Welcome to Gaia! ::

Security Awareness Guild

Back to Guilds

A guild to inform users new and experienced about the ways others may try and take their accounts 

Tags: awareness, role play, protection, contests, information 

Reply Hacking and Scamming Prevention ----- A place to prevent and educate on scammings and hackings
Preventing & Spotting FLP/FLW Hackers

Quick Reply

Enter both words below, separated by a space:

Can't read the text? Click here

Submit

Almost Poetic

PostPosted: Thu Feb 10, 2011 5:03 pm


Definitions:
  • FLP - "Fake Login Page." Attempts to mimic Gaia's login page.
  • FLW - "Fake Login Window." Attempts to mimic Gaia's login page in a small PHP window, but without redirecting to a different website. Gaia does not have login windows; these are strictly the creation of hackers.


--------------------------------------------------------------- FLPs ---------------------------------------------------------------


Common FLPs:
  • Expensive Item Giveaways - [x] [x] [x] You receive a PM from a mysterious stranger that says to claim your prize from Gaia! The first page starts off as a regular item update as told by an NPC, but then offers a FREE expensive item (a new or no longer available EI, RIG, MC, etc.)! All you have to do is click the link. You appear to be logged into Gaiaonline, and you can see your avatar, username, gold amount, etc. in the item offer page, so you think it's safe. You click and it redirects you to a log-in page, where you input your password and username. Your information gets stored until the hacker tries to log into your account. REMEMBER: GAIA WILL NEVER GIVE YOU A FREE EI OR OTHER CASHSHOP ITEM.

User Image - Blocked by "Display Image" Settings. Click to show.


  • HTML's Advanced FLP, FES - [x] [x] Your account has been compromised! This FLP redirects you to a page that warns you that your account has been compromised. It asks you to fill in your username, password, and email address. You then will receive an automated email that explains that your account is being reviewed for "malicious software" on a different IP address. REMEMBER: GAIA DOES NOT KNOW IF YOUR ACCOUNT HAS BEEN STOLEN UNTIL AFTER IT HAS BEEN BANNED OR IS AWAITING A HACKING REPORT TO BE SETTLED. IP ADDRESSES MEAN NOTHING.

User Image - Blocked by "Display Image" Settings. Click to show.


  • FMPs - [x] [x] "Fake Marketplace Pages." This FLP mimics a marketplace page, normally with a high-priced item dangerously mispriced in a single listing. You will notice that you have been logged out of Gaia, and before you purchase the low-priced item, you must sign back in. What you don't know is that you are sending your password and username as soon as you "log in", and you are redirected back to the REAL marketplace listing of the item you were hoping to buy underpriced, which is now no longer listed. REMEMBER: NO GAIA MEMBER WILL EVER SEND YOU A LINK TO A REAL UNDERPRICED ITEM; THEY WOULD LOOSE MONEY BY NOT BUYING IT THEMSELVES.

User Image - Blocked by "Display Image" Settings. Click to show.


How to Prevent/Spot FLP Hackings:
  • Keep Gaia's Redirect Warning on; this prevents you from going to a different website without your knowledge.
  • Always check the URL in the address bar (the place where you type in your websites, like Google.com) to make sure it says GAIAONLINE.COM when you are asked to login.
  • Never login on a page with outdated Gaiaonline graphics, has ANY gramatical or logical errors, or if you clicked a link and are suddenly logged out.
  • Gaia will not log you off for visiting a different page on the site.
  • Use common sense; nothing of value is free or easy to achieve.


--------------------------------------------------------------- FLWs ---------------------------------------------------------------


Common FLWs:
  • Forum and Guild FLWs - [x] [x] A PHP window pops up whilee you're viewing a thread on Gaia's main forums, or in a guild. It asks you to log in, sometimes with a warning that you need to verify your account or need to input your password to show that you are not botting. But as soon as you input your information, it will be sent to a hacker that will steal your account. REMEMBER: GAIA HAS NO POP-UP LOGIN WINDOWS.

User Image - Blocked by "Display Image" Settings. Click to show.


  • Towns FLWs - [x] I can contribute very little about these FLWs since I've never encountered one (I don't play in towns), but from what I understand, they are PHP pop-up windows that either ask for your password while you are still playing in Towns, or redirects the page to a FLP that mimics the Towns page. With Obey's new Towns FLW release, I expect these to increase. REMEMBER: TOWNS DOES NOT ASK YOU TO LOGIN IF YOU WERE DISCONNECTED. IT SIMPLY ASKS YOU TO RESTART THE TOWN.

User Image - Blocked by "Display Image" Settings. Click to show.


How to Prevent/Spot FLW Hackings:
  • Gaia does not use windows for you to log in with. If you see one, it is a hacker. Do NOT input your personal information!
  • Do NOT have an auto form-filler on your computer; if one pops up, it will automatically fill it in.
PostPosted: Thu Feb 10, 2011 6:39 pm


Reserved

Almost Poetic


Almost Poetic

PostPosted: Thu Feb 10, 2011 6:40 pm


Reserved
PostPosted: Thu Feb 10, 2011 6:47 pm


Reserved

Almost Poetic


Almost Poetic

PostPosted: Thu Feb 10, 2011 6:49 pm


Reserved
PostPosted: Thu Feb 10, 2011 6:50 pm


Alright. ^^ if anyone finds any FLWs, FLPs, or FMPs that I missed, feel free to post them here!

Almost Poetic

Reply
Hacking and Scamming Prevention ----- A place to prevent and educate on scammings and hackings

 
Manage Your Items
Other Stuff
Get GCash
Offers
Get Items
More Items
Where Everyone Hangs Out
Other Community Areas
Virtual Spaces
Fun Stuff
Gaia's Games
Mini-Games
Play with GCash
Play with Platinum