Diablo 3 - Development Post Monday, Info on Hacking, Diminishing Returns on Armor, Blue Posts, and Farming Spot

Warlock Skill Animations Preview
Today we continue looking at the new skill animations with the new Warlock animations!



Warlock Challenge Mode Armor Preview
Warlocks also got a nice challenge mode set to go along with those new spell animations.





Mists of Pandaria Music Update
One of the recent beta builds added several new pieces of music. Make sure you have annotations enabled if you want to skip through the different songs!



Diablo III Blue Posts
Many of the points brought up here are relevant to WoW Account security as well. Keep your plugins up to date and use an authenticator! You can get one for iPhone, Android, BlackBerry, and Windows Phone 7 or even the physical one.

Originally Posted by Blizzard Entertainment
Account Compromises
The "hacking" ("compromising" is probably a better word, since no real "hacking" is going on) being seen in D3 is no different than what World of Warcraft players have been seeing for five years or so. The sad thing is, if no one bought game currency (gold, credits, whatever) from these third-party companies, then essentially no account compromises would be occurring. Compromises not done by gold selling companies are very rare indeed. They strip one player to sell to another, because it's much more efficient than "farming" gold. They still farm some of course, but they do it purely with compromised accounts.

Unfortunately, these compromisers make a lot of money off of the practice (because players buy gold) and so they have a lot of resources to use to try to get your password from you directly, or through your computer. Some of their poorly translated phishing e-mails may be laughable, but their trojans, infected websites, etc. are not funny at all.

If you have the physical or mobile authenticator (both of which major banks use and charge $30+ for) the chances of you being compromised are very, very small. I've personally examined the MSInfo files of nearly all of the handful of WoW players who have actually been compromised through an authenticator, and the sheer number of backdoor programs and other malware on their systems has been mind boggling. Probably not coincidentally, these same people were also running a disturbing number of file-sharing and download programs, including ones which are commonly known to not be safe.

Again, compromising game accounts is a big business in some countries. They have people on their payroll who spread false rumors of "hacked through my authenticator" just to try to discourage people from using them. We charge $6.50 for the physical authenticator, because that's exactly what it costs us to make them. The mobile one is free because we don't have to pay a factory to build them. Use them, and enjoy your gaming without someone mucking with your stuff.

What is the concrete cause of the hackings?
Well, the cause is people desiring a shortcut in their games by buying gold. If you mean the technical cause, as I mentioned previously the gold selling companies use a vast array of methods. A good friend of mine is a long time network admin (and a very good one at that), who had decided to not use an authenticator because he'd never had any security issues with his computer over the years. Well, an Adobe Flash vulnerability popped up a couple years ago, and he procrastinated applying the update by a whole week. As you can probably guess by the fact that I'm relating this anecdote, his WoW account was compromised and stripped because of that one week window.

There's absolutely nothing shameful about getting compromised, these companies are good at what they do. Heck, the former head of Blizzard Customer Service had his account compromised. It's because of how devious and high-tech the gold-selling companies have gotten that we implemented the physical and mobile authenticators. We can't physically go to everyone's computer and make it safe, so we've provided a tool that does it for you.

I've been a computer tech for a long time, and I've never had a single malicious security breach on any of my computers that I'm aware of, but I attached one of the very first batches of physical authenticators to my account. Why? Because no matter how good I am, sooner or later they were going to get me. But now, they can't.

Are you claiming that I did not have both the dial in auth and the SMS auth?
No, you had those. But neither of those are the physical or mobile authenticator, the main line of protection that is being referred to. The Dial-In and SMS are just nice additional layers of security to add to the physical or mobile.

It's becoming pretty apparent that our naming scheme might be causing some confusion, and I apologize for that. I'll bring the subject up with my management, so can we review both how the devices are named and how they are presented. If you have only one authenticator on your account, you want it to be the physical or mobile, not the dial-in or SMS. (Official Forums)

Auction House
Is this intended (To gear up solely through the AH) or will the drops at the end of Hell be better adjusted to help gear up for Inferno Act 1 and so on.
The auction house obviously provides an incredible service to allow for very easy trades between characters, and essentially blows out the wide range of items you could have available to you at any one time. So, in fact, the AH has to be a factor in how we drop items. On one hand you have a huge benefit because you can buy and sell items very easily, as opposed to having to post up WTS threads in the old USEast trading forums, but on the other end it does impact the item pool economy with the inherent ease at which you can trade items. If the AH existed but wasn't a factor at all into how items dropped/rolled, the economy would be completely tanked within a matter of weeks. (Blue Tracker / Official Forums)

MMO-Report
The MMO-Report is here with information about The Elder Scrolls Online factions, Defiance, and PlanetSide 2.

This article was originally published in forum thread: Warlock Skill Animations and Challenge Mode Armor, MoP Music, Blue Posts, MMO Report started by chaud View original post
Comments 59 Comments
  1. Xe4ro's Avatar
    The Soundtrack for MoP is really awesome , they are getting better and better over the Years. The Login Screen Track is so amazing :O.

    Also Warlock Set is looking good
  1. mmoca6967c3bea's Avatar
    If you aren't seeing any annotations on the music video you might need to try another browser or sign out of your youtube account to turn off HTML5. Note this is a problem on youtube's side with annotations and there isn't anything I can do about it.
  1. implicationmmo's Avatar
    Cool looking set of gear
  1. mmoc5f2b8de45d's Avatar
    Dat mailbox trap O.o
  1. mmoc5e65a11d07's Avatar
    I just hope they add in new voices for the demons - I'm guessing they will and the current ones are just placeholding, but it would be a bit rubbish if that was final xD other than that I can't wait to resub and feel the huge warlock power
  1. redisk's Avatar
    I don't doubt that gold buying is part of the issue, but they are so full of crap that it is all it is!
  1. Eliot123's Avatar
    Spells look awesome, especially Mesmerize - rainbow!
  1. aikouka's Avatar
    A good friend of mine is a long time network admin (and a very good one at that), who had decided to not use an authenticator because he'd never had any security issues with his computer over the years. Well, an Adobe Flash vulnerability popped up a couple years ago, and he procrastinated applying the update by a whole week.
    Sometimes I feel kind of bad that I run an ad blocker. I want to give the websites I visit the revenue to help them operate, but it's stories like this that make me glad that I do run one. Honestly, it only takes a single malicious ad making it past the ad rotation company's screener to infect tons of people. You couple that with the fact that Adobe/Macromedia have the worst update system in the woooooorld. You only receive notification of updates when your computer boots. For people like myself, and most likely that network admin in question, I rarely restart my machine, and consequently, I rarely see that update window.

    It is possible to update manually; however, when you run the executable manually, it doesn't really check your version. You can run it twice in a row, and it will want to update both times.

    So... long live Adblock Plus and NoScript!
  1. aggression's Avatar
    No single set yet that looks good. :S

    Blizz, hire some of the D3 art designers!!!
  1. chaud's Avatar
    Quote Originally Posted by aikouka View Post
    Sometimes I feel kind of bad that I run an ad blocker. I want to give the websites I visit the revenue to help them operate, but it's stories like this that make me glad that I do run one. Honestly, it only takes a single malicious ad making it past the ad rotation company's screener to infect tons of people. You couple that with the fact that Adobe/Macromedia have the worst update system in the woooooorld. You only receive notification of updates when your computer boots. For people like myself, and most likely that network admin in question, I rarely restart my machine, and consequently, I rarely see that update window.

    It is possible to update manually; however, when you run the executable manually, it doesn't really check your version. You can run it twice in a row, and it will want to update both times.

    So... long live Adblock Plus and NoScript!
    You can block only flash ads with a filtering rule and let the image / text based ones through.
  1. Scarlet Elf's Avatar
    Anyone else noticed how this warlock set bears some Illidan-like characteristics? Like obviously the horns, arcane marking on the chest and having a blindfold with glowing eyes underneath, on their helmet, shoulder and belt? Or am I just being hopeful...?
  1. Granyala's Avatar
    Originally Posted by Blizzard Entertainment
    I've been a computer tech for a long time, and I've never had a single malicious security breach on any of my computers that I'm aware of, but I attached one of the very first batches of physical authenticators to my account. Why? Because no matter how good I am, sooner or later they were going to get me. But now, they can't.
    Well My physical authenticator worked for about a month. After that I had to resynchronize it via support call every three days. I like security... but that was a little overkill.

    On the other hand: "You can't hack me.... because i can't even get in myself"... kind of funny...
  1. Easo's Avatar
    Dat music...
  1. Zstr's Avatar
    the music is as always awesome!
  1. Eggwolls's Avatar
    Warlock set is way too out there, but I'm not a warlock nor do I have one.

    The question asked about the D3 AH and fixing Hell gear so it doesn't need to be completely utilized to progress in Inferno was NOT answered at all. He only talked about how the AH is a useful source of gear. Well DUH, but shit costs so much that you have to farm the crap out of gold to buy a single good item unless you are lucky to find some dummy who posted low. I know (level 60 Barb here) I can't do anything, at all, without good resist gear which is so ridiculously expensive. I've only managed to solo Act 1 Inf, which is a feat to me.
  1. tremors's Avatar
    I dont get it, you talk about security and say let add an authenticater, but yet all people have to do is call say hey im such and such and bam its off. Wanna make this game some what "hack free" make passwords cap sensitive for crying out loud. Only password i know that does not require caps no matter how you entered it.
  1. Granyala's Avatar
    Wrong you need the authenticator ID in order to remove it.
  1. Tirilka's Avatar
    I'm very jealous of the whole Warlock class in MoP. Though, all these updates for locks are deserved, they were the most boring class for me.
  1. chaud's Avatar
    Quote Originally Posted by tremors View Post
    I dont get it, you talk about security and say let add an authenticater, but yet all people have to do is call say hey im such and such and bam its off. Wanna make this game some what "hack free" make passwords cap sensitive for crying out loud. Only password i know that does not require caps no matter how you entered it.
    You need some kind of identification to remove it. Please read this to see why case sensitivity makes no difference in this case.
  1. tremors's Avatar
    Quote Originally Posted by Granyala View Post
    Wrong you need the authenticator ID in order to remove it.
    Wrong, that you do not. Dont even need to know secret question. They asked me my address and bam it was removed.
    Asked my friend different questions each time.

Site Navigation