Wow Tech Support

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Monday, 11 March 2013

API Coincidence detection against botters and a quick answer to Shadoo

Posted on 23:00 by Unknown
You might noticed I don't like botters since they essentially cheat the game. They also flood the market with cheap things, supporting risk-free play (you don't care losing cheap stuff).

Today I post an idea of mine that could help CCP fighting botters and other cheaters by identifying their non-violating mains. The CCP policy is to ban the player by banning all his account, including non-violating ones. However to do so, they must be able to link accounts. In case of legitimate players it's not a big deal: same IP, same login pattern, often same e-mail or similar account name. However cheaters - for obvious reasons - try to hide their main account from the bot accounts by proxies, maybe even different computers.

The idea - as the title says - is API Coincidence detection. What is this? Several third party programs query your API key (that's why it's there). For example EVEMon asks the API using your keys to read the skill progression of your accounts to update the skill training plan. Accounting programs ask for your market API keys. The idea is that if the botter is lazy (and most people are), he doesn't have various instances of EVEMon. So when he starts EVEMon, it queries all his accounts at the same time, legitimate and botter alike. Using the API server log, CCP can calculate API coincidence: Qboth/min(QAcc1,QAcc2), where Qboth is the number of events when both accounts were queried within a time window. This number is zero for accounts that never query together and 1 for accounts that are always queried together. Of course accounts can be queried together by blind chance or by a third party site that queries lot of APIs (like killboards). However I believe that alt accounts will have a significantly higher coincidence number than random accounts, allowing detection of alts. The best thing is that this can be used on gathered old data, finding alts that were not found before, even if they stopped linking behavior long ago.



A quick answer to the post of Shadoo who is thinking about wargames to replace the "horrible" Sov grind. I was there with him on Sov grinding three regions and didn't find it horrible, because I'm one of the "few who've not actually ever ran or been in the FC side of running a large block war." The problem isn't Sov grind. The problem is that it waits for the same veterans who did it zillion times and don't want the Sov at the first place. Pandemic Legion which is leaded by Shadoo has 19 system Sov, practically staging systems in various points of space. The Sov they grind won't be theirs. They don't need it. They don't want it. Making someone grind down hundreds of multi-million HP stationary structures they don't want at the first place with no fight (besides bombers killing their fighter-bombers) is indeed horrible.

But the solution isn't simpler Sov grind. Without Sov grind, a weaker alliance would have no chance to rally troops, or find allies before losing everything. HBC would conquer all nullsec overnight just because they can. The solution is making people want to have Sov. Making them wanting to live there. A Sov war would be much more fun for PL if the new owners of the Sov would grind it in dreads, PL would only be cynoed in if someone shows up with force threatening the dreads. But why would anyone want Sov or even moons? Just buy a battleship V pilot and run lvl 4s in highsec. I'm damn sure that the man hours needed to capture and hold a even a Tech moon would be better spent missioning.

The solution is making living in nullsec profitable enough that "carebears" flow to it, grind it down and pay to PvP-ers to protect them. As long as nullsec Sov is nothing but bragging right - or even worse, to trigger a "good fight" - only a handful of bored nerds would try to get it who simply have nothing better to do.
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Posted in Random | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • Diablo 3 Beta Phishing Season Begins
    The scammers are out in force with the recent Diablo 3 beta opt-in announcement.   Phishing scams are very common around any Blizzard beta ...
  • What would happen if people could trade?
    The question of mirror-ability of strategies often comes up when I post my trading strategy. The 0.01 strategy is clearly mirror-able. If th...
  • Tragedy of commons (and non-TC alliances)
    The tragedy of commons is a well-known economical problem, described by the anecdote: "herders sharing a common parcel of land, on whi...
  • A new approach to fight botting
    Botting is a widespread plague of MMOs. A botter can gain insane amount of game resources since it “farms for free”: the time of the bot cos...
  • The war for Finanar
    Finanar is a 0.5 system in Metropolis with 3 ice anomalies. If you check out my corp killboard you see lot of kills there, about 8B destro...
  • The (total lack of) balance of trade of highsec
    The fact that you can be much more rich in highsec than in the competitive areas of EVE (low, null, WH) is one of my main messages. It can b...
  • Planetary interaction for beginners
    Planetary interaction isn't a really profitable enterprise. However the "newbie-version" is a "printing money" schem...
  • Nullsec-altruism and a free titan
    Imagine that you are an avatar in Diablo 3. You enter New Tristram after defeating some risen dead. The town is clearly in danger. The undea...
  • The myth of the skilled, goodfight-seeking PvP-er
    While no sane man would claim that pilot skill decides large engagement instead of strategic decisions, there is a claim that there are skil...
  • (I'm not) defining lowsec
    This is a rather short post, will be one more today, about my very first PvP action. Sugar reminded me of a problem that I read about a l...

Categories

  • account
  • account theft
  • adobe
  • alpha
  • arena tournament
  • authenticator
  • authenticators
  • battle.net
  • beta
  • blizzard
  • brute force
  • cataclysm
  • diablo 3 phishing scam
  • dictionary attack
  • drive-by
  • email
  • fake
  • flash
  • game
  • Gold
  • guild
  • gumblar
  • hacked
  • hacking
  • hacks
  • Ideas
  • ISK
  • keylogger
  • march
  • mmo-champion
  • New
  • password
  • password stealing
  • patching
  • phishing
  • raiding
  • Random
  • ranks
  • remote auction house
  • scam
  • scams
  • security
  • security checklist
  • soccer
  • strong password
  • trojan
  • vulnerability
  • warcraft
  • wow
  • wowarmory
  • wowmatrix

Blog Archive

  • ▼  2013 (242)
    • ►  November (15)
    • ►  October (25)
    • ►  September (24)
    • ►  August (21)
    • ►  July (24)
    • ►  June (22)
    • ►  May (22)
    • ►  April (22)
    • ▼  March (20)
      • Low maintenance, high income PI
      • Business Thursday: my planet farmed it for free
      • Handling server overload
      • Brutal beat down of underskilled newbies and other...
      • Silver bullet: how could CCP bring back solo and s...
      • The scam of James 315
      • Business Thursday: less logins for pilots in training
      • I go to a bar to have fun, not to talk, dance or d...
      • The myth of the "highsec carebear"
      • Roleplaying an idiot
      • Nerfing highsec income doesn't hurt highsec casuals
      • Business Thursday: Blinged Tengu taking gates and ...
      • Moar l33t PvP: solo capital kill
      • API Coincidence detection against botters and a qu...
      • TEST expansion, best expansion
      • The meaning of "playing for fun"
      • Business Thursday: industrials and their rebalancing
      • "Your trading reports are fakes!"
      • I'm a carebear and I'm not happy about it
      • Elite PvP: Cormorant kills 3 Taloses
    • ►  February (21)
    • ►  January (26)
  • ►  2012 (261)
    • ►  December (24)
    • ►  November (21)
    • ►  October (24)
    • ►  September (21)
    • ►  August (26)
    • ►  July (25)
    • ►  June (20)
    • ►  May (25)
    • ►  April (23)
    • ►  March (23)
    • ►  February (23)
    • ►  January (6)
  • ►  2011 (4)
    • ►  September (1)
    • ►  April (1)
    • ►  March (1)
    • ►  January (1)
  • ►  2010 (17)
    • ►  November (1)
    • ►  September (2)
    • ►  August (1)
    • ►  July (1)
    • ►  June (2)
    • ►  May (2)
    • ►  April (1)
    • ►  March (2)
    • ►  February (2)
    • ►  January (3)
  • ►  2009 (4)
    • ►  December (1)
    • ►  October (1)
    • ►  September (1)
    • ►  July (1)
Powered by Blogger.

About Me

Unknown
View my complete profile