Raised This Month: $32 Target: $400
 8% 

New RCON exploit


Post New Thread Reply   
 
Thread Tools Display Modes
NoS
Senior Member
Join Date: Nov 2006
Old 12-08-2009 , 12:17   Re: New RCON exploit
Reply With Quote #41

Quote:
Originally Posted by Isias View Post
There was a small engine update for OB based games (Dod:S / TF2), that seems to adress this problem.

# Added checks to prevent transferring .smx, .gcf, and .sys files between client/server
# Fixed upload/download exploits with spaces in the file extension or a path separator at the beginning of the requested file (as reported on the HLDS mailing lists)
You would think they would fix it for CS:S as well.
NoS is offline
zeroibis
Veteran Member
Join Date: Jun 2007
Old 12-10-2009 , 17:01   Re: New RCON exploit
Reply With Quote #42

Valve fix something for cs:s... NEVER!
__________________
zeroibis is offline
GarfieldH
Junior Member
Join Date: Dec 2009
Old 12-15-2009 , 02:35   Re: New RCON exploit
Reply With Quote #43

Any fix? this kid is starting to annoy us, he tries to say he is a pro hacker then takes down the server with his script... which is annoying. We know he aint a pro, just a scammer/script kiddy by the looks of his history.

Garf
Steamgamers.com
GarfieldH is offline
Isias
Senior Member
Join Date: Apr 2006
Old 12-15-2009 , 04:18   Re: New RCON exploit
Reply With Quote #44

Try sv_allowupload 0 in your server.cfg
Isias is offline
KaiserJeeĈ
Member
Join Date: Dec 2009
Old 12-15-2009 , 05:58   Re: New RCON exploit
Reply With Quote #45

We also had these annoying kids during this to us... well, no solution found.. removed mani for good.. then they started rcon hack us.. spamming the console.. KAC and rcon_locker installed, fixed the problem

I think sourcemod is great, but damn it was so much easier to run a nice server with mani... I miss cron_Jobs so BAD!

Anyways back to topic, the only fix you can do is delete mani, and wait for them to fix it. Mani is attacked all over at these days
KaiserJeeĈ is offline
Isias
Senior Member
Join Date: Apr 2006
Old 12-15-2009 , 09:02   Re: New RCON exploit
Reply With Quote #46

Quote:
He uses a hacked .dll and uploads files like sprays. If you want to prevent this either use the file exploit plugin by devicenull, or sv_allowupload 0. Both will do the job.

Exploit works in both mani and sourcemod. He doesn't know your rcon password, he is changing it.
It's an engine exploit. Nothing to do with Mani Admin Plugin. About cronjob, there's a Sourcemod Plugin for cronjobs, just give it a try.
Isias is offline
KaiserJeeĈ
Member
Join Date: Dec 2009
Old 01-03-2010 , 05:42   Re: New RCON exploit
Reply With Quote #47

I wanned it to run dd2 from 8-14 an from 09-06

Can't make that work

anyways.. this sv_allowupload is that testet? only thing for me that went wron was people messin with my clients.txt
KaiserJeeĈ is offline
DIFF
Member
Join Date: Aug 2009
Old 01-07-2010 , 14:37   Re: New RCON exploit
Reply With Quote #48

hide this "exploit" please...
DIFF is offline
Kigen
BANNED
Join Date: Feb 2008
Old 01-07-2010 , 19:43   Re: New RCON exploit
Reply With Quote #49

http://forums.alliedmods.net/showthread.php?t=109453

'nuff said.

I also recommend running KAC.
Kigen is offline
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 21:02.


Powered by vBulletin®
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
Theme made by Freecode