Feeds

Net sleuths spot poker site cheat code

UltimateBet.com bares hole card

SANS - Survey on application security programs

The former operator of a popular online poker site faces a $75m claim after internet sleuths presented evidence that for more than three years it offered rigged games that allowed cheaters to win hands at astronomically unlikely odds.

According to a special report published last week on msnbc.com, scammers were able to manipulate the software running UltimateBet.com, one of the top 10 online poker sites. The unauthorized software code allowed certain players to see the hole cards of their opponents, according to the report, which cited a report from Tokwiro Enterprises, a company that claims ownership of UltimateBet.

The scam was unearthed by some of the players who got burned. They noticed that certain players in the highest-stakes games were winning at a rate that seemed to defy statistical odds. Two of the players, who went by the handles "trambopoline" and "dlpnyc21," eventually closed in on a particular account as a prime suspect. Using the screen name "NioNio," the player netted $300,000 in profit in just 3,000 hands. They later discovered that NioNio had won 13 of the 14 sessions recorded on MyPokerIntel.com, a website that tracks high-stakes online tournaments.

Australian poker player Michael Josem compared the results to 870 other accounts with 2,500 or more hands recorded and calculated that NioNio's win rate was less likely than winning a one-in-a-million lottery four days in a row.

The tale is reminiscent of allegations leveled last year against AbsolutePoker.com, UltimateBet's sister site. In both cases, the suspicions of fraud only came to light after players smelled a rat. Forums like this one from the Two Plus Two poker website show the players unraveling the scheme.

Tokwiro Enterprises blamed the alleged cheating on individuals who worked for the previous owners of UltimateBet, who sold the business in 2006. If true, that would mean the unauthorized code was running Tokwiro's system for two years before it was finally dismantled in January of this year. The site has been known for its glitzy television commercials and advertisements that trumpet the security of its software.

The $75m claim was filed by Blast-Off Ltd. of Malta, a private company that currently has an ownership interest in Ultimate Bet. A representative with the liquidator for UltimateBet says the claim is being taken seriously. Many more details from msnbc.com are available here. ®

Combat fraud and increase customer satisfaction

More from The Register

next story
Parent gabfest Mumsnet hit by SSL bug: My heart bleeds, grins hacker
Natter-board tells middle-class Britain to purée its passwords
Samsung Galaxy S5 fingerprint scanner hacked in just 4 DAYS
Sammy's newbie cooked slower than iPhone, also costs more to build
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
Web data BLEEDOUT: Users to feel the pain as Heartbleed bug revealed
Vendors and ISPs have work to do updating firmware - if it's possible to fix this
Snowden-inspired crypto-email service Lavaboom launches
German service pays tribute to Lavabit
One year on: diplomatic fail as Chinese APT gangs get back to work
Mandiant says past 12 months shows Beijing won't call off its hackers
Call of Duty 'fragged using OpenSSL's Heartbleed exploit'
So it begins ... or maybe not, says one analyst
prev story

Whitepapers

Designing a defence for mobile apps
In this whitepaper learn the various considerations for defending mobile applications; from the mobile application architecture itself to the myriad testing technologies needed to properly assess mobile applications risk.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.
Five 3D headsets to be won!
We were so impressed by the Durovis Dive headset we’ve asked the company to give some away to Reg readers.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Securing web applications made simple and scalable
In this whitepaper learn how automated security testing can provide a simple and scalable way to protect your web applications.