Social engineering

ADVERTISEMENT
From Diablo Wiki
Revision as of 15:38, 8 March 2009 by Flux (talk | contribs)
Jump to: navigation, search

Social Engineering is a term that basically means "talking someone into something." It's not hacking or cheating, though it's often used in conjunction with such activities. Successful confidence men and used car salesmen are consummate social engineers. So are successful cheaters in online games, since the trick of succeeding at that venture isn't to find the hacks and key loggers and item droppers, it's to get other people to use them.

There are countless social engineering scams covered on the warnings page, most of them Battle.net adaptions of classic "grifts." The vast majority of these involve ways to (supposedly) get rich quick by duping items, hacking items, creating special item types, boosting your character's level or powers, etc.

The old saying amongst con men holds very true on Battle.net, "You can't cheat an honest man."


Confidence Tricks

A very common type of social engineering is a two man confidence game. One player starts this in a public game. He'll claim to have an amazing ability; a way to dupe items, or hack them to increase their stats, or something else desirable. Naturally no one in the game believes him, and the wiser players simply squelch him. His (secret) partner (the shill) is the most vocal in his disbelief, they appear to argue, and finally the skeptic throws up an item to be duped or otherwise manipulated, "Just to shut him up."

Imagine the skeptic's surprise when he receives back two of the items, or the item much improved! He exclaims in amazement, then quickly throws in more items to undergo this transformation, loudly singing their praises to everyone in the game. If anyone else there is gullible enough to fall for this act, they'll offer up their own item(s) to be improved or duped... at which point both players vanish from the game, taking the spoils with them. This basic scam has been used in countless ways on Battle.net, often in combination with duping tricks, or fake item display tricks, etc. Anything to make the con more believable.

Alternatively, and more dangerously, the original huckster isn't offering a simple item upgrade, but is claiming that he's got access to a program that will do amazing things. The second player is skeptical, but after a delay to apparently install it, he claims it works wonderfully. This is obviously meant to get other players to download it, and give themselves a virus, or a backdoor key logger, etc.

Never assume other players aren't secretly working together, and never believe anything that seems too good to be true.


Sneaky Game Commands

These are another form of Social Engineering, where players trick you into doing something stupid with a command you might not know about. They claim the command will do something special, usually dupe items, but it instead drops you, or incapacitates you, so they can kill you while you aren't paying attention.

There were a number of debug codes left in the final game that have been removed over time, "scrollhack1" used to cause half the screen to go black, but it's disabled now. "Soundchaosdebug" is an interesting command, just type that in and you get an incredible babble of character and NPC voices. Type it again to stop it. Alt+F4 is the basic close program command for Windows, so obviously if someone tells you to dupe by dropping all your equipment and hitting Alt F1-F5, they're trying to get you to close the game so they can run and grab your loot.

Various packet sending programs are popular now, though their only purpose is as a cheat, or way to dupe, etc. They are also used in scams, one is detailed in the Trade Hacks section, but be aware that a packet you send can mimic most any command you can do with your mouse or keyboard, and it's quite likely that what someone says a packet will do is not what it will do, and they might be causing you to crash out, or drop an item, etc.