Submitted by Sorin61 t3_10ksno9 in technology
Comments
[deleted] t1_j5vxejs wrote
Leak of Lawlessness
cesiuum t1_j5smale wrote
To be honest $10M isn't a lot, given how popular LOL is.
patman3030 t1_j5vsso6 wrote
They want to charge an amount that's high, but low enough that paying it will be the cheaper option
dj_joeev t1_j5syxda wrote
Article said this happened last week and the hackers gave them a 12 hour deadline.
Riot said they would not pay, where's the source code?
VincentNacon t1_j5tz5y9 wrote
I got a feeling that Riot updated their security just in time to avoid exposing their userbase's info.
Who cares about the source code? You can't use it to make money with because Riot can sue. It's a deadend.
Zynnk t1_j5uqwk1 wrote
can sell to cheat makers
asakurasol t1_j5uub6x wrote
Any vulnerability would be patched, most things are controlled on server side so I don't know what kind of "cheat" you are referring to.
Zynnk t1_j5v455z wrote
If they knew of any vulnerabilities at riot, you can make the argument that they'd be patched already no? There's always gonna be a backlog and vulnerabilities that hasn't been identified and having the source code exposes you to that
Interesting_Health72 t1_j5v6gjo wrote
Drop connection tools, scripts for lol, aimbot/wall for valorant, all of this are going for years and Riot never 100% patched it, so yea cheatmaker having acess to the source code, especially the anti-cheat code will be very painful
bastardoperator t1_j5v9qof wrote
This is an extremely naive way of thinking. It's never if, it's when. Cheat makers have been running circles around these billion dollar game makers for years now.
[deleted] t1_j5vbc6f wrote
[deleted]
AnybodyZ t1_j5syf6z wrote
I’m not in the mood for spaghetti
FatherKerosene t1_j5u8gnb wrote
[deleted] t1_j5szbov wrote
[deleted]
Apollorx t1_j5t7eey wrote
Yeah I think the value here is for cheat developers. They sell tools to players and source code access is pretty significant.
DanAlucard t1_j5taqct wrote
Still, paying the ransom does not secure the code.
Once it is out, it's game over.
Apollorx t1_j5ucu3z wrote
It's true, but if the Hacker group plans to ransom in the future, they won't release it. Basically it's game theory.
DanAlucard t1_j5udixr wrote
Not publicly, but they can still sell it to cheat engine developers without anybody knowing.
Apollorx t1_j5ue8xo wrote
That's risky. People talk/leak.
$10m is a lot of recurring revenue to lose
crankyrhino t1_j5um1ty wrote
I'd love it reversed just to see if the CCP put any secret sauce in there.
S3HN5UCHT t1_j5sy0mo wrote
Go ahead no one cares
Zwets t1_j5tgqj5 wrote
Maybe if the hackers edit the code to finally fix the launcher, Riot will pay them.
Speculawyer t1_j5xbse4 wrote
Let it leak. Anyone that tries to use it is still violating copyright and can be sued into oblivion.
Source: IP lawyer
Asmewithoutpolitics t1_j609vgf wrote
Nah some Chinese company would Use it
Speculawyer t1_j60s92v wrote
And they could be sued if the do so. Even in China. It might not be easy but if it became a profitable enterprise, it can be done.
tendonut t1_j5usoh5 wrote
In all reality, what would happen if the source code got leaked? Certainly Riot Games would be able to sue anyone who uses (or was suspected to have used) that proprietary code in a product. And if a company was dumb enough to use it, I can't imagine the final product would even be a blip on our radar.
3vi1 t1_j5ux78l wrote
Nothing. The original LoL uses Unreal Engine 3. If you want the source for the latest version, go to https://github.com/EpicGames/UnrealEngine. No one's going to learn anything really exceptional by reading the LoL portions. Check YouTube: People have recreated the core game with UE in 3 or 4 hours.
A leak means Riot would at most have to push out an update that changes the authentication/login process. Blam: Everyone using a build made from the leaked code has to update to the official version or get disconnected.
If people think there are security holes that could be exploited now that people have the code, be aware that anyone who cared had probably already decompiled it and run it through tools to look for these exploits before hand. Having the code itself doesn't make things any more exploitable than they already were.
The fact that someone thought they could ransom it for $10m is hilarious.
iRedditonFacebook t1_j5wp4bh wrote
This is the dumbest techbro talk I've seen in a while. There are open source projects that get exploited in the wild and are found by researchers later, while being open since their inception. This guy thinks just because someone made a clone and others tried to decompile it, there's not going to be any more vulnerability and there's no value of the exact fucking source code.
Some sketchy company could reverse engineer the server logic, change a few mechanics/graphics/ models and there's fucking a new game. To avoid lawsuits, they could just operate in China.
WingSK27 t1_j5x8fjc wrote
Riot games is completely owned by Tencent. Given it's a golden goose for that company and for China by extension, operating a cloned version of this particular game out of China would be a very bad idea.
walkonstilts t1_j5zkto4 wrote
China is not ashamed to also steal from China.
smogop t1_j5uxf7a wrote
Chinese copycats advertising on Facebook in 5…4…3…2..1
ElderWandOwner t1_j5vrrdw wrote
There are tons of copycat games. Hell, league is a copy of dota. This is nothing morw than an embarassment that they got hacked.
jotarowinkey t1_j5utk1p wrote
its warcraft 3.
[deleted] t1_j5sq7q8 wrote
[deleted]
BizarroMax t1_j63rctp wrote
Don't do it, LoL.
Spaventoo t1_j5ua4wr wrote
League of Legos?
bonelatch t1_j5txce6 wrote
lel, no sympathy.
[deleted] t1_j5ubzl6 wrote
[deleted]
tocksin t1_j5uo8y7 wrote
I think it's too much to expect an actual payment. They might be able to get away with a smaller payment because it isn't really going to impact their business. $100k maybe? Now if they encrypted all their servers and shut the game down, then they might have a better leg to stand on since it's definitely hurting their business.
Awfulufwa t1_j5wglp1 wrote
These hackers are morons. Whether they have the actual data or not doesn't matter. If Riot's supposed precious source code were leaked, any dev stupid enough to use it would find them in dumb legal battles that not only shut their projects down, but possibly bankrupt their small company.
The following Riot Games has is large enough that folks will brazenly share on social media any uncanny similarities that can be spoken for, without any reasonable doubt.
For what it's worth, most people would be pleased to find it would mimic some other games in terms of developmental process.
Riot would stand to win more than 10 million over a longitudinal process.
Maybe the hackers work for Riot...
sonicon t1_j5u95cb wrote
LoL is such an old game using old MOBA design. I'm surprised it's still popular.
BlueBlooper t1_j5vm11l wrote
There's already scripts bro. Ive seen the cursed texts. Jungle is the most automatic; broken role in the game. Orianna is obscenely busted for orbwalking. Caitlyn too. Auto Smite is a real thing. Auto clear, auto harrass, fucking xray through the fog of war. Game is not real. All chat is only there to piss people off. Champs are broken and unbalanced. Bugs when changing one thing and another bug for changing another. This game is greedy. You can feel it's want to be in the spotlight so bad it gives up good sportsmanship and game satisfaction for brighter graphics and a broken title in a broken game
NihiliSloth t1_j5urjm8 wrote
Who cares? League of legends is a dumb game with a bunch of cry babies.
RexMundi000 t1_j5wbzlg wrote
Found the guy stuck in bronze after 1k games because his teammates suck.
[deleted] t1_j5x9d6m wrote
[removed]
NihiliSloth t1_j5wcoyu wrote
Nah, I would have actually had to invest more time than what I did to get that far. I played for maybe a few days and realized it was trash and most of the players just want to be toxic towards one another. At the best, it leaves people pissed off while they are playing. At the worst, they are spending tons of money on useless skins and they are constantly screaming at their computer while playing (if not breaking their keyboard and mouse during fits of rage). I’ve yet to find one league player who is actually pleasant. I know lots of people irl that play. I stay away from it. It’s a miserable game for a miserable community.
VincentNacon t1_j5tyx80 wrote
Oh noes... not the source code! For a game that has extremely basic game mechanic?
I mean... come on, there are a ton of games similar to LoL, you won't be gaining anything out of it.
The real question we should be asking if the source code does expose the user's email, password and their credits.
>" It is alarming to know that you can be hacked within a matter of hours by an amateur-level hack."
They just made a huge mistake with that statement. They basically gave away a tip to avoid paying out $10m by simply updating the security system.
ElderWandOwner t1_j5vrluj wrote
No one stores credentials in source code that isn't a hack. I'm not sure what your last sentence means. What is their huge mistake?
[deleted] t1_j5wc7wu wrote
[removed]
cholula_is_good t1_j5spflr wrote
Leak of Legends