GameSpy & DMCA Follow-up

A post to the GameSpy Forums by GameSpy chairman Mark Surfas offers their official response to the report from earlier today of security issues and their response (story). The post outlines their side of how contact with the researcher unfolded, saying: "He was doing more than reporting bugs; he was publishing game pirating techniques. He published how to attack our network. This is not the way ethical security researchers operate." Here's a bit more: "When we were first contacted, this person was associated with a small software security company. They asked if GameSpy wanted to pay a 'consulting fee' to fix the hacks. However, these were not bugs; it was information about how our products work. When we brought this to the software security company's attention, they disavowed their relationship with that person and removed him from their servers."
View : : :
25 Replies. 2 pages. Viewing page 1.
Newer [  1  2  ] Older
25.
 
Re: DMCA is stupid.
Nov 13, 2003, 12:54
25.
Re: DMCA is stupid. Nov 13, 2003, 12:54
Nov 13, 2003, 12:54
 
"Wilcokey 0.1 This is the algorithm used to create the registration keys of RogerWilco. It is ONLY the source code and I WILL NEVER provide the precompiled executable because it is for educational purpose"

Sorry, did you forget to look at his site?

24.
 
Re: crap
Nov 13, 2003, 10:04
24.
Re: crap Nov 13, 2003, 10:04
Nov 13, 2003, 10:04
 
I still use gamespy arcade, gamespy 3d & roger wilco. They rock. Everyone likes to hate the big bad corporation, but you have to admit that GameSpy broke a lot of new ground when it came to bringing multiplayer games to the masses. Before GS3d the closest thing you had to a server browser was quake's in-game thing where you could manually enter up to 10 ip addresses, and you had to hope you could find a website somewhere with IP's that worked, had good ping, etc.

A lot of other companies have emulated and even built upon what they did since then, but we might not have come as far as we have today without their original innovation.

23.
 
Re: crap
Nov 13, 2003, 05:21
23.
Re: crap Nov 13, 2003, 05:21
Nov 13, 2003, 05:21
 
I can't belive who you can call people who smoke for innocent people and Tobacco company's CEO:s for killers? Only in a country like USA you can get away with that. What about people taking responsibility for their own actions? No one forces you to smoke, and if you are stupid enough to start, well, then dont come blame anyone else later then!

And when it come's to the guy vs gamespy I don't have much to say except that I enjoy Gamespy's service's and only hope that there is nothing wrong from their side. Caus'e that would ruin my trust in one of the major communitys on the net.

22.
 
Re: DMCA is stupid.
Nov 13, 2003, 01:31
22.
Re: DMCA is stupid. Nov 13, 2003, 01:31
Nov 13, 2003, 01:31
 
I took a look at his site, but the only things I can see are bugs that cause the servers or clients to crash, where is the key generator?

Did you even read the letter gamespy sent to him?

It does not mention keys at all!
it bitches because he posted the fact that running certain gamespy software will let anyone else run any code on your computer.
http://aluigi.altervista.org/misc/75395-1.pdf


21.
 
Re: DMCA is stupid.
Nov 13, 2003, 01:07
21.
Re: DMCA is stupid. Nov 13, 2003, 01:07
Nov 13, 2003, 01:07
 
i can't stand gamespy. that said, i completely agree with jack9's post. honestly, why would anybody support this guy when he's clearly being a hacker asshole?

dave snider
co-founder | guzzlefish.com
my dvd, cd, and game collections
http://www.guzzlefish.com/?user=dave
dave snider
comicvine.com
20.
 
Re: DMCA is stupid.
Nov 12, 2003, 23:44
20.
Re: DMCA is stupid. Nov 12, 2003, 23:44
Nov 12, 2003, 23:44
 
I'm nobody (anonymous). Why would he post ways to generate keys? Weakness in the encryption I guess...oh wait, they are JUST FOR FUN. No offense, but you post to BugTraq or FullDisclosure (as I understand, it's quite the list) and move on. Making an independent website where you advertise DoS methods and keygens as for "fun" is a hacker's website. How can you be in security and not recognize proper channels? It's not really debateable as much as despicable.

19.
 
DMCA is stupid.
Nov 12, 2003, 22:53
19.
DMCA is stupid. Nov 12, 2003, 22:53
Nov 12, 2003, 22:53
 
GameSpy was responding to his notifications of the bugs and was working with him to sort out the issues.

Then he posted Key generators for several of their programs and for other games. So they stopped talking because he was using their good faith in fixing these bugs to get extra hints as to how the keys are generated.

I talked to someone at GS and they said something to the effect of Yeah, invoking the DMCA was stupid move by the suits, but this guy is just using us to promote piracy and let people ruin games for everyone else.


So, basicly. Bad move on GS part to call down the DMCA. But this guy is really not acting in good faith as he states.

18.
 
And the worst part....
Nov 12, 2003, 22:50
18.
And the worst part.... Nov 12, 2003, 22:50
Nov 12, 2003, 22:50
 
I think the worst part of this whole mess is that fact that half the games developed these days that have multiplayer support use Gamespy technology. :p

This comment was edited on Nov 12, 22:51.
Avatar 1182
17.
 
Re: crap
Nov 12, 2003, 22:24
17.
Re: crap Nov 12, 2003, 22:24
Nov 12, 2003, 22:24
 
time to close my Gayspy account too.. oh wait.. I would never open on in the first place.. Mark Surfass can stick it in his lying ear along with all the wax (Damn! That was a nasty insult! I repent!)

My opinion of them isn't even based on what Surfass has to say as I didn't even read his comment! lol I would click the "GaySpy Forums" link to read it but then that would mean I would be visiting one of their Gay sites...

- Dr.Del
- DrDel
Avatar 10723
16.
 
Re: crap
Nov 12, 2003, 21:39
B M
16.
Re: crap Nov 12, 2003, 21:39
Nov 12, 2003, 21:39
B M
 
More bull pours from the venomous mouth of yet another CEO.

At least his bull is not killing innocent people like the Firestone and Tobacco company CEO's.

Time to close my GameSpy/FilePlanet Account. I was never happy with their service anyway.

15.
 
Re: And in other news...
Nov 12, 2003, 20:15
15.
Re: And in other news... Nov 12, 2003, 20:15
Nov 12, 2003, 20:15
 
i agree

14.
 
Re: crap
Nov 12, 2003, 20:11
14.
Re: crap Nov 12, 2003, 20:11
Nov 12, 2003, 20:11
 
Also, from what I understand of this post, he didn't provide them with full information as to the bugs, it was more of a "hey, I know a bug dealing with suchandsuch, pay me $50k and I'll tell you about it"...

Well, first of all, GameSpy hasn't offered any evidence that that's the way it happened, and I'm not inclined to take their word for it. Second, it wouldn't be extortion unless he made the public release of the exploits contingent upon the payment. From what I've read so far, it sounds like he did tell GameSpy what the problems were, although I can't tell whether he disclosed every bug he knew, or just some of them. Either way, if he's released the info now, then GameSpy had better be hard at work fixing the problems. Any way you cut it, their software is broken.

Supporter of the "a happy fredster is a wet fredster with jumper cables attached to his nads" fanclub.
"The whole problem with the world is that fools and fanatics are always so certain of themselves, but wiser people so full of doubts." -- Bertrand Russell (I think...)
Avatar 9540
13.
 
Re: And in other news...
Nov 12, 2003, 19:45
13.
Re: And in other news... Nov 12, 2003, 19:45
Nov 12, 2003, 19:45
 
Yep, Lamespy is so yesterday. I wish game companies would get it together and stop using their garbage.


"Physical reality is consistent with universal laws. Where the laws do not operate, there is no reality."
- Mr. Spock
"And then, suddenly and without warning, it turned into a real-life case of hungry, hungry hippos."
- Stephen Colbert
12.
 
Re: And in other news...
Nov 12, 2003, 19:29
12.
Re: And in other news... Nov 12, 2003, 19:29
Nov 12, 2003, 19:29
 
I also have yet to hear any statement about actually fixing anything. Just CEO doublespeak.

ASE long since surpassed Gamespy Arcade anyway, and there are several superior alternatives to Roger Wilco (teamspeak, ventrilo, etc.). No big loss IMHO.

11.
 
Re: And in other news...
Nov 12, 2003, 19:28
11.
Re: And in other news... Nov 12, 2003, 19:28
Nov 12, 2003, 19:28
 
ms fixed this along time ago

microsoft
bugs=issues or exploits

and now gamespy
bugs=it's how our product works

its almost laughable

10.
 
And in other news...
Nov 12, 2003, 19:19
10.
And in other news... Nov 12, 2003, 19:19
Nov 12, 2003, 19:19
 
Gamespy, Inc. has just joined the Moron Majority.

"It's not a bug, it's uh...uh...give us a second...wait...it's how our product works! Yeah, that's it!"

I can't wait for Microsoft to follow suit on this one...

"You know that vulnerablity in Outlook that lets anyone execute arbitrary attachments on your machine? Yeah, that's not a bug, that's just how our product works."

Attention clueless pointy-headed Gamespy wanker:

A *bug* is anything that causes your software to perform in an unintended fashion.

And anyone who discovered one in your code is perfectly free to broadcast it to the world, regardless of his motivations.

9.
 
Re: No subject
Nov 12, 2003, 19:15
9.
Re: No subject Nov 12, 2003, 19:15
Nov 12, 2003, 19:15
 
it was information about how our products work.

Poorly?

----
-- 11) Thou Shalt Not Whine --
8.
 
Re: No subject
Nov 12, 2003, 19:06
8.
Re: No subject Nov 12, 2003, 19:06
Nov 12, 2003, 19:06
 
Yet Gamespy says nothing about how they are going to fix the problems.

Typical of them.

7.
 
No subject
Nov 12, 2003, 18:35
7.
No subject Nov 12, 2003, 18:35
Nov 12, 2003, 18:35
 
Its one thing to ask for financial consideration if he found bugs but to pull that kind of crap is low-rent. Like I said in the previous thread, I'm not a big fan of GSI and but in this case they have every right to back this little punk into a legal corner (though I hate seeing it have to be done by invoking the DMCA...that just tells me their lawyers are lazy bastards)


----------------------------------------------------------------------
Currently Playing: Freedom Fighters, FragOps, CoD, Halo MP, DC .5. Hotly Anticipating: Armed & Dangerous, SWAT: Urban Ops, Firestarter, UT2004.
This comment was edited on Nov 12, 18:36.
----------------------------------------------------------------------
"Both the “left” and the “right” pretend they have the answer, but they are mere flippers on the same thalidomide baby, and the truth is that neither side has a clue."

- Jim Goad
Avatar 10137
6.
 
Mark Surfas is full of sh!t
Nov 12, 2003, 18:31
6.
Mark Surfas is full of sh!t Nov 12, 2003, 18:31
Nov 12, 2003, 18:31
 
I will believe just about anyone before I would believe Mark Surfas

25 Replies. 2 pages. Viewing page 1.
Newer [  1  2  ] Older