Register for your free account! | Forgot your password?

Go Back   elitepvpers > Popular Games > Silkroad Online > SRO Private Server
You last visited: Today at 14:11

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



[Exploit] Invincible & Invisible (vSRO 1.88)

Discussion on [Exploit] Invincible & Invisible (vSRO 1.88) within the SRO Private Server forum part of the Silkroad Online category.

Reply
 
Old   #1
 
elite*gold: 0
Join Date: Jan 2009
Posts: 314
Received Thanks: 685
[Exploit] Invincible & Invisible (vSRO 1.88)

While working on some packets to decode, I discovered some odd behavior by the server. I injected a certain packet with some unusual data and got the server to change me to an invincible or invisible state. Exactly those states used for GMs.

Can anybody tell me if this exploit is already known or not? I'm not up-to-date with that topic, I guess.

I kinda went to the first server in my mind, that I've been playing on years ago.

I do not intend to cast poor light nor advertise this particular server I recorded the exploit on.
This works on every vSRO based server and I'm currently looking into other versions as well (Official, Official-R).
DaxterSoul is offline  
Thanks
11 Users
Old 11/09/2015, 23:44   #2
 
elite*gold: 0
Join Date: Feb 2008
Posts: 962
Received Thanks: 650
This is an unknown one, at least for me. I know some which are used to spawn uniques and manipulate battle arena/ctf, but this is new.
magicanoo is offline  
Old 11/10/2015, 04:08   #3
Chat Killer In Duty


 
PortalDark's Avatar
 
elite*gold: 5
Join Date: May 2008
Posts: 16,390
Received Thanks: 6,507
couldnt this be detected by the client and/or server?

I mean, if this is used the way I think, the server could receive the data and trigger an action, like auto ban someone that is not a GM
PortalDark is offline  
Old 11/10/2015, 04:19   #4
 
elite*gold: 0
Join Date: Apr 2011
Posts: 1,251
Received Thanks: 519
do a favor for the people who still playing this ****** sro and remove the video/topic right now.
the last thing they need ingame someone invisible and kicking their ***'s
CrazyGirL_ZSZC is offline  
Old 11/10/2015, 04:40   #5
Chat Killer In Duty


 
PortalDark's Avatar
 
elite*gold: 5
Join Date: May 2008
Posts: 16,390
Received Thanks: 6,507
Quote:
Originally Posted by CrazyGirL_ZSZC View Post
do a favor for the people who still playing this ****** sro and remove the video/topic right now.
the last thing they need ingame someone invisible and kicking their ***'s
while I agree, there is no rule that forbids this kind of posts
If you were to post some secret information, not posting it on the first place is advised, but since he already posted it, unless he ask for it; the thread is allowed to stay
PortalDark is offline  
Old 11/10/2015, 06:12   #6
 
elite*gold: 0
Join Date: Apr 2015
Posts: 1,444
Received Thanks: 1,373
If what you are doing is sending "GM" packet to the agent which has the stuff for invisible. Then I already patched this, if it's client side then we fukt

Quote:
Originally Posted by PortalDark View Post
couldnt this be detected by the client and/or server?

I mean, if this is used the way I think, the server could receive the data and trigger an action, like auto ban someone that is not a GM
If it is sending a corrupt packet to the AgentServer then a filter can "control" the gm packet, and check the user id's "allowed" security group, and then determine to just "skip" the packet or just allow it.

What I did is to add all gm accounts in a "List" and you store your username after 0x6103 (agentserver) is sent, this mean user successfully logged in, so they must login in order to save the "current" UserID. If the UserID is not in the allowed GM "list" they cannot send the GM packets for uniques, invisible and so on.

Quote:
Originally Posted by CrazyGirL_ZSZC View Post
do a favor for the people who still playing this shitty sro and remove the video/topic right now.
the last thing they need ingame someone invisible and kicking their ass's
This thread actually help more then destroy the pSRO scene, since filter coders can solve this error. If this was suppose to stay "hidden" you could abuse it all servers and destroy their economy etc.
​Goofie​ is offline  
Thanks
5 Users
Old 11/10/2015, 08:07   #7
 
WickedNite.'s Avatar
 
elite*gold: 15
Join Date: Jul 2014
Posts: 1,614
Received Thanks: 1,375
You can do a lot of things with phconnector, some people may be surprised, I found some nasty things lately but I'll share when it's the time.
WickedNite. is offline  
Thanks
3 Users
Old 11/10/2015, 08:29   #8
 
blapanda's Avatar
 
elite*gold: 0
Join Date: Jul 2009
Posts: 1,860
Received Thanks: 760
There is a packet, which is pretty nasty. Ever dreamed of: Killing those annoying killstealers right next to you? Or those uber super strong wizards at PvP, who are yelling "Me kralz", but frequently using invisible?

Welp, there is a packet killing absolutely everyone in a server, no matter if safe zone or not.
If people experienced that on Venus... you know what happened to you.
blapanda is offline  
Old 11/10/2015, 13:00   #9
 
elite*gold: 0
Join Date: Jan 2009
Posts: 314
Received Thanks: 685
Quote:
Originally Posted by PortalDark View Post
couldnt this be detected by the client and/or server?

I mean, if this is used the way I think, the server could receive the data and trigger an action, like auto ban someone that is not a GM
This can be fixed with any packet filter within a matter of seconds, yes.

Quote:
Originally Posted by CrazyGirL_ZSZC View Post
do a favor for the people who still playing this shitty sro and remove the video/topic right now.
the last thing they need ingame someone invisible and kicking their ass's
The video leaves little to no clue on how the exploit works. I doubt that the "script kiddies" on here find out how to use it by just watching this.

Quote:
Originally Posted by ​Goofie​ View Post
If what you are doing is sending "GM" packet to the agent which has the stuff for invisible. Then I already patched this, if it's client side then we fukt
It's not a GM packet. I can also set myself to infinite untouchable for 5 seconds, but given the fact that you can't attack in that state it's kinda useless.
DaxterSoul is offline  
Old 11/10/2015, 15:08   #10
 
elite*gold: 2
Join Date: Aug 2011
Posts: 833
Received Thanks: 1,130
Is this just a client side only visual effect? or does this effect how others in game see you.
Timlock is offline  
Old 11/10/2015, 17:00   #11
Chat Killer In Duty


 
PortalDark's Avatar
 
elite*gold: 5
Join Date: May 2008
Posts: 16,390
Received Thanks: 6,507
Quote:
Originally Posted by Timlock View Post
Is this just a client side only visual effect? or does this effect how others in game see you.
It affect anyone. The packet sent grants you the effect, both visual and functionality speaking
PortalDark is offline  
Old 11/10/2015, 21:58   #12
 
elite*gold: 0
Join Date: Apr 2015
Posts: 1,444
Received Thanks: 1,373
Quote:
Originally Posted by DaxterSoul View Post
It's not a GM packet. I can also set myself to infinite untouchable for 5 seconds, but given the fact that you can't attack in that state it's kinda useless.
So what you are doing is corrupting the Europe wizard skill (invisible), sending the invisible skill all the time and bypassing the delay?

My guess:
1. Works for the European class only.
2. Skill bug(corrupt skill).
3. In order to complete the bug you must unskill or never level up the invisible skill.
4. Send the Skill packet with the SkillID and you get invisible(no delay cause skill isn't leveled up)

Am I right?
​Goofie​ is offline  
Old 11/10/2015, 23:16   #13
 
elite*gold: 0
Join Date: Feb 2008
Posts: 962
Received Thanks: 650
Can you "disconnect" players? aka console /ban command.
magicanoo is offline  
Old 11/11/2015, 01:44   #14
 
elite*gold: 0
Join Date: Jan 2009
Posts: 314
Received Thanks: 685
Quote:
Originally Posted by ​Goofie​ View Post
So what you are doing is corrupting the Europe wizard skill (invisible), sending the invisible skill all the time and bypassing the delay?

My guess:
1. Works for the European class only.
2. Skill bug(corrupt skill).
3. In order to complete the bug you must unskill or never level up the invisible skill.
4. Send the Skill packet with the SkillID and you get invisible(no delay cause skill isn't leveled up)

Am I right?


Kinda hard to proof with a picture from my test server. I'd have purple text if it would've been a GM character. But I could have injected that as well since there as so many options...

DaxterSoul is offline  
Old 11/13/2015, 13:51   #15
 
elite*gold: 0
Join Date: Feb 2012
Posts: 25
Received Thanks: 142
I also found it
Iwa13 is offline  
Thanks
1 User
Reply


Similar Threads Similar Threads
[23/10/2013] AERYS2nD D3D [Chams|Invincible|Glitcher|STW|Invisible|CrossHair| ETC]
11/02/2013 - WarRock Hacks, Bots, Cheats & Exploits - 68 Replies
Updated: http://www.elitepvpers.com/forum/warrock-hacks-bot s-cheats-exploits/2940165-03-11-2013-aerys2nd-publ ic-d3d-chams-esp-aimbot-gm-warning-vehicle-hack-in vincible.html
[20/09/2013]AERYS2nD D3D[Chams|CrossHair|Invincible|Invisible|AllSlots|S.NS pread|Etc]
10/03/2013 - WarRock Hacks, Bots, Cheats & Exploits - 41 Replies
CHEAT UPDATED: http://www.elitepvpers.com/forum/warrock-hacks-bot s-cheats-exploits/2888525-06-10-aerys2nd-d3d-chams -v-chams-s-nospread-teleportto-invincible-inv-isib l-glitcher.html#post25289946
Invincible Exploit...
03/31/2010 - CO2 Exploits, Hacks & Tools - 24 Replies
Please delete....
Invincible Grinding Exploit (Tier 3 Order)
09/26/2008 - General Gaming Releases - 4 Replies
Invincible Grinding Exploit (Tier 3 Order) by Nathreziem Small, but valuable exploit I found while doing a PQ. This is located in the Unterbaum cemetery in Talabecland, the Empire T3 area. I used this exploit with a Bright Wizard, and have not tested it with any other Career. Mobs are level 29+, give 100 influence each and a good amount of experience.



All times are GMT +1. The time now is 14:12.


Powered by vBulletin®
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2025 elitepvpers All Rights Reserved.