Register for your free account! | Forgot your password?

You last visited: Today at 01:03

  • Please register to post and access all features, it's quick, easy and FREE!

 

A Traitor in our mist

Reply
 
Old   #1
 
elite*gold: 0
Join Date: Apr 2005
Posts: 41
Received Thanks: 0
Awww Kitsunepaws, you felt like you had to tell conquer but not us?!?

Kitsunepaws post :

Can you share with us or is it too late now



Fiya is offline  
Old   #2
 
elite*gold: 0
Join Date: Sep 2004
Posts: 791
Received Thanks: 25
Sorry, this hack is wayyyy to serious to release here.
I won't have any script kiddies ripping the server apart.


KitsunePaws is offline  
Old   #3
 
elite*gold: 0
Join Date: Sep 2004
Posts: 791
Received Thanks: 25
Also, This site from what I have seen is mostly macros. And little exploits. Unless you have linux, knowledge of mysql, and a security scanner, and the IP of the server. This hack is useless to you
KitsunePaws is offline  
Old   #4
 
elite*gold: 0
Join Date: Apr 2005
Posts: 42
Received Thanks: 24
Oh man, If I got ahold of details I could definatly make something out of it =D


Flank is offline  
Old   #5
 
elite*gold: 0
Join Date: Sep 2004
Posts: 791
Received Thanks: 25
Well, f**k it...
Stupid GMs..
Here
Those of you that can read this
Have fun
There 2 services that are running on all
the servers
One is an OLD exploitable version of
mySQL. It can have all sorts of ****
done to it... DoS attackes, and most
importantly... It accepts 0 length passwords
so you could log into root
with no password, have fun trying to get ahold
of a client that will let you send one though.

Second thing that is a big security risk
Is all the game servers are running
Terminal Services
For those of you that don't know what
that is....
It's also called REMOTE DESKTOP CONNECTION
=) Have fun with those brute force programs kiddies!

Edit: No vulgarities xP
KitsunePaws is offline  
Old   #6
 
elite*gold: 0
Join Date: Apr 2005
Posts: 42
Received Thanks: 24
So someone could run port scanners on them and determine what services are open. Then depending on what the results are they could try default passwords and brute forceing on and of the remote connections.

And what is being held on the server with MySQL?
Flank is offline  
Old   #7
 
elite*gold: 0
Join Date: Apr 2005
Posts: 3
Received Thanks: 0
can u help me get some acc from my server?.. i dnt like some ppl..
rey is offline  
Old   #8
 
elite*gold: 0
Join Date: Sep 2004
Posts: 66
Received Thanks: 3
any joy in brute forcing it? when i get back from my office i'll have a play
craiglincs is offline  
Old   #9
 
elite*gold: 0
Join Date: Apr 2005
Posts: 42
Received Thanks: 24
When I get home today I will do a full port and vulnerablity scan on the login server, game server and site server.
Flank is offline  
Old   #10
 
elite*gold: 0
Join Date: Sep 2004
Posts: 791
Received Thanks: 25
Have fun
And I am going to guess
that mysql
probably holds
err I dont know..
all the player info
monster data?
KitsunePaws is offline  
Old   #11
 
elite*gold: 0
Join Date: Apr 2005
Posts: 42
Received Thanks: 24
Well say I find a vulnerablity in the the MySQL and I somehow get it to pull up a list of player accounts and then I would have to download their encrypted password file for any one account and proceed to crack it.
Flank is offline  
Old   #12
 
elite*gold: 0
Join Date: Mar 2005
Posts: 163
Received Thanks: 1
hey kitsunepaws, you could make quite a buisness out of this, lots of people get hacked, and since half of the people who were hacked arnt the original owners, theres now way for them to get there password back. since there not original owners GM's wont do a **** thing, you could charge like a db for each account u get back.

HINT HINT WINK WINK

wifes account was hacked the other day, shes not original owner so now shes screwd......

HINT HINT WINK WINK
whitespyder is offline  
Old   #13
 
elite*gold: 0
Join Date: Sep 2004
Posts: 791
Received Thanks: 25
lmao, I could.. But Knowledge is free.

So I won't be charging anything for anything I discover
*HACK THE PLANET!*

Karma to anybody who knows where that's from :P
Anyways..
Mysql is pretty much open from what I understand
You pull the playernames in plain text, you pull the passwords in plain text
KitsunePaws is offline  
Old   #14
 
elite*gold: 0
Join Date: Sep 2004
Posts: 791
Received Thanks: 25
Be careful though... massive exploitation with this, will cause server roll back ^.~
KitsunePaws is offline  
Old   #15
 
elite*gold: 0
Join Date: Mar 2005
Posts: 163
Received Thanks: 1
i dunno what mysql is or any other programs that people use, im not that great with using programs, so im offerin a db to whoever tells me what her password is

*HACK THE PLANET!*

isnt that from the movie hackers?????


whitespyder is offline  
Reply



« Previous Thread | Next Thread »

Similar Threads
mist mein acc
mist mein acc wurde bis 1.1.2038 gebannt also past auf wenn ihr botet das kann aber auch bis für immer sein!mein acc hate sp1 lvl40+sp2 lvl22+sp3...
2 Replies - Nostale Trading
1 of here is traitor to us!!
Board Message Board Message this the link in gc forum & im banned now!! becoz of this username. athan,yunarix,buffmepls. that 3 of them is...
2 Replies - Grand Chase
was soll der mist
Hi Comm habt ihr das auch bei eurem MainChar das bei chara auswahl ende ist hab mir mal nen neuen Char erstellt mit dem kann ich mich einlogen. ...
4 Replies - Metin2 PServer - Discussions / Questions
Scheiße ! so ein mist >.<
Also ich wollte nen 2cd key machen für d2 kuk bot so dann habe ich das gemacht habe da alles eingefügt ne sicherheits kopie von cdkey gemacht dann...
15 Replies - Diablo 2
son MIST !
hab da nen prob mit athena wennich de ips usw eingeb un die server starte versucht der auf 0.0.0.0 zu connecten ma nen auszug ausm map server ...
2 Replies - Ragnarok Online PServer Hosting



All times are GMT +2. The time now is 01:03.


Powered by vBulletin®
Copyright ©2000 - 2017, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.

Support | Contact Us | FAQ | Advertising | Privacy Policy
Copyright ©2017 elitepvpers All Rights Reserved.