Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
Phi230
Feb 2, 2016

by Fluffdaddy
if you watch the video you'll get scammed in 7 days

Adbot
ADBOT LOVES YOU

Zzr
Oct 6, 2016

Legal posted:

The author of that media is currently under, and in the process of breaking, an NDA. We issued a Cease and Desist to him to make him realize the errors he was currently making and about to make much worse. However because its not a simple DMCA we will be having a judge look at the contract very shortly to get those videos taken down. In the meantime, We'd ask that anyone here cease viewing and redistributing that media as it is the result of a serious NDA breach and is currently the object of a suit.

A gimmick boring right from the first post, that's a new low.

Colostomy Bag
Jan 11, 2016

:lesnick: C-Bangin' it :lesnick:

Phi230 posted:

if you watch the video you'll get scammed in 7 days

That's quick. Let's translate to SC years. You've been scammed in 7 years.

Sabreseven
Feb 27, 2016

The Titanic posted:

Guy in the middle looks like he fell out of an episode of Deadliest Catch: 80’s Wannabe Nerd Episode.

That's Greg,

He normally does not wear a cap.

He's quite a chill dude tbh, don't invite him over for tea and cakes though, the fucker eats like a horse.

Terebus
Feb 17, 2007

Pillbug

G0RF posted:


AP recently dropped that clip from RTV in, Sunglassed Sandi’s tales of France and I laughed more now than I did then at how ludicrous it was. To thumb through the archives and see stuff like that again is to find yourself whispering with a ridiculous smile on your face, “oh hell that really did happen!”

Star Citizen is good.

I guess it's true, in the goonpire the laughs triple every second... along with the parps.

thatguy
Feb 5, 2003

Legal posted:

The author of that media is currently under, and in the process of breaking, an NDA. We issued a Cease and Desist to him to make him realize the errors he was currently making and about to make much worse. However because its not a simple DMCA we will be having a judge look at the contract very shortly to get those videos taken down. In the meantime, We'd ask that anyone here cease viewing and redistributing that media as it is the result of a serious NDA breach and is currently the object of a suit.
How was that name not taken?

thatguy
Feb 5, 2003
Also,

Toops
Nov 5, 2015

-find mood stabilizers
-also,
Why do I get the sinking feeling this thread is gonna suck for the next few months?

Hav
Dec 11, 2009

Fun Shoe

SoftNum posted:

But the main problem is that CIG needs to give you the decrypt key at some point to use the assets, so once you have that it's as if the files were never encrypted.

Checksum w/ random salt is at least harder to fake. the encryption step just seems unnecessary.

Well, no. Your client has a public key and a private key, CiG has a public key and a private key. It's not like you expose a 'password' with modern encryption.

hashing still requires that you know the salt, so random salting wouldn't be that useful unless it was reversible or stored elsewhere (like a salts table).

Edit: And hashing the files would be the way forward, but there are injection techniques that write to memory rather than files; that's what battleye and the other things are looking for.

Hav fucked around with this message at 19:48 on Jan 23, 2018

Sickening
Jul 16, 2007

Black summer was the best summer.

Legal posted:

The author of that media is currently under, and in the process of breaking, an NDA. We issued a Cease and Desist to him to make him realize the errors he was currently making and about to make much worse. However because its not a simple DMCA we will be having a judge look at the contract very shortly to get those videos taken down. In the meantime, We'd ask that anyone here cease viewing and redistributing that media as it is the result of a serious NDA breach and is currently the object of a suit.

Can someone link me the mirror so I can host host host this video?

Toops
Nov 5, 2015

-find mood stabilizers
-also,

Hav posted:

Well, no. Your client has a public key and a private key, CiG has a public key and a private key. It's not like you expose a 'password' with modern encryption.

hashing still requires that you know the salt, so random salting wouldn't be that useful unless it was reversible or stored elsewhere (like a salts table).

If I worked for CIG, I’d encrypt my bins and only decrypt them at runtime via the launcher, reason being I wouldn’t want anyone to decompile my code and see how bad it is.

Jobbo_Fett
Mar 7, 2014

Slava Ukrayini

Clapping Larry

Colostomy Bag posted:

That's quick. Let's translate to SC years. You've been scammed for 7 years.

Hav
Dec 11, 2009

Fun Shoe

Sickening posted:

Can someone link me the mirror so I can host host host this video?

https://www.youtube.com/watch?v=dQw4w9WgXcQ - you're risking a DMCA because it's explosive stuff, but I can't stop you.

Toops posted:

If I worked for CIG, I’d encrypt my bins and only decrypt them at runtime via the launcher, reason being I wouldn’t want anyone to decompile my code and see how bad it is.

That too. Actually that feels more right.

Legal
Jan 23, 2018

by FactsAreUseless

Sickening posted:

Can someone link me the mirror so I can host host host this video?

I'd really avoid doing that. Our firm has been asked to be aggressive on this.

AlbieQuirky
Oct 9, 2012

Just me and my 🌊dragon🐉 hanging out

Legal posted:

I'd really avoid doing that. Our firm has been asked to be aggressive on this.

Worst gimmick.

big nipples big life
May 12, 2014

Post Exhibit B

Colostomy Bag
Jan 11, 2016

:lesnick: C-Bangin' it :lesnick:

Toops posted:

Why do I get the sinking feeling this thread is gonna suck for the next few months?

When hasn't it? Like the game this thread follows suit.

SoftNum
Mar 31, 2011

Hav posted:

Well, no. Your client has a public key and a private key, CiG has a public key and a private key. It's not like you expose a 'password' with modern encryption.


I don't understand this? In order to use the data in your file you need to decrypt it into a usable form. This isn't like you signing a message that only CIG can decrypt.

Hav posted:

hashing still requires that you know the salt, so random salting wouldn't be that useful unless it was reversible or stored elsewhere (like a salts table).

Edit: And hashing the files would be the way forward, but there are injection techniques that write to memory rather than files; that's what battleye and the other things are looking for.

Yeah I'm not saying it's perfect, but what I meant was:

1. Sever generates a random salt and sends it to you.
2. You hash your file(s) + the salt and send it back.
3. Server verifies hash.

That way you at least need the base files and can't, for instance, just send the hashes that the server are looking for.

Toops posted:

If I worked for CIG, I’d encrypt my bins and only decrypt them at runtime via the launcher, reason being I wouldn’t want anyone to decompile my code and see how bad it is.

But they still have to give you the key to decrypt. It's not like the key can change (or you'd have to download all the data again?)

And ya it just makes things harder, but that's what this is all about.

SoftNum fucked around with this message at 20:07 on Jan 23, 2018

EmesiS
Feb 5, 2016

All of his clients are nuts!!!

Legal
Jan 23, 2018

by FactsAreUseless

AlbieQuirky posted:

Worst gimmick.

Our firm's "gimmick" is taking down media that breaks contracts and NDA's of our clients, as you just saw and as "bootcha" is currently learning the hard way.

big nipples big life
May 12, 2014

The unrepentant citizen is at least fun cause it always catches people.

Tippis
Mar 21, 2008

It's yet another day in the wasteland.

SoftNum posted:

So wait why are they encrypting the data files? What actual purpose can that possibly serve?

None. None whatsoever.
Everything it could possibly do would be trivial to circumvent by the most ridiculously simplistic memory injection, and that's before we even get into the issue that the client that is supposed to be locked out must be given the ability to unlock it or the game won't play. Not only that: for a delta patcher to work, the client must not only be able to unlock the files — it must be able to lock them. Both encryption and decryption codes must exist on the client side. The protection they offer — even setting aside that no-one does it on a file level any more — is therefore nil. Anyone can inherently inject altered files by using the keys that CIG has — by unescapable, unavoidable, necessity — provided to anyone who downloads the software.

It's Chris thinking that 1990s style bad-sector copy protection will help against 2010s style online hacking. Because he's an ignorant, backwards, in every way utterly and completely incompetent buffoon.

Tippis fucked around with this message at 20:20 on Jan 23, 2018

Beer4TheBeerGod
Aug 23, 2004
Exciting Lemon

You can tell they're a professional, high quality organization by how they solicit customer feedback using Google forms.

Legal
Jan 23, 2018

by FactsAreUseless

big nipples big life posted:

The unrepentant citizen is at least fun cause it always catches people.

I personally do have a pledge in incidentally.

TheAgent
Feb 16, 2002

The call is coming from inside Dr. House
Grimey Drawer
I just had a summons for jury duty in march

if I somehow end up on the skadden / fkks jury selection, my life will finally be complete

Mangoose
Dec 11, 2007

Come out with your pants down!

Legal posted:

Our firm's "gimmick" is taking down media that breaks contracts and NDA's of our clients, as you just saw and as "bootcha" is currently learning the hard way.

I dunno, I kind of like the gimmick. The idea that an actual law firm would create an SA account tickles me for some reason. Probably because it fits the Star Citizen narrative. Insert stimpire.txt

Phi230
Feb 2, 2016

by Fluffdaddy
i would love to see skadden's interogs and cig's responses to those

Mangoose
Dec 11, 2007

Come out with your pants down!

TheAgent posted:

I just had a summons for jury duty in march

if I somehow end up on the skadden / fkks jury selection, my life will finally be complete

It would be stressful as gently caress! You'd be leaking like a sieve, tossing paper airplanes out a window or some poo poo filled with secret info and courtroom sketches. Derek running around like a loon in the street, unfolding them and tweeting frantically.

Bright side is if this is the only lawsuit against CIG we'd still have your trial to look forward to!

Chalks
Sep 30, 2009

Beer4TheBeerGod posted:

You can tell they're a professional, high quality organization by how they solicit customer feedback using Google forms.

There's a question on the last page that asks you what severe bugs most impacted your experience with the ship and you are REQUIRED to pick 2.

Such confidence in their game that you literally cannot submit your assessment of the ship if you claim to have only encountered one severe bug.

Pixelate
Jan 6, 2018

"You win by having fun"

Legal posted:

In the meantime, We'd ask that anyone here cease viewing and redistributing that media as it is the result of a serious NDA breach and is currently the object of a suit.

What is the legal significance of this comma?

Colostomy Bag
Jan 11, 2016

:lesnick: C-Bangin' it :lesnick:

TheAgent posted:

I just had a summons for jury duty in march

if I somehow end up on the skadden / fkks jury selection, my life will finally be complete

I can't imagine the absurdity of the questions by both sides of lawyers for selection if you get called into the box.

Lawyer: "How do you feel about jpegs?"

75 year old dude: "jpeg what?"

SelenicMartian
Sep 14, 2013

Sometimes it's not the bomb that's retarded.

Colostomy Bag posted:

I can't imagine the absurdity of the questions by both sides of lawyers for selection if you get called into the box.

Lawyer: "How do you feel about jpegs?"

75 year old dude: "jpeg what?"
'I've heard that it's pronounced jif'

Hav
Dec 11, 2009

Fun Shoe

SoftNum posted:

I don't understand this? In order to use the data in your file you need to decrypt it into a usable form. This isn't like you signing a message that only CIG can decrypt.

encryption/decryption is different from hashing. Even better, two way symmetric encryption/decryption works _really well_ with hash salts.

SoftNum posted:

Yeah I'm not saying it's perfect, but what I meant was:

1. Sever generates a random salt and sends it to you.
2. You hash your file(s) + the salt and send it back.
3. Server verifies hash.

That's generally how checking the files works when you want to verify that your patch has taken place, although it's effectively just an obfuscated CRC32. As I said, changing files usually doesn't help that much because it's literally the first vector of attack, followed by looking for random sqlite databases, then memory injects.

Pixelate posted:

What is the legal significance of this comma?

IN FOR THE KILL

Jobbo_Fett
Mar 7, 2014

Slava Ukrayini

Clapping Larry

Legal posted:

Our firm's "gimmick" is taking down media that breaks contracts and NDA's of our clients, as you just saw and as "bootcha" is currently learning the hard way.

Please cite which portion of the agreement he is breaching, tia.

ZekeNY
Jun 13, 2013

Probably AFK

Colostomy Bag posted:

I can't imagine the absurdity of the questions by both sides of lawyers for selection if you get called into the box.

Lawyer: "How do you feel about jpegs?"

75 year old dude: "jpeg what?"

“Are you now, or have you ever been, a goon?”

“Who are your favorite tickle porn performers?”

TheAgent
Feb 16, 2002

The call is coming from inside Dr. House
Grimey Drawer
somehow it'll end up like some john grisham novel, but without any intrigue as I immediately get kicked off the jury for laughing hysterically when they ask me "have you heard of chris roberts?"

AP
Jul 12, 2004

One Ring to fool them all
One Ring to find them
One Ring to milk them all
and pockets fully line them
Grimey Drawer

Legal posted:

The author of that media is currently under, and in the process of breaking, an NDA. We issued a Cease and Desist to him to make him realize the errors he was currently making and about to make much worse. However because its not a simple DMCA we will be having a judge look at the contract very shortly to get those videos taken down. In the meantime, We'd ask that anyone here cease viewing and redistributing that media as it is the result of a serious NDA breach and is currently the object of a suit.

List your fleet.

Legal
Jan 23, 2018

by FactsAreUseless

Jobbo_Fett posted:

Please cite which portion of the agreement he is breaching, tia.

The non disparagement clause. Its common in investment termination NDAs.

Legal
Jan 23, 2018

by FactsAreUseless

AP posted:

List your fleet.

I, personally, own a cutless black and a super hornet.

Adbot
ADBOT LOVES YOU

AP
Jul 12, 2004

One Ring to fool them all
One Ring to find them
One Ring to milk them all
and pockets fully line them
Grimey Drawer

Legal posted:

I, personally, own a cutless black and a super hornet.

Better, pity you gave the game with with the bad take down gimmick.

  • 1
  • 2
  • 3
  • 4
  • 5