Register for your free account! | Forgot your password?

Go Back   elitepvpers > MMORPGs > Conquer Online 2
You last visited: Today at 13:51

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



A Traitor in our mist

Discussion on A Traitor in our mist within the Conquer Online 2 forum part of the MMORPGs category.

Reply
 
Old   #1
 
elite*gold: 0
Join Date: Apr 2005
Posts: 41
Received Thanks: 0
Awww Kitsunepaws, you felt like you had to tell conquer but not us?!?

Kitsunepaws post :

Can you share with us or is it too late now
Fiya is offline  
Old 04/19/2005, 04:49   #2
 
elite*gold: 312
Join Date: Sep 2004
Posts: 763
Received Thanks: 25
Sorry, this hack is wayyyy to serious to release here.
I won't have any script kiddies ripping the server apart.
KitsunePaws is offline  
Old 04/19/2005, 04:57   #3
 
elite*gold: 312
Join Date: Sep 2004
Posts: 763
Received Thanks: 25
Also, This site from what I have seen is mostly macros. And little exploits. Unless you have linux, knowledge of mysql, and a security scanner, and the IP of the server. This hack is useless to you
KitsunePaws is offline  
Old 04/19/2005, 07:42   #4
 
elite*gold: 0
Join Date: Apr 2005
Posts: 42
Received Thanks: 24
Oh man, If I got ahold of details I could definatly make something out of it =D
Flank is offline  
Old 04/19/2005, 08:03   #5
 
elite*gold: 312
Join Date: Sep 2004
Posts: 763
Received Thanks: 25
Well, f**k it...
Stupid GMs..
Here
Those of you that can read this
Have fun
There 2 services that are running on all
the servers
One is an OLD exploitable version of
mySQL. It can have all sorts of ****
done to it... DoS attackes, and most
importantly... It accepts 0 length passwords
so you could log into root
with no password, have fun trying to get ahold
of a client that will let you send one though.

Second thing that is a big security risk
Is all the game servers are running
Terminal Services
For those of you that don't know what
that is....
It's also called REMOTE DESKTOP CONNECTION
=) Have fun with those brute force programs kiddies!

Edit: No vulgarities xP
KitsunePaws is offline  
Old 04/19/2005, 15:37   #6
 
elite*gold: 0
Join Date: Apr 2005
Posts: 42
Received Thanks: 24
So someone could run port scanners on them and determine what services are open. Then depending on what the results are they could try default passwords and brute forceing on and of the remote connections.

And what is being held on the server with MySQL?
Flank is offline  
Old 04/19/2005, 16:40   #7
 
elite*gold: 0
Join Date: Apr 2005
Posts: 3
Received Thanks: 0
can u help me get some acc from my server?.. i dnt like some ppl..
rey is offline  
Old 04/19/2005, 17:33   #8
 
elite*gold: 0
Join Date: Sep 2004
Posts: 66
Received Thanks: 3
any joy in brute forcing it? when i get back from my office i'll have a play
craiglincs is offline  
Old 04/19/2005, 17:42   #9
 
elite*gold: 0
Join Date: Apr 2005
Posts: 42
Received Thanks: 24
When I get home today I will do a full port and vulnerablity scan on the login server, game server and site server.
Flank is offline  
Old 04/19/2005, 17:43   #10
 
elite*gold: 312
Join Date: Sep 2004
Posts: 763
Received Thanks: 25
Have fun
And I am going to guess
that mysql
probably holds
err I dont know..
all the player info
monster data?
KitsunePaws is offline  
Old 04/19/2005, 17:45   #11
 
elite*gold: 0
Join Date: Apr 2005
Posts: 42
Received Thanks: 24
Well say I find a vulnerablity in the the MySQL and I somehow get it to pull up a list of player accounts and then I would have to download their encrypted password file for any one account and proceed to crack it.
Flank is offline  
Old 04/19/2005, 22:30   #12
 
elite*gold: 0
Join Date: Mar 2005
Posts: 163
Received Thanks: 2
hey kitsunepaws, you could make quite a buisness out of this, lots of people get hacked, and since half of the people who were hacked arnt the original owners, theres now way for them to get there password back. since there not original owners GM's wont do a **** thing, you could charge like a db for each account u get back.

HINT HINT WINK WINK

wifes account was hacked the other day, shes not original owner so now shes screwd......

HINT HINT WINK WINK
whitespyder is offline  
Old 04/19/2005, 22:43   #13
 
elite*gold: 312
Join Date: Sep 2004
Posts: 763
Received Thanks: 25
lmao, I could.. But Knowledge is free.

So I won't be charging anything for anything I discover
*HACK THE PLANET!*

Karma to anybody who knows where that's from :P
Anyways..
Mysql is pretty much open from what I understand
You pull the playernames in plain text, you pull the passwords in plain text
KitsunePaws is offline  
Old 04/19/2005, 22:44   #14
 
elite*gold: 312
Join Date: Sep 2004
Posts: 763
Received Thanks: 25
Be careful though... massive exploitation with this, will cause server roll back ^.~
KitsunePaws is offline  
Old 04/19/2005, 22:50   #15
 
elite*gold: 0
Join Date: Mar 2005
Posts: 163
Received Thanks: 2
i dunno what mysql is or any other programs that people use, im not that great with using programs, so im offerin a db to whoever tells me what her password is

*HACK THE PLANET!*

isnt that from the movie hackers?????
whitespyder is offline  
Reply


Similar Threads Similar Threads
mist mein acc
03/26/2010 - Nostale Trading - 2 Replies
mist mein acc wurde bis 1.1.2038 gebannt also past auf wenn ihr botet das kann aber auch bis für immer sein!mein acc hate sp1 lvl40+sp2 lvl22+sp3 lvl60 +1 und ich war lvl 50 job 40
1 of here is traitor to us!!
11/18/2009 - Grand Chase - 2 Replies
Board Message Board Message this the link in gc forum & im banned now!! becoz of this username. athan,yunarix,buffmepls. that 3 of them is traitor to our gc forum. guy take care ur account. 1 of days is like me!!
was soll der mist
08/30/2009 - Metin2 Private Server - 4 Replies
Hi Comm habt ihr das auch bei eurem MainChar das bei chara auswahl ende ist hab mir mal nen neuen Char erstellt mit dem kann ich mich einlogen. Server: 60mt2 PS:bin im sd2 drin mit mainchar
Scheiße ! so ein mist >.<
03/15/2009 - Diablo 2 - 15 Replies
Also ich wollte nen 2cd key machen für d2 kuk bot so dann habe ich das gemacht habe da alles eingefügt ne sicherheits kopie von cdkey gemacht dann eingefügt und jezz sagt der immer das mein cd key nicht regestriert ist und wenn ich die alte datei einfüge labert er das gleiche und ich keine d2 cds mehr also die normalen was soll ich nur tun kann mir jemand helfen wie ich mein d2 wieder zum laufen bekomme ich :( ich könnt kotzen Mfg Tobias
son MIST !
01/18/2006 - Ragnarok Online PServer Hosting - 2 Replies
hab da nen prob mit athena wennich de ips usw eingeb un die server starte versucht der auf 0.0.0.0 zu connecten ma nen auszug ausm map server (=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= -=-=-=-=) ( &copy;2005 eAthena Development Team presents ) ( ______ __ __ ) ( /&#092; _ &#092;/&#092; &#092;__/&#092; &#092; v 1.00.00 ) ( __&#092; &#092; &#092;_&#092; &#092; &#092; ,_&#092; &#092; &#092;___ __ ___ __ ...



All times are GMT +2. The time now is 13:51.


Powered by vBulletin®
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2024 elitepvpers All Rights Reserved.