These forums have been archived and are now read-only.

The new forums are live and can be found at https://forums.eveonline.com/

EVE Information Portal

 
  • Topic is locked indefinitely.
123Next page
 

Dev Blog: This is (Team) Security!

First post First post
Author
CCP Eterne
C C P
C C P Alliance
#1 - 2014-04-09 16:07:53 UTC  |  Edited by: CCP Phantom
Security is very important to CCP. Our Security Team does a lot of things, such as targeting evil RMTers and botters and making sure they don't negatively impact EVE Online. It's been a while since their last dev blog and the team has undergone many changes since. CCP Bugartist, the Director of Information Security, comes forward with this new dev blog to update everyone on what's going on on the security front!

EVE Online/DUST 514 Community Representative ※ EVE Illuminati ※ Fiction Adept

@CCP_Eterne ※ @EVE_LiveEvents

Gilbaron
The Scope
Gallente Federation
#2 - 2014-04-09 16:13:42 UTC
soooo, authenticators ? or sms login protection ? or anything ?
ctx2007
Republic Military School
Minmatar Republic
#3 - 2014-04-09 16:14:32 UTC  |  Edited by: ctx2007
1st well done. Damn got beat!

You only realise you life has been a waste of time, when you wake up dead.

Altrue
Exploration Frontier inc
Tactical-Retreat
#4 - 2014-04-09 16:27:50 UTC
Good job!

But I'm still concerned about RMT and botting.

You see, given the amounts of isk seized (counted in trillions!) it seems like either a) the amount of RMTers is already stunningly high, or b) they take an awful lot of time to be detected and banned.

Signature Tanking Best Tanking

[Ex-F] CEO - Eve-guides.fr

Ultimate Citadel Guide - 2016 EVE Career Chart

Vincent Athena
Photosynth
#5 - 2014-04-09 16:32:50 UTC  |  Edited by: Vincent Athena
The amount of ISK seized is huge! That is actually a major ISK sink in the game, comparable to the amount of ISK created by mission rewards.

Edit: I have said this before, and I will say it again: When it comes to RMT and botting, CCP is not doing anything in the way of deterrence. Instead, they are acting almost like CONCORD, providing consequences to player actions.

To me, it seems that it would be better to do something that deters new players from doing either botting or RMT. Sure, once they do it and get caught they are deterred from repeating. But better would be to deter them from doing it at all, even once. My guess is many of the RMT and bot dealers make their living off players who do not realize they are doing something wrong. We need to change that.

What is out there right now that deters a new player form bad behavior? The EULA? How many people actually read the EULA? Dev blogs? I did not start reading them until I had been playing for several months. I didn't know they even existed. Others likely are the same way. Even once a player knows about dev blogs, one about RMT or bots can quickly get buried.

CCP, you need a deterrence against botting that is overt, continuous, and persistent. For example, on the launcher you could have some counters giving the results on the war on bots and RMT: ISK seized in the last 30 days, bans issued in the last 30 days. These would always be there for everyone to see. A constant reminder to not do it, even once.

Know a Frozen fan? Check this out

Frozen fanfiction

Linkoman
Center for Advanced Studies
Gallente Federation
#6 - 2014-04-09 16:41:45 UTC  |  Edited by: Linkoman
When will we see Two-Factor authentication(2FA)? Any plans on implementing existing 2FA tokens such as Google Authenticator or the Yubikey? Would you ever consider implemeting Steve Gibson's SQRL protocol in the future? (https://www.grc.com/sqrl/sqrl.htm)

Edit: I noticed that whenever security is discussed by CCP it's always about RMT or botting. Will we ever start seeing DevBlogs directly from Team InfoSec? (This is relevant to my interests.)
Ralph King-Griffin
New Eden Tech Support
#7 - 2014-04-09 16:42:24 UTC  |  Edited by: Ralph King-Griffin
good job lads, look forward to hearing more.
Chribba
Otherworld Enterprises
Otherworld Empire
#8 - 2014-04-09 16:49:19 UTC
Can we please have optional account lockdown to IP's anytime soon?

/c

★★★ Secure 3rd party service ★★★

Visit my in-game channel 'Holy Veldspar'

Twitter @ChribbaVeldspar

Promiscuous Female
GBS Logistics and Fives Support
#9 - 2014-04-09 17:00:06 UTC
does team security have team security blankets
Burseg Sardaukar
Free State Project
#10 - 2014-04-09 17:00:26 UTC
Quote:
CCP Random, His Divine Shadow™, Security Engineer


Holy ****... is that a Lexx reference? That show was terribly awesome.

Can't wait to dual box my Dust toon and EVE toon on the same machine!

Javajunky
Federal Navy Academy
Gallente Federation
#11 - 2014-04-09 17:18:05 UTC
The annual - let's do something with security before fan fest post.

How about dumping those plexes into the market that security has been squatting from the big bot sweep???
Callic Veratar
#12 - 2014-04-09 17:39:08 UTC
Javajunky wrote:
The annual - let's do something with security before fan fest post.

How about dumping those plexes into the market that security has been squatting from the big bot sweep???


Sounds like a great idea! Artificially deflate the price of PLEX by flooding the market making RMT isk worth more relative to PLEX isk. High PLEX prices are bad for players that use them but fantastic for those who sell them (and by extension CCP).
Javajunky
Federal Navy Academy
Gallente Federation
#13 - 2014-04-09 18:18:07 UTC
Callic Veratar wrote:
Javajunky wrote:
The annual - let's do something with security before fan fest post.

How about dumping those plexes into the market that security has been squatting from the big bot sweep???


Sounds like a great idea! Artificially deflate the price of PLEX by flooding the market making RMT isk worth more relative to PLEX isk. High PLEX prices are bad for players that use them but fantastic for those who sell them (and by extension CCP).


CPP had no problems at all whatsoever with injecting some of these PLEX last year as it was noted during the economic presentation at fan fest and since they have blown past that number again. Eve Online as every other game is going to be judged on subscription / accounts active.

Remember, once those accounts stay shut off, they are harder to get people to turn back on as they learn to live without those alts.

Personally I'm a goon, no price is too high for dominance of the universe.


Angry Mustache
KarmaFleet
Goonswarm Federation
#14 - 2014-04-09 18:49:30 UTC
contrary to what others might think, i believe that "isk seized" chart is on the low side.

that looks like 19 trillion in 7 months, roughly 210 days.

That's on average 90 billion per day, which, considering the scale of the game's income (In march 2012, an estimated 1T enters the game per day, I would assume it's safe to say that number is much higher now, maybe 1.5).

90 billion out of 1500 billion per day doesn't sound nearly as impressive.

An official Member of the Goonswarm Federation Complaints Department.

Lors Dornick
Kallisti Industries
#15 - 2014-04-09 18:50:10 UTC
Hail CCP for sticking to the issue.

And hail CCP Peligro and GM/CCP Grimmi for staying at a boring job that bosses often fail to see as 'important' :/

CCP Greyscale: As to starbases, we agree it's pretty terrible, but we don't want to delay the entire release just for this one factor.

Jayem See
Perkone
Caldari State
#16 - 2014-04-09 18:54:02 UTC
Javajunky wrote:
The annual - let's do something with security before fan fest post.?
Big smile

That's a lotta iskies right there. Great work and thanks for your efforts.

Aaaaaaand relax.

Zappity
New Eden Tank Testing Services
#17 - 2014-04-09 19:38:22 UTC  |  Edited by: Zappity
Angry Mustache wrote:
contrary to what others might think, i believe that "isk seized" chart is on the low side.

that looks like 19 trillion in 7 months, roughly 210 days.

That's on average 90 billion per day, which, considering the scale of the game's income (In march 2012, an estimated 1T enters the game per day, I would assume it's safe to say that number is much higher now, maybe 1.5).

90 billion out of 1500 billion per day doesn't sound nearly as impressive.


Yes, I'm interested in the amount that does not appear on the chart. How high is the actual figure? Impossible to answer of course. Also, how many individuals are represented in the graph? Are they finding the source of the isk or just the suckers who bought it?

How is most of that isk generated in the first place? Mining bots + sale on market, ratting bots, no bots at all? Or perhaps the Dinsdale favourite of nullsec cartels!

A very unsatisfying devblog in its lack of detail.

I would like a more secure login method.

Zappity's Adventures for a taste of lowsec and nullsec.

Tesco Ergo Sum
#18 - 2014-04-09 20:14:52 UTC
Thanks for your work, so many don't understand security so your efforts are greatly appreciated.
ISD Ezwal
ISD Community Communications Liaisons
ISD Alliance
#19 - 2014-04-09 22:31:57 UTC
I have securely removed a rule breaking post.

The Rules:
31. Rumor mongering is prohibited.

Rumor threads and posts which are based off no actual solid information and are designed to either troll or annoy other users will be locked and removed. These kinds of threads and posts are detrimental to the well being and spirit of the EVE Online Community, and can create undue panic among forum users, as well as adding to the workload of our moderators.

ISD Ezwal Community Communication Liaisons (CCLs)

Sabriz Adoudel
Move along there is nothing here
#20 - 2014-04-09 23:28:19 UTC
Now, let's see the chat bots in trade hubs crushed, so that EULA compliant scammers do not have to face illegitimate competition.


If it posts the exact same message and the shortest time between posts is more than half the longest time between posts, it's almost certainly a bot, especially if it takes no other actions and doesn't react at all when someone accuses it of being a bot.

I support the New Order and CODE. alliance. www.minerbumping.com

123Next page