Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Andrius Pirus
So i think found out the hacker's who sent those bots in my server ip and steamid: from logfile: The Spamminator connected, address 65.13.45.43:50347 The Spamminator STEAM USERID validated The Spamminator joined team Spectator Bot01 connected, address 0.0.0.0:0 Bot01 entered the game Bot01 joined

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Andrius Pirus
Oh thanks Neph, but where is a vdf file? Quoting Nephyrin Zey : (repost since list partially (?) rejected message with attachment instead of link) sv_benchmark_force_start, when typed in the console by any player, crashes a server. Yay. This is a plugin:

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Cc2iscooL
Looks like it works great. Just tested it on a server and was unable to use the command. Props to you, good sir! Valve should be looking into a pre-release update for the server binaries to fix this ASAP. Nephyrin Zey wrote: (repost since list partially (?) rejected message with attachment

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Cc2iscooL
Add the following to a VDF named NephCVUH.vdf Plugin { file ../orangebox/tf/addons/NephCVUH } Andrius Pirus wrote: Oh thanks Neph, but where is a vdf file? Quoting Nephyrin Zey : (repost since list partially (?) rejected message with attachment instead of link)

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Nephyrin Zey
Updated the .zip to include a .vdf. Whoops. On Mon, Apr 28, 2008 at 11:09 PM, Cc2iscooL [EMAIL PROTECTED] wrote: Looks like it works great. Just tested it on a server and was unable to use the command. Props to you, good sir! Valve should be looking into a pre-release update for the

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Nephyrin Zey
(That's assuming the .dll/so is in orangebox/tf/addons, if you followed my instructions (orangebox/bin) use the .vdf in the zip) On Mon, Apr 28, 2008 at 11:11 PM, Cc2iscooL [EMAIL PROTECTED] wrote: Add the following to a VDF named NephCVUH.vdf Plugin { file

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread voogru
Do you run the tf2.gign.lv servers by any chance? - voogru. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Andrius Pirus Sent: Tuesday, April 29, 2008 2:03 AM To: Half-Life dedicated Win32 server mailing list Subject: Re: [hlds] New server exploit (not

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Andrius Pirus
no. and i think we shouldnt make offtopic :) Quoting voogru : Do you run the tf2.gign.lv servers by any chance? - voogru. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Andrius Pirus Sent: Tuesday, April 29, 2008 2:03 AM To: Half-Life dedicated

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread voogru
What server do you run? I'm quite interested. - voogru. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Andrius Pirus Sent: Tuesday, April 29, 2008 2:24 AM To: Half-Life dedicated Win32 server mailing list Subject: Re: [hlds] New server exploit (not

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread DontWannaName!
Ok I installed it but I dont really now why. I know it blocks a certain exploit so its good that all server ops have it im guessing. I have Sourcemod but I doubt anyone is going to write it in Sourcepawn. Maybe Valve will fix it by tomorrow

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread voogru
Hi Andrius Pirus, I am going to call you out on this, the IP address you posted on this mailing list is mine. I went on a rampage of using this exploit on cracked servers, I joined suspect servers and looked for cracked steamids in the status. The only way you could have got my IP address is by

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Nephyrin Zey
It's like three lines in sourcepawn. The exploit it blocks is typing sv_benchmark_force_start in console crashes anyone's server, so anyone could use it on you if you don't use ncp on that command. - Neph On Mon, Apr 28, 2008 at 11:37 PM, DontWannaName! [EMAIL PROTECTED] wrote: Ok I installed

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Tony Paloma
So, I was able to make the IPSec thing work to allow certain IPs also. You just set up a separate pass rule for the IPs you want to let in. Works fine. I used it to block all RCON except for those sent from HLStatsX and myself. This line blocks all access to TCP port 27015: ipseccmd.exe -w REG -p

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Saint K.
Neph, does this issue exist on Linux as well if you know? Cheers, Saint K. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Nephyrin Zey Sent: Tuesday, April 29, 2008 8:16 AM To: Half-Life dedicated Win32 server mailing list Subject: Re: [hlds]

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Tony Paloma
Sick burnnn -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of voogru Sent: Monday, April 28, 2008 11:41 PM To: 'Half-Life dedicated Win32 server mailing list' Subject: Re: [hlds] New server exploit (not nuking) Hi Andrius Pirus, I am going to call you out

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Nephyrin Zey
While the iptables thing I posted (1 rcon/second) works fine, if you instead want to do a whitelist like this in linux as well: iptables -A INPUT -p tcp --dport 27015 --source 123.123.12.3 -j ACCEPT iptables -A INPUT -p tcp --dport 27015 --source 115.53.3.22 -j ACCEPT [... repeat for as many IPs

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Cc2iscooL
I've tested it on both OS's... It works on both. (Exploit and fix.) Saint K. wrote: Neph, does this issue exist on Linux as well if you know? Cheers, Saint K. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Nephyrin Zey Sent: Tuesday, April 29,

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Nephyrin Zey
Another update, because i love iptables so much, you might want to do --hashlimit-burst 3 instead of 1, so that 'bursts' of three packets can occur. This allows the rcon login packet + a command packet to get through before triggering the filter, so your first rcon command isn't lagged a second

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Saint K.
VALVe, Any hint on if this can be patched with the update tonight? Cheers, -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Cc2iscooL Sent: Tuesday, April 29, 2008 8:59 AM To: Half-Life dedicated Win32 server mailing list Subject: Re: [hlds]

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Tony Paloma
Valve is sleeping. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Saint K. Sent: Tuesday, April 29, 2008 12:04 AM To: 'Half-Life dedicated Win32 server mailing list' Subject: Re: [hlds] sv_benchmark_force_start exploit info and *fix* VALVe, Any hint on

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Tony Paloma
Make a plugin for that then too :P -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Nephyrin Zey Sent: Tuesday, April 29, 2008 12:15 AM To: Half-Life dedicated Win32 server mailing list Subject: Re: [hlds] sv_benchmark_force_start exploit info and *fix*

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread P. Bhandal
Valve is busy fixing important things like the custom tab, they have no time for extremely destructive security holes! On Tue, Apr 29, 2008 at 12:16 AM, Tony Paloma [EMAIL PROTECTED] wrote: Valve is sleeping. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Matt Woodrow
For those of you more SourceMod inclined, I have made an equivalent plugin. http://forums.alliedmods.net/showthread.php?p=618453 DontWannaName! wrote: Ok I installed it but I dont really now why. I know it blocks a certain exploit so its good that all server ops have it im guessing. I have

Re: [hlds] sv_benchmark_force_start exploit info and *fix*

2008-04-29 Thread Andreas Grimm
Yes, and remove the custom tab ! -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Saint K. Sent: Tuesday, April 29, 2008 9:04 AM To: 'Half-Life dedicated Win32 server mailing list' Subject: Re: [hlds] sv_benchmark_force_start exploit info and *fix* VALVe,

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Nephyrin Zey
Hey, i'm sending another email! How about it. I just started using this rule as well: iptables -A INPUT -p tcp --syn --dport 27015 -m connlimit --connlimit-above 3 -j REJECT to limit myself to 3 (adjust to suit your needs) concurrent TCP connections from any given IP to the server port. Why

[hlds] Pirated TF2 Servers

2008-04-29 Thread Nephyrin Zey
Seriously voogru, lets not get off topic. Here, I moved it to its own there where it's on topic: People too cheap to pay developers $30 to play one of the best games of the genre. Discuss. On Mon, Apr 28, 2008 at 11:24 PM, Andrius Pirus [EMAIL PROTECTED] wrote: no. and i think we shouldnt make

Re: [hlds] Pirated TF2 Servers

2008-04-29 Thread Cc2iscooL
It was $20 last weekend. :) Nephyrin Zey wrote: Seriously voogru, lets not get off topic. Here, I moved it to its own there where it's on topic: People too cheap to pay developers $30 to play one of the best games of the genre. Discuss. On Mon, Apr 28, 2008 at 11:24 PM, Andrius Pirus

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Andrew A
yeah thanks for making this info public :/ my tf2 servers are getting hammered , maybe there could be an invite only list for these sort of topics On Tue, Apr 29, 2008 at 4:50 PM, Tony Paloma [EMAIL PROTECTED] wrote: Sick burnnn -Original Message- From: [EMAIL PROTECTED]

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Ferenc Kovacs
2008/4/29 Andrew A [EMAIL PROTECTED]: yeah thanks for making this info public :/ my tf2 servers are getting hammered , maybe there could be an invite only list for these sort of topics On Tue, Apr 29, 2008 at 4:50 PM, Tony Paloma [EMAIL PROTECTED] wrote: Sick burnnn

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread steve grout
yup.. mine are getting hammered also with the benchmark one.. although... thanks to this list and the people on it i have applied the fix from Neph.. Thanks Andrew A wrote: yeah thanks for making this info public :/ my tf2 servers are getting hammered , maybe there could be an invite only

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Nephyrin Zey
I already published a simple plugin to fix this. We made it public and resolved it :-P - Neph ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread 1nsane .
Yeah i've noticed this one a while ago. But it wasn't happening too often. Thanks for the fix anyways. On Tue, Apr 29, 2008 at 6:28 AM, Nephyrin Zey [EMAIL PROTECTED] wrote: I already published a simple plugin to fix this. We made it public and resolved it :-P - Neph

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Nephyrin Zey
On Tue, Apr 29, 2008 at 3:34 AM, Chad Austin [EMAIL PROTECTED] wrote: You should ask Valve to double your pay this week for working all night. That would be funny if it weren't so sad. -Neph two times zero Zey ___ To unsubscribe, edit your list

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread 1nsane .
Neph likes to work for free though... Don't ya Neph? *runs* On Tue, Apr 29, 2008 at 6:51 AM, Nephyrin Zey [EMAIL PROTECTED] wrote: On Tue, Apr 29, 2008 at 3:34 AM, Chad Austin [EMAIL PROTECTED] wrote: You should ask Valve to double your pay this week for working all night. That would be

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Kaspars
there is another command that crash the server and should be blocked - sv_soundscape_printdebuginfo Quoting Nephyrin Zey : I already published a simple plugin to fix this. We made it public and resolved it :-P - Neph ___ To unsubscribe, edit your

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Ronny Schedel
Does it affect only TF2 servers or all Source based games? there is another command that crash the server and should be blocked - sv_soundscape_printdebuginfo Quoting Nephyrin Zey : I already published a simple plugin to fix this. We made it public and resolved it :-P - Neph

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Kaspars
I have tested it only on TF2... if you are able to test it on other games, please share your results Quoting Ronny Schedel [EMAIL PROTECTED]: Does it affect only TF2 servers or all Source based games? there is another command that crash the server and should be blocked -

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread 1nsane .
It didn't seem to crash my server but you can use Neph's plugin to disable this one as well: ncp sv_soundscape_printdebuginfo should do the trick On Tue, Apr 29, 2008 at 8:21 AM, Kaspars [EMAIL PROTECTED] wrote: I have tested it only on TF2... if you are able to test it on other games, please

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Kaspars
I already did so... dunno about the command, maybe it works in some specific situations, however it crashed my server every time. The command is executed from client console when I haven't joined any team, the server output before crash is following: --- SERVER SOUNDSCAPES --- - 6:

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread 1nsane .
Yeah I got that output but it didn't crash my server. It's a Windows server though. Maybe that's why. On Tue, Apr 29, 2008 at 8:56 AM, Kaspars [EMAIL PROTECTED] wrote: I already did so... dunno about the command, maybe it works in some specific situations, however it crashed my server every

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread voogru
What's your server IP? - voogru. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Kaspars Sent: Tuesday, April 29, 2008 8:56 AM To: Half-Life dedicated Win32 server mailing list Subject: Re: [hlds] New server exploit (not nuking) I already did so...

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Kaspars
Does it matter? Let me guess, you're gonna crashtest my server and in case u succeed, you will welcome everyone to your server, right? It's not gonna happen, puppy! Quoting voogru [EMAIL PROTECTED]: What's your server IP? - voogru. -Original Message- From: [EMAIL PROTECTED]

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread voogru
Uhm, no. The reason why I am asking is I have not seen a .lv server that was not a cracked/pirated TF2 server. - voogru. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Kaspars Sent: Tuesday, April 29, 2008 10:02 AM To: Half-Life dedicated Win32 server

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Kaspars
Maybe thats because of people in this damn country doesn't give a sh** in supporting the developers and buying the game? Probably you just won't understand it anyway... Quoting voogru [EMAIL PROTECTED]: Uhm, no. The reason why I am asking is I have not seen a .lv server that was not a

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread voogru
Well, that sure makes me accusing you of being a pirate a lot easier. But I found your server anyway. It appears that this server, also has a member who happens to be named Kaspars. IP: 193.46.236.246:27015 http://www.game-monitor.com/tf2_GameServer/193.46.236.246:27015/GIGN_Team_Fo

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Kaspars
I'm not whining, I'm LMAO about you putting so much effort into crashing the server :) Quoting voogru [EMAIL PROTECTED]: Well, that sure makes me accusing you of being a pirate a lot easier. But I found your server anyway. It appears that this server, also has a member who happens to be

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Dustin Wyatt
An FYI for those who didnt know this (like me)... You have to install the Windows XP SP2 Support Tools to get ipseccmd on Win2k3 Server. http://support.microsoft.com/kb/838079/ -Dustin On Tue, Apr 29, 2008 at 1:45 AM, Tony Paloma [EMAIL PROTECTED] wrote: So, I was able to make the IPSec

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Robert Whelan
el oh el, pwnd! - Original Message From: voogru [EMAIL PROTECTED] To: Half-Life dedicated Win32 server mailing list hlds@list.valvesoftware.com Sent: Tuesday, April 29, 2008 9:41:10 AM Subject: Re: [hlds] New server exploit (not nuking) Well, that sure makes me accusing you of being a

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Kaspars
looks like you are really desperate my friend :D Apr 29 18:33:10 pussy sshd[28148]: Invalid user nfsnobody from 200.111.157.187 Apr 29 18:33:10 pussy sshd[28148]: Failed password for invalid user nfsnobody from 200.111.157.187 port 57265 ssh2 Apr 29 18:33:12 pussy sshd[28155]: Invalid user

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread voogru
Sorry mate, that's not me. I live in the United States, Not Chile. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Kaspars Sent: Tuesday, April 29, 2008 11:56 AM To: Half-Life dedicated Win32 server mailing list Subject: Re: [hlds] New server exploit

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Kaspars
Right... and if you somehow would get into my server and launch from me an attach somewhere else, you wouldn't live in Latvia... I wonder... what is your purpose here? To help general public with bugs/problems or to frame nosteam users? Your hacking toy arsenal tells about you enough...

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Thomas Morton
Oh quit fighting both of you -- From: Kaspars [EMAIL PROTECTED] Sent: Tuesday, April 29, 2008 5:19 PM To: Half-Life dedicated Win32 server mailing list hlds@list.valvesoftware.com Subject: Re: [hlds] New server exploit (not nuking) Right... and

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread bigboomer223
Seriously stop filling my inbox with this junk -Original Message- From: Thomas Morton [EMAIL PROTECTED] Date: Tue, 29 Apr 2008 17:28:16 To:Half-Life dedicated Win32 server mailing listhlds@list.valvesoftware.com Subject: Re: [hlds] New server exploit (not nuking) Oh quit fighting both

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread voogru
I'm not doing anything to your server, I gone through a few short lengths to see if you're a pirate and left it at that. I found it quite ironic you were whining about your poor server when you don't even pay for the damned game. I mean, valve can't win can they? Even the people who STEAL the

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Rodge Stumbaugh
Seriously, if this kaspar guy is stealing tf2, can't we remove him from this list? -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of [EMAIL PROTECTED] Sent: Tuesday, April 29, 2008 12:40 PM To: Half-Life dedicated Win32 server mailing list Subject: Re:

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Kaspars
Sorry to spam this list again, I just wanted to state that I own a legit copy of tf2 because I really think it is a great value for the money Quoting voogru [EMAIL PROTECTED]: I'm not doing anything to your server, I gone through a few short lengths to see if you're a pirate and left it

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Rodge Stumbaugh
And you also host non-steam patches for download,right? I have to tell you, I've seen voogru on this list a lot and he does help several people. You though, are a waste of space. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Kaspars Sent: Tuesday, April

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Dustin Wyatt
Another FYI, the Support Tools don't work on x64 so you can't use ipseccmd if you're on 2k3 Server x64. You can still set up a policy to block 27015 access, you just have to use the GUI to do it. Administrative Tools Local Security Policy Right click the task pane on the right and add a

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Mike Stiehm
It's early for me... So let me get this right You guys are blocking port 27015 and then you just move your server to a new port? Can't that person just attack the new server port? The tool is not bound to 27015 Date: Tue, 29 Apr 2008 13:18:20 -0500 From: [EMAIL PROTECTED] To:

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread steve grout
i know pretty much everyone here are now using some plugin or other to protect against the benchmark exploit and i know valve have said they are releasing along with the update a fix (i am assuming its for this) but i thought you might like to know that I missed one of our servers and just

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Tony Paloma
No, not to confuse you more but we're just blocking 27015 and leaving the server on 27015. This works fine because the block is for TCP port 27015. All game data and server queries happen on UDP port 27015 which remains unblocked. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Dustin Wyatt
No, we're blocking TCP on port 27015. The game functions fine with TCP blocked since it uses UDP for everything but rcon. Then you just specifically allow the IP's that you want to have rcon access. -Dustin On Tue, Apr 29, 2008 at 1:35 PM, Mike Stiehm [EMAIL PROTECTED] wrote: It's early for

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Cc2iscooL
Internet fight! Anyway, let Valve deal with it. I'm sure they're watching these lists. If they deem it's necessary to take action I'm sure they will. Let them deal with it and stop flooding the board with this back and forth stuff, please. Rodge Stumbaugh wrote: And you also host non-steam

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Mike Stiehm
Doh... That's right thanks guys :)Makes perfect sence Date: Tue, 29 Apr 2008 13:43:05 -0500 From: [EMAIL PROTECTED] To: hlds@list.valvesoftware.com Subject: Re: [hlds] Nuke Exploit Info and Prevention No, we're blocking TCP on port 27015. The game functions fine with TCP blocked since

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Don Williams
Can I get a link to fix that exploit? - Original Message - From: voogru [EMAIL PROTECTED] To: 'Half-Life dedicated Win32 server mailing list' hlds@list.valvesoftware.com Sent: 2008-04-29 12:01 PM Subject: Re: [hlds] New server exploit (not nuking) Sorry mate, that's not me. I live

Re: [hlds] ***DHSPAM*** Re: New server exploit (not nuking)

2008-04-29 Thread Darren
Seconded. Maybe I missed it in one of the emails but there's been a ton of activity today making it difficult to keep up. -Darren On Apr 29, 2008, at 1:07 PM, Don Williams wrote: Can I get a link to fix that exploit? - Original Message - From: voogru [EMAIL PROTECTED] To:

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Alfred Reynolds
Only RCON uses TCP, it looks like it chews too much CPU throwing away the garbage data, we are fixing that up. - Alfred -Original Message- From: [EMAIL PROTECTED] [mailto:hlds- [EMAIL PROTECTED] On Behalf Of Nephyrin Zey Sent: Monday, April 28, 2008 10:26 PM To: Half-Life dedicated

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Sebastian Hilding
STOP SPAM ME From: [EMAIL PROTECTED] To: hlds@list.valvesoftware.com Date: Tue, 29 Apr 2008 16:07:44 -0400 Subject: Re: [hlds] New server exploit (not nuking) Can I get a link to fix that exploit? - Original Message - From: voogru [EMAIL PROTECTED] To: 'Half-Life dedicated Win32

Re: [hlds] ***DHSPAM*** Re: New server exploit (not nuking)

2008-04-29 Thread Nephyrin Zey
http://www.nephyrin.net/NephCVUH_1.0.zip Its a linux/windows plugin that adds the ncp command, which flags any cvar you want as a cheat. So once you have the plugin loaded: ncp sv_benchmark_force_start will make that cvar cheat only, stopping players from using it in a non-cheat server. Make

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Ronny Schedel
Get some brain. STOP SPAM ME From: [EMAIL PROTECTED] To: hlds@list.valvesoftware.com Date: Tue, 29 Apr 2008 16:07:44 -0400 Subject: Re: [hlds] New server exploit (not nuking) Can I get a link to fix that exploit? - Original Message - From: voogru [EMAIL PROTECTED] To:

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Nephyrin Zey
Indeed, if you know the IPs you're going to be rconning from, it's easier to just use whitelisting and not hashlimits at all. You can also raise the hashlimit-burst setting from 1 to like 5, which which make rcon a lot more responsive from non-whitelisted ips. On Tue, Apr 29, 2008 at 1:41 PM,

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread 1nsane .
You are the one spamming us. We were never spamming you. On Tue, Apr 29, 2008 at 4:18 PM, Sebastian Hilding [EMAIL PROTECTED] wrote: STOP SPAM ME From: [EMAIL PROTECTED] To: hlds@list.valvesoftware.com Date: Tue, 29 Apr 2008 16:07:44 -0400 Subject: Re: [hlds] New server exploit (not

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Kaspars
Sorry, but I don't host any patches or cracked games... and I'm not anyway related to the torrent links previously posted. I do respect game developers and if people find cracked tf2 and patches somewhere, thats not my responsibility Quoting Rodge Stumbaugh [EMAIL PROTECTED]: And you also

[hlds] Looping racist sound loops

2008-04-29 Thread James McKenna
Normally I'd assume that my rcon was compromised, change it, and move on. I can't tell if this is related to the latest influx of exploits for source games, but basically my community members informed me today that: Twice today The Tempest servers were flooded with Bot players. Everyone would be

Re: [hlds] Looping racist sound loops

2008-04-29 Thread Nephyrin Zey
Are you sure it wasn't just the offending player spamming a sound over voicechat? It doesn't seem likely someone with rcon access would have to resort to using the force benchmark exploit to crash it.. - Neph On Tue, Apr 29, 2008 at 3:42 PM, James McKenna [EMAIL PROTECTED] wrote: Normally I'd

Re: [hlds] Looping racist sound loops

2008-04-29 Thread Tony Paloma
They were probably using voice chat. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of James McKenna Sent: Tuesday, April 29, 2008 3:43 PM To: hlds@list.valvesoftware.com Subject: [hlds] Looping racist sound loops Normally I'd assume that my rcon was

Re: [hlds] Looping racist sound loops

2008-04-29 Thread Darren
Tux the Penguin does not care about black people. On Apr 29, 2008, at 3:42 PM, James McKenna wrote: Normally I'd assume that my rcon was compromised, change it, and move on. I can't tell if this is related to the latest influx of exploits for source games, but basically my community

Re: [hlds] Nuke Exploit Info and Prevention

2008-04-29 Thread Mike Stiehm
Ya someone just took my 32 man server down.. Loyal players just rejoined and it filled back up. We have to assume that the questionable people are on this list and just a FYI for them I have a packet sniffer in place and will log your IP for further action I suggest that everyone else do the same.

[hlds] Team Fortress 2 Update Coming

2008-04-29 Thread Jason Ruymen
The long-waited required Team Fortress 2 update will be arriving soon. Should be live in about an hour from now. Jason ___ To unsubscribe, edit your list preferences, or view the list archives, please visit:

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread 1nsane .
*Something vibrates in my pocket* /me goes to Gmail. OOOH I'll be waiting :D (That's a phone by the way) On Tue, Apr 29, 2008 at 7:30 PM, Jason Ruymen [EMAIL PROTECTED] wrote: The long-waited required Team Fortress 2 update will be arriving soon. Should be live in about an hour from now.

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread James McKenna
Thanks for the update! On Tue, Apr 29, 2008 at 4:37 PM, James McKenna [EMAIL PROTECTED] wrote: Thanks for the update! On Tue, Apr 29, 2008 at 4:30 PM, Jason Ruymen [EMAIL PROTECTED] wrote: The long-waited required Team Fortress 2 update will be arriving soon. Should be live in about an

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread Andreas Grimm
soon ... I hope that I don't have to think in valve time? :D -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jason Ruymen Sent: Wednesday, April 30, 2008 1:30 AM To: hlds@list.valvesoftware.com; [EMAIL PROTECTED] Subject: [hlds] Team Fortress 2 Update

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread Nephyrin Zey
There's no Valve Time entry for about an hour from now! - Neph On Tue, Apr 29, 2008 at 4:30 PM, Jason Ruymen [EMAIL PROTECTED] wrote: The long-waited required Team Fortress 2 update will be arriving soon. Should be live in about an hour from now. Jason

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread DontWannaName!
Good to hear, rumors have started that we will have to wait again haha. Thanks for the heads up as always! :) - Original Message The long-waited required Team Fortress 2 update will be arriving soon. Should be live in about an hour from now. Jason

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread 1nsane .
If need be, I'm sure one of us will add one once/if Valve misses it ;). On Tue, Apr 29, 2008 at 7:40 PM, Nephyrin Zey [EMAIL PROTECTED] wrote: There's no Valve Time entry for about an hour from now! - Neph On Tue, Apr 29, 2008 at 4:30 PM, Jason Ruymen [EMAIL PROTECTED] wrote: The

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread Chad Austin
Is that in hours or business hours cause they are probably going to close soon anyways. Nephyrin Zey wrote: There's no Valve Time entry for about an hour from now! - Neph On Tue, Apr 29, 2008 at 4:30 PM, Jason Ruymen [EMAIL PROTECTED] wrote: The long-waited required Team Fortress 2

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Mike Stiehm
I plan to post the names and IPs of everyone found hacking my server with the Nuke attack so here we go. FrontHoe 171.65.103.231 ___ To unsubscribe, edit your list preferences, or view the list archives, please visit:

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Nephyrin Zey
It might be more productive to just setup your firewall ;-P On Tue, Apr 29, 2008 at 4:49 PM, Mike Stiehm [EMAIL PROTECTED] wrote: I plan to post the names and IPs of everyone found hacking my server with the Nuke attack so here we go. FrontHoe 171.65.103.231

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Tom Leighton
I was on a couple of servers earlier, nearly all of them crashed (Timed out). Surely VALVe can rollout a hotfix for the rcon bug and those two cheat commands pretty darn quick... Their game is getting owned by 2 commands that should be FCVAR_CHEAT and an rcon bug... Nephyrin Zey wrote: It

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Fudgstu
It has also affected our 2 servers today4 times I had to restart themkeeping fingers crossed the update will fix it. I ran Neph's plugin...seems to help except when it changes map. On Tue, Apr 29, 2008 at 7:13 PM, Tom Leighton [EMAIL PROTECTED] wrote: I was on a couple of servers

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Nephyrin Zey
Wait, people are still running this command on map change? Or are you talking about the Nuker? The plugin only fixes the benchmark thing.. -Neph On Tue, Apr 29, 2008 at 5:32 PM, Fudgstu [EMAIL PROTECTED] wrote: It has also affected our 2 servers today4 times I had to restart

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Mike Stiehm
Maybe put it in your autoexec.cfg ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds

Re: [hlds] New server exploit (not nuking)

2008-04-29 Thread Andrew DeMerse
IIRC, autoexec.cfg only runs on server startup, and server.cfg runs on every map change. From: [EMAIL PROTECTED] To: hlds@list.valvesoftware.com Date: Tue, 29 Apr 2008 19:41:30 -0500 Subject: Re: [hlds] New server exploit (not nuking) Maybe put it in your autoexec.cfg

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread Tom Leighton
I'm waiting Jason Ruymen wrote: The long-waited required Team Fortress 2 update will be arriving soon. Should be live in about an hour from now. Jason ___ To unsubscribe, edit your list preferences,

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread DontWannaName!
You scared me there haha. Thought it said it was out :P Engi achievements FTW! - Original Message From: Tom Leighton [EMAIL PROTECTED] To: Half-Life dedicated Win32 server mailing list hlds@list.valvesoftware.com Sent: Tuesday, April 29, 2008 5:52:34 PM Subject: Re: [hlds] Team Fortress

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread John McBroom
It's out 2008/4/30 Tom Leighton [EMAIL PROTECTED]: I'm waiting Jason Ruymen wrote: The long-waited required Team Fortress 2 update will be arriving soon. Should be live in about an hour from now. Jason

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread 1nsane .
It's out! On Tue, Apr 29, 2008 at 8:57 PM, DontWannaName! [EMAIL PROTECTED] wrote: You scared me there haha. Thought it said it was out :P Engi achievements FTW! - Original Message From: Tom Leighton [EMAIL PROTECTED] To: Half-Life dedicated Win32 server mailing list

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread James McKenna
It is? My client isn't updating (restarted numerous times) On Tue, Apr 29, 2008 at 6:04 PM, 1nsane . [EMAIL PROTECTED] wrote: It's out! On Tue, Apr 29, 2008 at 8:57 PM, DontWannaName! [EMAIL PROTECTED] wrote: You scared me there haha. Thought it said it was out :P Engi achievements

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread scummy
Its out this is for sure :) - Original Message - From: James McKenna [EMAIL PROTECTED] To: Half-Life dedicated Win32 server mailing list hlds@list.valvesoftware.com Sent: Tuesday, April 29, 2008 6:07 PM Subject: Re: [hlds] Team Fortress 2 Update Coming It is? My client isn't updating

Re: [hlds] Team Fortress 2 Update Coming

2008-04-29 Thread Mike Stiehm
Ya same with me just hangs Date: Tue, 29 Apr 2008 18:07:53 -0700 From: [EMAIL PROTECTED] To: hlds@list.valvesoftware.com Subject: Re: [hlds] Team Fortress 2 Update Coming It is? My client isn't updating (restarted numerous times) ___ To

  1   2   3   >