You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Instantly share code, notes, and snippets.
🍵
pondering about life
Jean-Philippe
darkhappy
🍵
pondering about life
bashing my head because i'm trash at web development
I've been seeing a lot of people misunderstanding the exploit that was used on April 17th, 2020. This gist should help explain how the exploit is done, and how to protect your account. Personally, I wouldn't call this an exploit, as this is more of social engineering than actual hacking, but nevertheless, throughout the gist, this will be referred to as an exploit.
UPDATE 2020-04-19: EXPLOIT PATCHED
As of April 19th, 2020, this exploit has been patched. Playcookies are now printed only after authentication, which means that even if you get your log files exposed, an attacker cannot login to your toon directly.
Do note however that logs can still be used to impersonate you, so remember to keep them safe!