The 2012 April Fools incident involved the compromise of the Roblox website, resulting in the website being taken offline for a brief period of time. While there was no actual hacking of the website, only a breach with the Roblox admin panel on the testing sites, the incident was widely referred to as such both during and after it occurred.
The incident was thought to have begun when user Ellernate gained access to Roblox's admin panel by creating an account on SiteTest3 using a Roblox Administrator's Roblox Username.
Ellernate was responsible for the website's most notable "hacking" on April 1, 2012. Ellernate gained access by logging into an admin account on SiteTest3 (because not all admins were on the testing sites). The use of the .ROBLOSECURITY cookie, the use of the warning banner, and unauthorized user promotions are all examples of ROBLOSECURITY cookies. Roblox, a former Reddit moderator, stated in a 2017 Reddit comment that "It was nothing... You won't see it happen again".
Account hacking and promoting
A suspected precursor to the incident was a forum discussion that devolved into an argument between Minish and Merely about money and Roblox's economy. Caleb244 allegedly took over Minish's account, and Minish purchased Merely's famous Domino Crown, which was Merely's personal favorite avatar shop item. The forums quickly became inundated with threads debating the events. As a result, the two users were banned. This would also result Merely briefly leaving Roblox.
Soon after, Ellernate-controlled accounts Pheedy and are17 were promoted to moderators and used their newfound authority to unban Minish. During this time, the prices of hats in the avatar shop dropped dramatically, and hats were released by the minute for 1 Robux. Some hat names were changed, such as Explosive Hair was renamed to "Rocket Hair", Hooded Spacelord was renamed to "Noob Hood", and Memento Mori was renamed to "Candle Skull". The user iTrapped, or Isaac, the creator of Brick Planet, did this.
It is believed that 1dev2's account was one of the compromised accounts. During the event, many items were added to their inventory, and their avatar was changed several times. This lead to a moderator subsequently deleting their account. This ban was never lifted, but 1dev2 may have been granted temporary access to their account after the event, during which time they uncopylocked their game "Welcome to the Town of Robloxia".
During this time, the perpetrator released multiple Roblox assets on the official Roblox account. They first released a new face with the title "c:" into the avatar shop for 100 Robux. Stickmasterluke's account was the only account that bought it (or one of the breachers added it through there avatar), and anyone else who tried to buy it received an error message. The image asset for the face can be retrieved on the Roblox website. Another "c:" face was created and can be also be retrieved on the website. A third face, "hai guize derp" was also released and can be accessed on the Roblox website as well.
Other accounts affected during this incident include:
- Qman1245 obtaining the Dominus Empyreus, Domino Crown, Ban Hammer, and the Admin Badge. Their account was later terminated.
- Rippinz obtained multiple items released during the incident, including two copies of the Scary Hood.
- Misteroe traded away and laundering an estimated 100,000 to 350,000 Robux. There is also some speculation that player Misteroe was directly involved with the event.
- ExFamous obtained Dominus Frigidus #16 and #59 Ghostwalker, which were worth approximately eight million Robux at the time.
- Mattmlm11 was given the Sinister Fedora along with other items, but were later removed from their inventory.
- ScorpioPilot was also compromised and terminated for 6 years.
- ReeseMcBlox was among the users hacked during the incident, as shown in a forum post. When she was hacked the hackers wrote extremely inappropriate comments using her account, and it has been reported that she could not get access to her account until the event was over.
Several avatar shop items, mainly hats that were never intended to be released were during this update with altered names. These hats were quickly taken off sale after Roblox gained control. These included:
Banners were added to the top of the website by Ellernate and frequently changed colors and displayed questionable content. In chronological order, all banners are below:
- "Hi, We are having issue's with our publishing system. Hang tight yo!"
- "Bro chill we get it"
- "Yo dog ya'll need to chill it"
- "Do A Barrel Roll"
- "thank you minish for messing up the economy. nub."
- "these aren't the droids you're looking for!"
- "Go out and buy some peanut butter yo"
- "You put the peanut butter in the potato and stir it all up"
- "jaredvaldez4 best builder on roblox kthxbai"
- "WHO IS IT 1x1x1x1, Dignity, Minish, Jared, The Admins? The World May Never know :o"
- "minish is climbin in yo windows. snatchin yo people up."
- "WII GUNNA FIN WII GUNNA FIN U"
- "Oh you lik these headers? Tell me how you've always been such a fan"
- "OMG lik srsly becky?"
- "JOIN BUILDERS CLUB! ITS FREEEEEEEEEEEEEE!!!!"
- "Minish, I need you boo. I gotta see you boo. But yea this isn't Minish."
- "Yo RT stop yo ranting homies"
- "Haha these are so funny lets go spam the forums about them :D"
- "is anybody here besides minish a huge chris brown fan??"
- "Remember kids tell your parents to vote for Ron Paul"
- "Playing roblox is always better then going outside!"
- "Yo gonna give a shout out to the homies in dah hood"
- "pink. it's my new obsession. pink. it not even a question."
- "I'm the annoying orange banner. AHHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHHAHAHAHAHA"
- "NO TOMATO IS ALWAYS BEST SILLY ORANGE"
- "minish is a stupid noob. nah not rly"
- "remember kids trust anyone with your password"
- "APRIL FEWLS"
- "Ten bux says we do roll back on today"
- "hai itz pheedy mcnoobster and minish and we taken over"
- "McNoobster in dah houze"
After all the activity occurring, Roblox staff brought the site offline and reported that they were attempting to patch up the currency system. The website was brought back online during the late evening of that day. The site test admin panel was updated and the Roblox avatar shop was offline until the following evening.
In a Roblox Blog post on April 2, 2012, it was announced that "Roblox experienced a site issue the evening of April 1st..., and they took the site offline". They noted that "Several assets were released from the avatar shop backlog that were not ready for production", and "Several accounts were incorrectly granted large amounts of Robux; some of these Robux were subsequently traded with other accounts." Some avatar shop items and currency transactions were audited and rollbacked, and they estimated the rollbacks occurred in fewer than 0.01% of Roblox accounts. Some items were updated with new pricing, while other items were taken off-sale. The "c:" item was changed to Dr. Smyth Face and was temporarily available for purchase.
- If the ID of the "c:" face is put into a face changer or mannequin the Dr. Smyth Face displays instead.
- Some of the items prices were changed to 666 Robux.
- (2017). What was the April Fool's Hack of 2012?. Retrieved from https://www.reddit.com/r/roblox/comments/7irz8i/what_was_the_april_fools_hack_of_2012/
- David Baszucki. (2012). Site Issue Resolved. Roblox Blog. Retrieved from https://blog.roblox.com/2012/04/site-issue-resolved/