Original Post — Direct link

Hello,

not crying about being scammed but crying about something new.

Normally scam is to put in all the currency, "accidently" decline the trade and put in the same amount of fields of currency but one or more stacks have less currency.

I just got a trade for an unnatural instinct for 6.5EX and the dude put in the correct amount of currency (I tripple checked) and we both accept and in that moment I hear a CLACK as if someone put a currency item into trade WHILE the window closes and é voila: I sit on 1.5EX.

I have no idea HOW he did that, if that is a new security leak or anything but take care! I sadly have no friggn idea on how to evade that thing and never have seen it before.

External link →
almost 4 years ago - /u/chris_wilson - Direct link

So I want to start by saying we'll definitely investigate this and I'm not trying to say it isn't a thing until we have deeply looked into it.

But looking at the trade code myself, this doesn't appear to be possible. It very clearly will only accept trade and move items between players if every item has been validated by the other client specifically confirming that they have "seen" it by moving the mouse cursor over it. There doesn't appear to be any way to slip items in at the last second. I should note that the thing done in the Mathil video does fall within the rules of what a bot could do in trade, but that can't be used for scamming.

The trade code doesn't appear to have changed in a decade and has certainly been under a lot of scrutiny during that time by enterprising players for obvious reasons.

We will absolutely investigate this, and you'll definitely hear if we find anything that needs fixing.