This exploit has been public knowledge since the game came out, Valve does not care.
The query cache will only get you so far, the engine will still fold if enough packets are sent. Kyle. On Sat, Oct 23, 2010 at 7:57 PM, HL-SDK Synths <[email protected]> wrote: > Not only caching, but perhaps the plugin should be built to rate-limit to > certain IPs. If it is open source, someone may be able to implement this for > you. > > On Sat, Oct 23, 2010 at 10:04 PM, goatscaper Goatso > <[email protected]>wrote: > >> Nah no luck, server is still dying under the attack. >> >> On Sun, Oct 24, 2010 at 2:54 AM, goatscaper Goatso <[email protected] >> >wrote: >> >> > Woah, thanks a lot man. >> > >> > That's incredible. >> > >> > So even if I have like 50 requests a second, this should ease the issue? >> > >> > >> > On Sun, Oct 24, 2010 at 2:46 AM, Michael Krasnow <[email protected]> >> wrote: >> > >> >> dude, http://forums.alliedmods.net/showthread.php?t=135543 >> >> >> >> On Sat, Oct 23, 2010 at 9:37 PM, goatscaper Goatso < >> [email protected] >> >> >wrote: >> >> >> >> > The issue is TSource Engine Query is what Steam uses in order to >> >> retrieve >> >> > server data, this isn't unique to my server, your server could be >> >> attacked >> >> > in the same way. >> >> > >> >> > Imagine it like 1,000 people rapidly clicking the "refresh" button on >> >> the >> >> > server information window. >> >> > >> >> > On Sun, Oct 24, 2010 at 2:23 AM, Michael Krasnow <[email protected]> >> >> wrote: >> >> > >> >> > > use something like querycache, >> >> > > >> >> > > On Sat, Oct 23, 2010 at 9:19 PM, goatscaper Goatso < >> >> [email protected] >> >> > > >wrote: >> >> > > >> >> > > > Malicious users can continuously spam the TSource Engine Query USP >> >> > packet >> >> > > > to >> >> > > > any given server, causing the server to crash under the pressure. >> >> > > > >> >> > > > I've been subject to this spam and I believe Valve should do >> >> something >> >> > in >> >> > > > order to prevent this packet from being spammed. If I block the >> >> packet >> >> > > then >> >> > > > legitimate users cannot see my game, if I let it go, my game is >> >> > > unplayable. >> >> > > > _______________________________________________ >> >> > > > To unsubscribe, edit your list preferences, or view the list >> >> archives, >> >> > > > please visit: >> >> > > > http://list.valvesoftware.com/mailman/listinfo/hlds >> >> > > > >> >> > > >> >> > > >> >> > > >> >> > > -- >> >> > > Michael Krasnow >> >> > > http://mnkras.com >> >> > > [email protected] >> >> > > _______________________________________________ >> >> > > To unsubscribe, edit your list preferences, or view the list >> archives, >> >> > > please visit: >> >> > > http://list.valvesoftware.com/mailman/listinfo/hlds >> >> > > >> >> > _______________________________________________ >> >> > To unsubscribe, edit your list preferences, or view the list archives, >> >> > please visit: >> >> > http://list.valvesoftware.com/mailman/listinfo/hlds >> >> > >> >> >> >> >> >> >> >> -- >> >> Michael Krasnow >> >> http://mnkras.com >> >> [email protected] >> >> _______________________________________________ >> >> To unsubscribe, edit your list preferences, or view the list archives, >> >> please visit: >> >> http://list.valvesoftware.com/mailman/listinfo/hlds >> >> >> > >> > >> _______________________________________________ >> To unsubscribe, edit your list preferences, or view the list archives, >> please visit: >> http://list.valvesoftware.com/mailman/listinfo/hlds >> > _______________________________________________ > To unsubscribe, edit your list preferences, or view the list archives, please > visit: > http://list.valvesoftware.com/mailman/listinfo/hlds > _______________________________________________ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds

