Weak encryption in Dark Age of Camelot game client exposed customer billing and authentication information during transmission.
| Public Advisory (2003-12-11) | |
|---|---|
| Format | URL |
| http://capnbry.net/daoc/advisory20031211/daoc-billinginfo-exploit.pdf | |
| http://capnbry.net/daoc/advisory20031211/daoc-billinginfo-exploit.html | |
| http://capnbry.net/daoc/advisory20031211/daoc-billinginfo-exploit.txt | |
| Code Samples | |
|---|---|
| Name | Description |
| oe.u.diff | The following patch causes Odin's Eye to recognize the authentication and billing packets and write their contents to the console. |
![]() |
|
| mythicc.c | Basic C program using libpcap, libnids (for packet reassembly) and daoccrypt.h & daoccrypt.so from Odin's Eye for packet decryption.
gcc -o mythicc mythicc.c -lnids -lpcap -ldl |
Last modified: June 23, 2004