I don't know what that is...
Hey. I own a pretty big server.. And would like to know if there was a way to get the passwords from XAuth or AuthMe. Since some ppl use their real password.
Thats almost baws!
Its both plugins that makes you do /register and /login for cracked servers.. But some premium users use their real password.. And it would be pretty cool to get these passwords :P Also if an Admin on another cracked server join, then he would probaly use the same password on both servers.. :P
Thats almost baws!
You cannot decrypt it. That's all there is to it. It uses an extremely secure custom hashing method which implements whirlpool into itself. It's completely one way. This is how the login/registration process works.
Registration
Client connects to server
Client types /register theirpassword
The phrase "theirpassword" is now converted into a secure hashed string and entered into the database with their username for safekeeping
Login
Client connects to server
Client typed /login theirpassword
The phrase "theirpassword" is converted to a secure hashed string again, and since their username is in the database already, it knows to check if their pass is real.
So is the hashed version of "theirpassword" in the database under their username?
If yes, it proceeds and lets them log in
If no, it stops them
It is literally 100% impossible to decrypt this algorithm unless you have hundreds and hundreds of years to spend.
However, if you were smart, you'd make a modified version of xAuth and put that up on your server instead. Get the source off of ****** and remove the password hashing, then upload it to your server and run it on a new MySQL database.