Protecting against Neopets Cookie Grabber (CGer) Guide

Welcome to the in-depth guide to avoiding cookie grabbers. This page has been generated from background information of how it works, reverse engineering of various neo CGs and 1st hand research. (plus losing 800k + trades along the way, but hey, it's priceless!!)

[SHORT VERSION]

For the in-depth version, please see http://www.neopets.com/~punchback_bob
Remember that Internet Explorer is vulnerable to on-site cookie grabbers (on neopets)
Opera users should use the userjs file called BlockScript. It's sorta complicated but it's here

Get firefox here: http://www.mozilla.com/en-US/firefox/firefox.html?from=getfirefox

Recommended Firefox Add-ons
"NOSCRIPT" This helps block malicious scripts from running. 
Don't forget to whitelist neopets.com and any other sites that you trust (like hotmail.com) (see attachment)

FLASHBLOCK This allows you to selectively load adobe flash player objects. If you need flash to play games, simply click the arrow to enable that object. This is allowed since most browsers don't even come with flash. Do not whitelist neopets as one type of CG uses a redirection of http://images.neopets.com/flash_version_check_v1.swf? to steal cookies.

KEYSCRAMBLER ADD-ON. For protection against key loggers (programs that record everything you type) It's no use changing your password if every key you press is being sent to the "hacker"

ADBLOCK. It allows you to block ads... and other things (like CGs) See attachment for more info

REQUESTPOLICY. RequestPolicy is an extension that improves the privacy and security of your browsing by giving you control over when cross-site requests are allowed by webpages you visit.

 

Think you got CG'd?

If you THINK you were CG'd, the first you should do is LOG OUT. Why? Because this invalidates the cookie that the "idiot" took. Try it yourself. Log into neo in another browser. You will see that you can browse neopets for a bit on both web browsers. Now click the log out button of one browser and see what happens. Contrary to popular belief, clearing cookies will do nothing for you. Just log out, get the keyscrambler add-on (if you can get it), and then log back in and THEN change your password

 

AttachmentSize
Image icon whitelist-neopets.gif74.73 KB
Image icon ablock-instructions.gif43.8 KB
Forums: 

Oh well, at least as you say you caught it before any more damage was done :)
___________ Kirsty aka "the sensitive one" Silverdragon siggy stealer Tasty tent seller

Hmm maybe they have their shop set up in which they are selling like dung for 99k or something and they bought something out of their shop with your money? Who knows. But It's a good thing 99k is all they got! .:| Grooming & Clothing |:. http://www.neopets.com/browseshop.phtml?owner=heartlessness_&banner

Well, my account was frozen, now it's unfrozen but I put in the new password wrong too many times so I have to wait an hour before I can get back in. My shop is empty and my shop description has been cleared but my counter info on this site says that I had 44 shop wizard hits... I wonder what happened! _____________________________________________________ ~ Mimi's Ménagerie Avatars ~ http://www.neopets.com/browseshop.phtml?owner=temps_bons&misc
~ Mimi ~ http://www.neopets.com/~Amyrilli

wow they unfroze you quite fast :O
___________ Kirsty aka "the sensitive one" Silverdragon siggy stealer Tasty tent seller

Someone just sent this to me, don't fall for it: From: [bball317] Nick Barker » Make this user your Neofriend Sent: 6/8/2009 06:24pm Folder: Inbox Subject: D: Message: [Report Message] the website neopointpalace.com is calling you a scammer...is this true?
WOW! Selling: Maps, Neggs, Stamps, Coins, Cards, ETC! http://www.neopets.com/browseshop.phtml?owner=1434sweet#p

*clap* Nice to know thanks now i dont have to fear the creepy guy down the street thanks to you

Would anyone of them be in good use in Google Chrome?

HELP! Is anyone on right now that can tell me what to download for Safari/Mac? I think I have just been CG'd!

[quote=littrell23]HELP! Is anyone on right now that can tell me what to download for Safari/Mac? I think I have just been CG'd![/quote] This is for Opera, I'm not sure if Safari is different from Opera though: http://forum.piriform.com/index.php?showtopic=19426 An easier approach is to just download Mozilla Firefox and follow the instructions here. Sorry to hear about your account.
WOW! Selling: Maps, Neggs, Stamps, Coins, Cards, ETC! http://www.neopets.com/browseshop.phtml?owner=1434sweet#p

I hope your account is okay :( Remember to change your password right away if you ever think you've been CG'd
[hr][size=11]Training, Luck & Medicine! ^_^ www.neopets.com/browseshop.phtml?owner=_jaspeh_&misc#c [/size]

Pages