort of thing...

Loading...