Dejavu exploiting

All multiplayer related discussion.

Moderator: Forum Guards

Postby Dae » Mon Aug 21, 06 9:45 am

It will be a small patch on a tube with a big hole. So sooner or later the patch will burst open.
User avatar
Dae
Alpha
 
Posts: 12086
Joined: Sat Sep 06, 03 4:40 pm

Postby Alex » Mon Aug 21, 06 9:46 am

Spiderf[A]g01 wrote:Can't someone just use it against him?

Sure we can. But it wont help would it? And we would lower ourselves to his level.
Alex
Alpha
 
Posts: 8067
Joined: Wed Nov 12, 03 4:51 pm

Postby [FGS]Majestic » Mon Aug 21, 06 10:58 am

Yeah, hacking himself would be really sad. Lol, there are like 3 "fuck you deja" servers 0 aug now :D :) ..hopefully it can be fixed but it seems very effective, even after 5 seconds the server crashes :(
User avatar
[FGS]Majestic
Wannabe
 
Posts: 79
Joined: Sun Feb 05, 06 11:01 am

Postby synthetic » Mon Aug 21, 06 1:49 pm

im curious how konamis plan might work, mailing gamespy part that is. theoretically Anyone could host a 0aug server, wait it to get wiped and then report to gamespy. Obviously a patch would be priority #1 but 20 emails going gamespy way might be interesting. I also considered the possibility of notifying his university. He claims he has nothing to do with this, at least he did last night, and I was told he also gave the bot out to [3]. So dejavu wont end up as the only enemy and crasher probably.

I usually avoid this forum but for obvious reasons I made an exception, I wish daedalus and alex luck patching up the hole, until next time dejavu finds a new route.

REN is planning on buying a 0aug server shortly, possibly partly auged. So we hope to aquire a working patch.
Last edited by synthetic on Mon Aug 21, 06 3:32 pm, edited 1 time in total.
[TSS][¥]{¥+EoD}{RF}{MoH}[G][NEM][UE][N]{U}[REN][BM][FGS][THC][:¤:]

DXMP Clans and History
User avatar
synthetic
Forum Hero
 
Posts: 2918
Joined: Thu Apr 21, 05 4:04 pm
Location: land of green elephants

Postby Krieg » Mon Aug 21, 06 2:10 pm

partly augged :shock: , their are enough good augged servers , [3] and stezorz one are enough
-Elitist-
Image
Krieg
Forum Super Hero
 
Posts: 3357
Joined: Wed Apr 06, 05 1:02 pm
Location: in front of my comp =]

Postby synthetic » Mon Aug 21, 06 2:18 pm

I said "possibly" and "partly" shadow =), as far as we've discussed it it will be 0-auged.
Last edited by synthetic on Mon Aug 21, 06 3:34 pm, edited 1 time in total.
[TSS][¥]{¥+EoD}{RF}{MoH}[G][NEM][UE][N]{U}[REN][BM][FGS][THC][:¤:]

DXMP Clans and History
User avatar
synthetic
Forum Hero
 
Posts: 2918
Joined: Thu Apr 21, 05 4:04 pm
Location: land of green elephants

Postby Spiderbot01 » Mon Aug 21, 06 2:46 pm

I assume your Sig is an ironic joke...
<center>------</center><center>
Image</center>
<center>Image</center><
User avatar
Spiderbot01
Alpha
 
Posts: 5363
Joined: Wed Nov 30, 05 8:24 pm
Location: LONDON!!!!

Postby Krieg » Mon Aug 21, 06 3:23 pm

he loves ironie
-Elitist-
Image
Krieg
Forum Super Hero
 
Posts: 3357
Joined: Wed Apr 06, 05 1:02 pm
Location: in front of my comp =]

Postby monkee » Mon Aug 21, 06 4:59 pm

o_O
monkee
Poster
 
Posts: 225
Joined: Tue Aug 02, 05 3:54 pm

Postby Spiderbot01 » Mon Aug 21, 06 5:16 pm

It would be useful if we had a paying gamespy person, might pay a bit more attention to them..
<center>------</center><center>
Image</center>
<center>Image</center><
User avatar
Spiderbot01
Alpha
 
Posts: 5363
Joined: Wed Nov 30, 05 8:24 pm
Location: LONDON!!!!

Postby Imperial » Mon Aug 21, 06 6:51 pm

Tried to contact Gamespy, in the end, it lead me to support, but not for contacting them about masterserver issues, or anything to that extent. It says that the game supplier is responsible for their masterserver however, as they are the ones who provide the information. Unfortunately, it is very hard to contact Eidos Interactive, with no contact information left on thier site. I also doubht they would care.

However, if anyone knows the contact for gamespy it would be much apreciated.

Thanks.
Last edited by Imperial on Mon Aug 21, 06 6:55 pm, edited 1 time in total.
I sell donuts, if you want my donuts, give me a call.

DONUTS
User avatar
Imperial
Forum Hero
 
Posts: 2450
Joined: Thu Feb 23, 06 11:23 pm
Location: North Pole

Postby Dae » Mon Aug 21, 06 6:52 pm

Just a small hint: Ion Storm doesn't exist.
User avatar
Dae
Alpha
 
Posts: 12086
Joined: Sat Sep 06, 03 4:40 pm

Postby Imperial » Mon Aug 21, 06 6:54 pm

Got confused, meant eidos. :oops:
I sell donuts, if you want my donuts, give me a call.

DONUTS
User avatar
Imperial
Forum Hero
 
Posts: 2450
Joined: Thu Feb 23, 06 11:23 pm
Location: North Pole

Postby DarkKnight » Mon Aug 21, 06 6:56 pm

Well, my server appears to be running quite well... at least for the last 7 hours.

<3 iptables
Image
I'm a lover, that's why I do this posting.
I don't need the forum,
I do it to save you ignorant bastards from your self.
User avatar
DarkKnight
Forum Super Hero
 
Posts: 4064
Joined: Wed Dec 10, 03 10:01 am
Location: Under the bridge.

Postby Imperial » Mon Aug 21, 06 6:59 pm

I take it that there is no more probs then. Or did you al just download Dae's Mutator?
I sell donuts, if you want my donuts, give me a call.

DONUTS
User avatar
Imperial
Forum Hero
 
Posts: 2450
Joined: Thu Feb 23, 06 11:23 pm
Location: North Pole

Postby Dae » Mon Aug 21, 06 7:00 pm

I haven't made it yet. Stuck somewhere :o
User avatar
Dae
Alpha
 
Posts: 12086
Joined: Sat Sep 06, 03 4:40 pm

Postby Imperial » Mon Aug 21, 06 7:04 pm

o.o

Well then he must have ended his atack on 0aug servers, won't be the last of it though I doubht.
I sell donuts, if you want my donuts, give me a call.

DONUTS
User avatar
Imperial
Forum Hero
 
Posts: 2450
Joined: Thu Feb 23, 06 11:23 pm
Location: North Pole

Postby DarkKnight » Mon Aug 21, 06 7:13 pm

Imperial wrote:o.o

Well then he must have ended his atack on 0aug servers, won't be the last of it though I doubht.


Even if Deja does attack my server, it will get him nowhere.

:wink:
Image
I'm a lover, that's why I do this posting.
I don't need the forum,
I do it to save you ignorant bastards from your self.
User avatar
DarkKnight
Forum Super Hero
 
Posts: 4064
Joined: Wed Dec 10, 03 10:01 am
Location: Under the bridge.

Postby Spiderbot01 » Mon Aug 21, 06 7:28 pm

DarkKnight wrote:
Imperial wrote:o.o

Well then he must have ended his atack on 0aug servers, won't be the last of it though I doubht.


Even if Deja does attack my server, it will get him nowhere.

:wink:


You can't outsmart an aussie...
<center>------</center><center>
Image</center>
<center>Image</center><
User avatar
Spiderbot01
Alpha
 
Posts: 5363
Joined: Wed Nov 30, 05 8:24 pm
Location: LONDON!!!!

Postby DarkKnight » Mon Aug 21, 06 7:45 pm

Spiderf[A]g01 wrote:
DarkKnight wrote:
Imperial wrote:o.o

Well then he must have ended his atack on 0aug servers, won't be the last of it though I doubht.


Even if Deja does attack my server, it will get him nowhere.

:wink:


You can't outsmart an aussie...


Or iptables, for that matter.
(His entire IP pool is blocked at the kernel level, the packet never reaches my server. :) )
Image
I'm a lover, that's why I do this posting.
I don't need the forum,
I do it to save you ignorant bastards from your self.
User avatar
DarkKnight
Forum Super Hero
 
Posts: 4064
Joined: Wed Dec 10, 03 10:01 am
Location: Under the bridge.

Postby MainMan » Mon Aug 21, 06 7:46 pm

DarkKnight wrote:(His entire IP pool is blocked at the kernel level, the packet never reaches my server. :) )

That's phat. Is it possible to do that on a windows-hosted server?
<center>ty m7
</center>
User avatar
MainMan
<i>Tru' Playa' Fer Defs</i>
 
Posts: 4655
Joined: Sun Jun 05, 05 7:38 am
Location: London, UK

Postby DarkKnight » Mon Aug 21, 06 8:28 pm

~MainMan~ wrote:
DarkKnight wrote:(His entire IP pool is blocked at the kernel level, the packet never reaches my server. :) )

That's phat. Is it possible to do that on a windows-hosted server?


Not without a 3rd party app, I belive. :?

Just checked, your best (and most effective) way for a Windows based server is a software firewall, Windows has no inbuilt functions that would suffice. =/

For Linux hosters;
Code: Select all
iptables -A INPUT -s 193.95.228.0/24 -j DROP

Run as root, or with sudo. It silently drops all packets from that IP.
(All distro's should have iptables, and you could add a port if you didn't want to ban him totally..)
Image
I'm a lover, that's why I do this posting.
I don't need the forum,
I do it to save you ignorant bastards from your self.
User avatar
DarkKnight
Forum Super Hero
 
Posts: 4064
Joined: Wed Dec 10, 03 10:01 am
Location: Under the bridge.

Postby clyzm » Mon Aug 21, 06 8:30 pm

No wonder all the latest 24/7 game servers are run on Linux.
Image
User avatar
clyzm
Forum Master God
 
Posts: 16023
Joined: Sun Nov 28, 04 2:48 am
Location: Chiraq

Postby MainMan » Mon Aug 21, 06 8:31 pm

DarkKnight wrote:
~MainMan~ wrote:
DarkKnight wrote:(His entire IP pool is blocked at the kernel level, the packet never reaches my server. :) )

That's phat. Is it possible to do that on a windows-hosted server?


Not without a 3rd party app, I belive. :?

Just checked, your best (and most effective) way for a Windows based server is a software firewall, Windows has no inbuilt functions that would suffice. =/

For Linux hosters;
Code: Select all
iptables -A INPUT -s 193.95.228.0/24 -j DROP

Run as root, or with sudo. It silently drops all packets from that IP.
(All distro's should have iptables, and you could add a port if you didn't want to ban him totally..)

What about a hardware router firewall?
<center>ty m7
</center>
User avatar
MainMan
<i>Tru' Playa' Fer Defs</i>
 
Posts: 4655
Joined: Sun Jun 05, 05 7:38 am
Location: London, UK

Postby kBo » Mon Aug 21, 06 8:42 pm

DarkKnight wrote:
~MainMan~ wrote:
DarkKnight wrote:(His entire IP pool is blocked at the kernel level, the packet never reaches my server. :) )

That's phat. Is it possible to do that on a windows-hosted server?


Not without a 3rd party app, I belive. :?

Just checked, your best (and most effective) way for a Windows based server is a software firewall, Windows has no inbuilt functions that would suffice. =/

For Linux hosters;
Code: Select all
iptables -A INPUT -s 193.95.228.0/24 -j DROP

Run as root, or with sudo. It silently drops all packets from that IP.
(All distro's should have iptables, and you could add a port if you didn't want to ban him totally..)


WinPCap does the trick:
http://winpcap.mirror.ethereal.com/301a ... _tut5.html

If you want to patch the game, I recommend setting up a server on your PC, attaching to it with OllyDBG or IDA and setting breakpoints on malloc() calls. You might be able to learn something that way.
"Phreaking doesn't exist. It's an abstract concept that is blindly supported by the collective consciousness of a flakey subculture. You saw nothing."
User avatar
kBo
Master
 
Posts: 1698
Joined: Wed Dec 24, 03 2:52 pm
Location: North Carolina, USA

Postby DarkKnight » Mon Aug 21, 06 11:16 pm

~MainMan~ wrote:What about a hardware router firewall?


Goes without saying, if you can block ip's with your router, do it. :)

kBo wrote:WinPCap does the trick:
http://winpcap.mirror.ethereal.com/301a ... _tut5.html

If you want to patch the game, I recommend setting up a server on your PC, attaching to it with OllyDBG or IDA and setting breakpoints on malloc() calls. You might be able to learn something that way


The bug is quite well explained.

All it would need for a fix is a few extra tests/conversions before it actually calls malloc(), the trick being, how do you apply it?
(That question is more broad then the simple actions.)
Image
I'm a lover, that's why I do this posting.
I don't need the forum,
I do it to save you ignorant bastards from your self.
User avatar
DarkKnight
Forum Super Hero
 
Posts: 4064
Joined: Wed Dec 10, 03 10:01 am
Location: Under the bridge.

Postby MainMan » Mon Aug 21, 06 11:18 pm

DarkKnight wrote:Goes without saying, if you can block ip's with your router, do it. :)

Yup I can 8)

What's the IP I need to block?
<center>ty m7
</center>
User avatar
MainMan
<i>Tru' Playa' Fer Defs</i>
 
Posts: 4655
Joined: Sun Jun 05, 05 7:38 am
Location: London, UK

Postby Allan » Mon Aug 21, 06 11:35 pm

193.95.228.0, me thinks, based on the command for the Linux way of protecting it.
*checks if my router can block IP's...*
User avatar
Allan
Alpha
 
Posts: 4545
Joined: Wed Dec 21, 05 1:41 pm
Location: Northamptonshire, England.

Postby rob » Mon Aug 21, 06 11:43 pm

Image
rob
Regular
 
Posts: 344
Joined: Sun Jun 05, 05 4:44 pm

Postby DarkKnight » Mon Aug 21, 06 11:44 pm

Allan wrote:193.95.228.0, me thinks, based on the command for the Linux way of protecting it.
*checks if my router can block IP's...*


The command blocks 193.95.228.0 - 193.95.228.255 :)

Edit: Also, make sure you check your logs before you restart your server, if he starts using zombies, or other people start using it, you can just repeat, repeat, repeat.
Image
I'm a lover, that's why I do this posting.
I don't need the forum,
I do it to save you ignorant bastards from your self.
User avatar
DarkKnight
Forum Super Hero
 
Posts: 4064
Joined: Wed Dec 10, 03 10:01 am
Location: Under the bridge.

PreviousNext

Return to Multiplayer

Who is online

Users browsing this forum: No registered users and 9 guests
cron