Tree of Savior Forum

Addons creators are EXPLOITING and HACKING ToS!

amen to that. looked like a spoiled brat getting the smack in the face that he deserved.

and really, with the Addon Manager out now, if people still “need” help, there’s probably nothing that can be done for them anyway.
(ps: a million thanks for getting context menu additions updated! and a million more for everything else!)

this was actually my first thought: well maybe it’s private because they know it’s kinda exploity, and they’re just doing it to point it out? like, “Hey IMC… we’re probably not supposed to be able to do this right? maybe you should plug up the coding so that we actually can’t.”

honestly, for a couple of people that have given so much to this community and this game already, a lot of people seem really eager to jump onto any -whisper- of a scandal screaming “i told you so, i knew they had to be up to no good!”…

i don’t pretend to be any paragon of virtue myself, but this is too painfully accurate.
we, as a community, need to get our sh*t together, and stop acting like such a bunch of whiny, self-entitled asses.

So what’s your point ?
Basically you’re bashing fiote when he did nothing wrong (but leaking private addons by inadvertance).
Afaik, he hasn’t purposely made theses discutable addons public. Having him as a commiter on a mirror repo doesn’t make him a confirmed exploiter either.

wow just wow, you must be some top tier retard, HI LOOK EVERYONE, this is how you can hack the game, this is like going to a school yard and handing kids porn. (epic facepalm)

1 Like

Let’s all bash Fiote for trying to fix the bug!

@Mirara How I know that din’t report the bug to IMC? Because he is trying to disappear with the evidences? because the remove everything including the commit history? But It’s ‘bult-in’ on the code from ALL cw* addons too, you can see here:

Search for “cx”…

Probably now I showed it for you he will try to delete it again, but it will be useless, because anyone can open the previous addons that he released in ipf format, and extract the lua code and will find the checkings for “cx” addons.

Or he will try to make it look like there is no problem:

You can do what you want, but have to handle the consequences of their actions.

1 Like

You can’t just look at a screenshot of a few lines of code and come to a conclusion about what everything here is actually doing. Just like you can’t open a book, turn half way into the book, read one paragraph and suddenly understand the whole story.

Without being able to examine the code from what cxScanner is really doing, there’s no way to come to any conclusion both negative nor positive. Therefore it’s all slander. Assuming you are right and the codes are written as a means to call a blacksmith from anywhere and datamine the market, there is no proof of malicious intent or of them being “officially supported”. If these modders are reporting things back to IMC after discovering security issues then they are doing a great service to everyone here by doing this. (It’s the basic idea behind white hat hacking. Discovering security issues so that they can be patched up and it’s honorable and respectable.)

Also what’s wrong with him not wanting his code to be shared here? So he may not have understood the ToS of how GitHub works, oh well, he didn’t sound like a particular ass hole in that post and was perfectly reasonable. Just because he doesn’t want his code shared before it goes public officially doesn’t imply he’s doing anything “suspicious”.

Not trying to sound like a “white knight” here but I’m just seeing things for what they are since I am a programmer myself.

1 Like

No… no “white knight”, only blind and deaf.
Your REALLY believe your own words?

Nothing wrong with this code, Mr Programmer:
https://raw.githubusercontent.com/michellorel/ToS-Addons/master/cxanywhere/cxanywhere.lua

Yep… Reported to IMC, SURE!
https://github.com/michellorel/ToS-Addons/commit/b70161f9ddb75659010dd7ad77762dd3edde403e
https://github.com/michellorel/ToS-Addons/commit/81867a3066f5be36ceafbd460e73e90eb31d5e9c

Keep defend blindly, will not change anything anyway. What are done, are done.

1 Like

Okay, you are right. They are for the market and shop system. They seem to be trying to make the shops be accessible from anywhere and some code I saw may be trying to allow the market to be accessible from anywhere as well, not just scanning and logging the market.

It proves that there’s security loopholes in the game which people have admitted already. It doesn’t prove that these modders are trying to exploit the game, help RMTers and encourage cheating.

Do you have absolute, irrefutable evidence that these modders are trying to exploit the game, help RMTers or encourage cheating? If not, then I’m going to assume that these modders were messing around and, as he mentioned above, submitting security issues to IMC that he’s discovered.

Do you deny that it may be beneficial for modders to discover these issues and report it back to IMC?

2 Likes

you’ve -decided- that he is acting against ToS, and and then you choose to see everything after that as evidence of his wrongdoing.

yes, because you can see his private communications with IMC, right? so you -know- exactly what he’s done or not done.

and it’s his code that he wrote. does he not have -some- right to say “not ready for public yet, please don’t share it” ?


btw, for all you people that don’t get it…

-this- is literally white-knighting.

we’re defending this guy… but -we- don’t know either.

what we know is that he’s done a lot of good things for the community.

these private mods -might- be for good or for bad.
…maybe they want to make the market/etc accessible anywhere, in ways that IMC did not intend.
…or maybe they’re doing it to point out to IMC that there are security holes that need patching.

we don’t -know- for certain what their objective is.
but we do know that, no matter how much you protest, you don’t actually know either.

3 Likes

First of all, for a good conversation, please, learn the difference:
http://www.dictionary.com/browse/evidence
http://www.dictionary.com/browse/fact
See?

Now… ALL THIS TOPIC, are EVIDENCES, I never say “fact”, right?
A “absolute, irrefutable evidence”, turn into fact, and AGAIN: I never say it.

But, let’s thing together:
IF fiote are using these exploits, are irrelevant… He is ONE user. Ok?
BUT, security flaw on client ARE relevant.
(bad) Users knowing this code ARE relevant.
The game being exploitable ARE relevant.
Game being ruined by (bad) hacking behavior ARE relevant.

And… Above all: IMC saw this topic, this is relevant and important.
All other argumentations, I don’t care.

1 Like

Then if it’s not a FACT, then why so much effort trying to slander the modders and paint them as abusive?

If it’s not a fact, why are you making accusations as if implying fact? I’m confused here.

1 Like

“Looks like”… “possible”…
Don’t be confused, this words show I only have evidences, not facts.

And AGAIN, this effort is against security flaws on client being exploited (by these modders?), not against modders.

1 Like

Okay well your post can be taken as a slander with no evidence which is why so many people turned this into a shitstorm unfortunately. Consider wording things differently and you will get better results.

That’s all I have to say here.

1 Like

This post was flagged by the community and is temporarily hidden.

Thats what happens when theres no official word about 3rd party addon use… people just create whatever the hell they want and use it in game regardless

2 Likes

G-guys, please reveal your private life or you will be reported for cons-pirating against government.

3 Likes

This post was flagged by the community and is temporarily hidden.

This game is already sinking like Ragnarok Online which contained a lot of abusable holes right till its end. No matter - athena or aegis - there were a lot of people who could hack the client for their profit.

Simply because noone from the dev team gave a single sheit.

Wat? Hole? Let’s bun peple bekoz it’s so phun adn it totalle halps! Huh-huh