Raised This Month: $12 Target: $400
 3% 

[CSGO] Server Crasher Exploit Patch [3/20/2020]


Post New Thread Reply   
 
Thread Tools Display Modes
xm3kilo
Member
Join Date: Jan 2018
Old 03-21-2020 , 09:48   Re: [CSGO] Server Crasher Exploit Patch [3/20/2020]
Reply With Quote #11

You've been hard a work lately, keep doing Gaben's work
xm3kilo is offline
Franc1sco
Veteran Member
Join Date: Oct 2010
Location: Spain (Madrid)
Old 03-21-2020 , 13:37   Re: [CSGO] Server Crasher Exploit Patch [3/20/2020]
Reply With Quote #12

Quote:
Originally Posted by backwards View Post
*NOTE* This hasn't been extensively tested yet and may show unknown net messages in your server console when an attacker trys to exploit it.
This?
Code:
Netchannel: unknown net message (76) from {hidden attacker ip for privacity rules}:27005.
unknown message
 Dumping messages for channel p0s1t1v3({hidden attacker ip for privacity rules}:27005) 0x0x182fc170
Header bits 96, flags == 161
0 messages
Raw
PKT  >>  k.................`..... 6b0c0000 890e0000 a1f2a785 e8ffffff 100060d2 9a9afaff   
PKT  >>  [email protected] ff1f00a2 88f87f68 80fb4fc0 40108008 d09098c6 00001051   
PKT  >>  ...@........ `@X....CA|. 03000040 02000000 00000000 20604058 ac01b104 43417c80   
PKT  >>  a}.                      617df8                                                  
Netchannel: unknown net message (76) from {hidden attacker ip for privacity rules}:27005.
unknown message
 Dumping messages for channel p0s1t1v3({hidden attacker ip for privacity rules}:27005) 0x0x182fc170
Header bits 96, flags == 161
0 messages
Raw
PKT  >>  k.................`..... 6b0c0000 890e0000 a1f2a785 e8ffffff 100060d2 9a9afaff   
PKT  >>  [email protected] ff1f00a2 88f87f68 80fb4fc0 40108008 d09098c6 00001051   
PKT  >>  ...@........ `@X....CA|. 03000040 02000000 00000000 20604058 ac01b104 43417c80   
PKT  >>  a}.                      617df8                                                  
Netchannel: unknown net message (76) from {hidden attacker ip for privacity rules}:27005.
unknown message
 Dumping messages for channel p0s1t1v3({hidden attacker ip for privacity rules}:27005) 0x0x182fc170
Header bits 96, flags == 161
0 messages
Raw
PKT  >>  l........Qm.......`..... 6c0c0000 890e0000 a1516d85 e8ffffff 100060d2 9a9afaff   
PKT  >>  [email protected] ff1f00a2 88f87f68 80fb4fc0 40108008 d090a8c6 00003051   
PKT  >>  ...@........ `@X....C... 03000040 02000000 00000000 20604058 ac01f917 43e97f80   
PKT  >>  9..                      398df8                                                  
Netchannel: unknown net message (76) from {hidden attacker ip for privacity rules}:27005.
unknown message
 Dumping messages for channel p0s1t1v3({hidden attacker ip for privacity rules}:27005) 0x0x182fc170
Header bits 96, flags == 161
0 messages
Raw
PKT  >>  m........l........`..... 6d0c0000 8b0e0000 a16c9f85 e8ffffff 100060d2 9a9afaff   
PKT  >>  [email protected] ff1f00a2 88f87f68 80fb4fc0 40108008 d090b8c6 00005051   
PKT  >>  ...@........ `@h....C... 03000040 02000000 00000000 20604068 ac01c105 43b18480   
PKT  >>  ...                      898ef8                                                  
Netchannel: unknown net message (76) from {hidden attacker ip for privacity rules}:27005.
unknown message
 Dumping messages for channel p0s1t1v3({hidden attacker ip for privacity rules}:27005) 0x0x182fc170
Header bits 104, flags == 177
0 messages
Raw
PKT  >>  o......... ........`.... 6f0c0000 8f0e0000 b1112084 01e8ffff ff100060 d29a9afa   
PKT  >>  [email protected] ffff1f00 a288f87f 6880fb4f d0401080 10d0a0c8 c6000070   
PKT  >>  Q...@.......... [email protected].. 51030000 40020000 00000000 00000020 684088ac 0151b70e   
PKT  >>  @...q..                  40190e81 71aef8                                         
Netchannel: unknown net message (76) from {hidden attacker ip for privacity rules}:27005.
unknown message
 Dumping messages for channel p0s1t1v3({hidden attacker ip for privacity rules}:27005) 0x0x182fc170
Header bits 96, flags == 161
0 messages
Raw
PKT  >>  p......... .......`..... 700c0000 8f0e0000 a18c2084 e8ffffff 100060d2 9a9afaff   
PKT  >>  [email protected] ff1f00a2 88f87f68 80fb4fc0 40108008 d090e8c6 0000b051   
PKT  >>  ...@........ `@...a.B... 03000040 02000000 00000000 20604088 ac01619e 42a90d81   
PKT  >>  y..                      79f4f8                                                  
Netchannel: unknown net message (76) from {hidden attacker ip for privacity rules}:27005.
unknown message
 Dumping messages for channel p0s1t1v3({hidden attacker ip for privacity rules}:27005) 0x0x182fc170
Header bits 96, flags == 161
0 messages
Raw
PKT  >>  l........Qm.......`..... 6c0c0000 890e0000 a1516d85 e8ffffff 100060d2 9a9afaff   
PKT  >>  [email protected] ff1f00a2 88f87f68 80fb4fc0 40108008 d090a8c6 00003051   
PKT  >>  ...@........ `@X....C... 03000040 02000000 00000000 20604058 ac01f917 43e97f80   
PKT  >>  9..                      398df8                                                  
Netchannel: unknown net message (76) from {hidden attacker ip for privacity rules}:27005.
unknown message
 Dumping messages for channel p0s1t1v3({hidden attacker ip for privacity rules}:27005) 0x0x182fc170
Header bits 96, flags == 161
0 messages
Raw
PKT  >>  m........l........`..... 6d0c0000 8b0e0000 a16c9f85 e8ffffff 100060d2 9a9afaff   
PKT  >>  [email protected] ff1f00a2 88f87f68 80fb4fc0 40108008 d090b8c6 00005051   
PKT  >>  ...@........ `@h....C... 03000040 02000000 00000000 20604068 ac01c105 43b18480   
PKT  >>  ...                      898ef8                                                  
Netchannel: unknown net message (76) from {hidden attacker ip for privacity rules}:27005.
unknown message
 Dumping messages for channel p0s1t1v3({hidden attacker ip for privacity rules}:27005) 0x0x182fc170
Header bits 104, flags == 177
0 messages
Raw
PKT  >>  o......... ........`.... 6f0c0000 8f0e0000 b1112084 01e8ffff ff100060 d29a9afa   
PKT  >>  [email protected] ffff1f00 a288f87f 6880fb4f d0401080 10d0a0c8 c6000070   
PKT  >>  Q...@.......... [email protected].. 51030000 40020000 00000000 00000020 684088ac 0151b70e   
PKT  >>  @...q..                  40190e81 71aef8                                         
Netchannel: unknown net message (76) from {hidden attacker ip for privacity rules}:27005.
unknown message
 Dumping messages for channel p0s1t1v3({hidden attacker ip for privacity rules}:27005) 0x0x182fc170
Header bits 96, flags == 161
0 messages
Raw
PKT  >>  p......... .......`..... 700c0000 8f0e0000 a18c2084 e8ffffff 100060d2 9a9afaff   
PKT  >>  [email protected] ff1f00a2 88f87f68 80fb4fc0 40108008 d090e8c6 0000b051   
PKT  >>  ...@........ `@...a.B... 03000040 02000000 00000000 20604088 ac01619e 42a90d81   
PKT  >>  y..                      79f4f8  

Netchannel: failed reading message 8 from {hidden attacker ip for privacity rules}:27005.
Netchannel: failed reading message 8 from {hidden attacker ip for privacity rules}:27005.
Netchannel: failed reading message 8 from {hidden attacker ip for privacity rules}:27005.
Netchannel: failed reading message 8 from {hidden attacker ip for privacity rules}:27005.
Netchannel: failed reading message 8 from {hidden attacker ip for privacity rules}:27005.
Netchannel: failed reading message 8 from {hidden attacker ip for privacity rules}:27005.
Netchannel: failed reading message 8 from {hidden attacker ip for privacity rules}:27005.
Netchannel: failed reading message 8 from {hidden attacker ip for privacity rules}:27005.
Netchannel: failed reading message 8 from {hidden attacker ip for privacity rules}:27005.
Netchannel: failed reading message 8 from {hidden attacker ip for privacity rules}:27005.
One of the server where i help started to crash but when I did load your plugin then the crashes stopped. Thanks for the exploit patch, you are a life server saver


After that he tried to lag the server with "rcon bad password" attacks with different ips but if you dont have sv_rcon_banpenalty to 0 then it dont produce lag. (so you should set it to a value > than 0).
__________________
Veteran Coder -> Activity channel
Coding on CS2 and taking paid and free jobs.

Contact: Steam, Telegram or discord ( franug ).

You like my work? +Rep in my steam profile comments or donate.


Last edited by Franc1sco; 03-21-2020 at 14:02.
Franc1sco is offline
Send a message via MSN to Franc1sco
amx22
Junior Member
Join Date: Mar 2020
Old 03-21-2020 , 16:16   Re: [CSGO] Server Crasher Exploit Patch [3/20/2020]
Reply With Quote #13

exactly how to run exploit?
amx22 is offline
Silvers
SourceMod Plugin Approver
Join Date: Aug 2010
Location: SpaceX
Old 03-21-2020 , 16:34   Re: [CSGO] Server Crasher Exploit Patch [3/20/2020]
Reply With Quote #14

Quote:
Originally Posted by amx22 View Post
exactly how to run exploit?
No.
__________________
Silvers is offline
amx22
Junior Member
Join Date: Mar 2020
Old 03-21-2020 , 17:13   Re: [CSGO] Server Crasher Exploit Patch [3/20/2020]
Reply With Quote #15

Quote:
Originally Posted by Silvers View Post
No.
no?
amx22 is offline
Spirit532
Junior Member
Join Date: Dec 2015
Location: Belarus
Old 03-21-2020 , 17:22   Re: [CSGO] Server Crasher Exploit Patch [3/20/2020]
Reply With Quote #16

Fun side effect: Most cheats use crappy network breaking code(e.g. "fakelag") that triggers this message.
It's a good idea to log these and ban users that generate these messages en masse(4-10 at once), rather than patching the exploit. At least until an actual patch is pushed into the binaries.

Last edited by Spirit532; 03-21-2020 at 17:26.
Spirit532 is offline
amx22
Junior Member
Join Date: Mar 2020
Old 03-21-2020 , 18:09   Re: [CSGO] Server Crasher Exploit Patch [3/20/2020]
Reply With Quote #17

Quote:
Originally Posted by Spirit532 View Post
Fun side effect: Most cheats use crappy network breaking code(e.g. "fakelag") that triggers this message.
It's a good idea to log these and ban users that generate these messages en masse(4-10 at once), rather than patching the exploit. At least until an actual patch is pushed into the binaries.
yup,a mass ban will come soon let those who use this program say goodbye to their accounts
gaben is coming
amx22 is offline
Franc1sco
Veteran Member
Join Date: Oct 2010
Location: Spain (Madrid)
Old 03-21-2020 , 18:32   Re: [CSGO] Server Crasher Exploit Patch [3/20/2020]
Reply With Quote #18

A question, the logs that I posted here say the attacker, right? Or can be produced in another player? because i have the same logs for someone that usually play in the server but not sure if he really attacked.
__________________
Veteran Coder -> Activity channel
Coding on CS2 and taking paid and free jobs.

Contact: Steam, Telegram or discord ( franug ).

You like my work? +Rep in my steam profile comments or donate.

Franc1sco is offline
Send a message via MSN to Franc1sco
Spirit532
Junior Member
Join Date: Dec 2015
Location: Belarus
Old 03-21-2020 , 18:35   Re: [CSGO] Server Crasher Exploit Patch [3/20/2020]
Reply With Quote #19

Quote:
Originally Posted by Franc1sco View Post
A question, the logs that I posted here say the attacker, right? Or can be produced in another player? because i have the same logs for someone that usually play in the server but not sure if he really attacked.
I've seen it happen to regulars before, but when someone is cheating it creates a lot more messages, and often. With regulars it happens very rarely, and the message groups are tiny, so probably just lag.
Spirit532 is offline
NickFox007
New Member
Join Date: Mar 2020
Old 03-22-2020 , 08:37   Re: [CSGO] Server Crasher Exploit Patch [3/20/2020]
Reply With Quote #20

L 03/22/2020 - 14:44:25: [SM] Exception reported: Unnamed Signature Incorrect (2).
L 03/22/2020 - 14:44:25: [SM] Blaming: ExploitFix_3_20_2020.smx
L 03/22/2020 - 14:44:25: [SM] Call stack trace:
L 03/22/2020 - 14:44:25: [SM] [0] SetFailState
L 03/22/2020 - 14:44:25: [SM] [1] Line 44, /home/forums/content/files/2/4/6/0/2/9/180250.attach::OnPluginStart
[SM] Plugin ExploitFix_3_20_2020.smx failed to load: Error detected in plugin startup (see error logs)

Has somebody this error too?
NickFox007 is offline
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 09:03.


Powered by vBulletin®
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
Theme made by Freecode