RE: [hlds] DoD Exploit
Thanks for the report, we just released a fix to prevent this. - Alfred Original Message From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Your Name Sent: Saturday, August 13, 2005 8:52 PM To: hlds@list.valvesoftware.com Subject: [hlds] DoD Exploit One of my regulars pointed out someone doing something fishy on a server today and the idiot actually talked enough about it that I could track it down. http://www.gotfrag.com/dod/forums/thread/147822/ Basically it looks like they execute this command string and they get the run of the server. Well do the following bind p changeclass; wait; jointeam 4 enjoy! Farther down, someone added this: lol tis fun, especially at the beginning of the rounds, its like a free ride to spawn camping. its spec glitching but it starts you at the middle or some where close. Dont go to servers with FF on because your teamates will shoot you. ohh and flash british side, you spawn in a spot that you cant get out of. And this: they fixed the old one were while your dead you hit changeteam; changeclass and you choose spectatots than a weapon, but yea you spawn in teh middle of the map on all maps and if you run over a flag yout ake it off the map until you die. The log entries look like this every time the guy did it: L 08/13/2005 - 21:42:27: roflcakes10STEAM_0:0:2112501Allies committed suicide with world L 08/13/2005 - 21:42:27: roflcakes10STEAM_0:0:2112501Allies joined team 0%¾ $¾Ð|¾aÚÆexec %s.cfg ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds
Re: [hlds] DoD Exploit
I released the plugin: http://www.amxmodx.org/forums/viewtopic.php?p=144889 The person who first replyed and said he would be willing to help test it never gave any feedback, so i posted it publicly. Those who install it on their server, please give feedback. And and read the first post in the forum thread carfully. On another note, those who only run amxmod and not amxmodx can proberbly use this plugin. Just download the sma and compile it. It may also be posible to port this plugin to adminmod. - Original Message - From: Erling K. Sæterdal [EMAIL PROTECTED] To: hlds@list.valvesoftware.com Sent: Monday, August 15, 2005 4:57 AM Subject: Re: [hlds] DoD Exploit Thx for the heads up, i have made a amxmodx plugin to detect this exploit. If someone has a populated DoD server and can help me beta test, please email me offlist. Il release to the public once its had a minor beta test. - Original Message - From: Your Name [EMAIL PROTECTED] To: hlds@list.valvesoftware.com Sent: Sunday, August 14, 2005 5:51 AM Subject: [hlds] DoD Exploit One of my regulars pointed out someone doing something fishy on a server today and the idiot actually talked enough about it that I could track it down. http://www.gotfrag.com/dod/forums/thread/147822/ Basically it looks like they execute this command string and they get the run of the server. Well do the following bind p changeclass; wait; jointeam 4 enjoy! Farther down, someone added this: lol tis fun, especially at the beginning of the rounds, its like a free ride to spawn camping. its spec glitching but it starts you at the middle or some where close. Dont go to servers with FF on because your teamates will shoot you. ohh and flash british side, you spawn in a spot that you cant get out of. And this: they fixed the old one were while your dead you hit changeteam; changeclass and you choose spectatots than a weapon, but yea you spawn in teh middle of the map on all maps and if you run over a flag yout ake it off the map until you die. The log entries look like this every time the guy did it: L 08/13/2005 - 21:42:27: roflcakes10STEAM_0:0:2112501Allies committed suicide with world L 08/13/2005 - 21:42:27: roflcakes10STEAM_0:0:2112501Allies joined team 0%¾ $¾Ð|¾aÚÆexec %s.cfg ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds __ NOD32 1.1193 (20050812) Information __ This message was checked by NOD32 antivirus system. http://www.eset.com ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds __ NOD32 1.1193 (20050812) Information __ This message was checked by NOD32 antivirus system. http://www.eset.com ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds
RE: [hlds] DoD Exploit
I'd *rather* them be posted openly. This way it alerts everyone to the exploit. Yes, I understand that there would be people that take advantage of this, but for those of us that work in the HL leagues, it provides much needed information. -Original Message- From: [EMAIL PROTECTED] [mailto:hlds- [EMAIL PROTECTED] On Behalf Of Clayton Macleod Sent: Sunday, August 14, 2005 12:13 AM To: hlds@list.valvesoftware.com Subject: Re: [hlds] DoD Exploit next time email Alfred/Valve directly, no need to spread word of things like this further than their ears. On 8/13/05, Your Name [EMAIL PROTECTED] wrote: snip -- Clayton Macleod get ye flask You cannot get ye flask. ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds
Re: [hlds] DoD Exploit
Thx for the heads up, i have made a amxmodx plugin to detect this exploit. If someone has a populated DoD server and can help me beta test, please email me offlist. Il release to the public once its had a minor beta test. - Original Message - From: Your Name [EMAIL PROTECTED] To: hlds@list.valvesoftware.com Sent: Sunday, August 14, 2005 5:51 AM Subject: [hlds] DoD Exploit One of my regulars pointed out someone doing something fishy on a server today and the idiot actually talked enough about it that I could track it down. http://www.gotfrag.com/dod/forums/thread/147822/ Basically it looks like they execute this command string and they get the run of the server. Well do the following bind p changeclass; wait; jointeam 4 enjoy! Farther down, someone added this: lol tis fun, especially at the beginning of the rounds, its like a free ride to spawn camping. its spec glitching but it starts you at the middle or some where close. Dont go to servers with FF on because your teamates will shoot you. ohh and flash british side, you spawn in a spot that you cant get out of. And this: they fixed the old one were while your dead you hit changeteam; changeclass and you choose spectatots than a weapon, but yea you spawn in teh middle of the map on all maps and if you run over a flag yout ake it off the map until you die. The log entries look like this every time the guy did it: L 08/13/2005 - 21:42:27: roflcakes10STEAM_0:0:2112501Allies committed suicide with world L 08/13/2005 - 21:42:27: roflcakes10STEAM_0:0:2112501Allies joined team 0%¾ $¾Ð|¾aÚÆexec %s.cfg ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds __ NOD32 1.1193 (20050812) Information __ This message was checked by NOD32 antivirus system. http://www.eset.com ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds
[hlds] DoD Exploit
One of my regulars pointed out someone doing something fishy on a server today and the idiot actually talked enough about it that I could track it down. http://www.gotfrag.com/dod/forums/thread/147822/ Basically it looks like they execute this command string and they get the run of the server. Well do the following bind p changeclass; wait; jointeam 4 enjoy! Farther down, someone added this: lol tis fun, especially at the beginning of the rounds, its like a free ride to spawn camping. its spec glitching but it starts you at the middle or some where close. Dont go to servers with FF on because your teamates will shoot you. ohh and flash british side, you spawn in a spot that you cant get out of. And this: they fixed the old one were while your dead you hit changeteam; changeclass and you choose spectatots than a weapon, but yea you spawn in teh middle of the map on all maps and if you run over a flag yout ake it off the map until you die. The log entries look like this every time the guy did it: L 08/13/2005 - 21:42:27: roflcakes10STEAM_0:0:2112501Allies committed suicide with world L 08/13/2005 - 21:42:27: roflcakes10STEAM_0:0:2112501Allies joined team 0%¾ $¾Ð|¾aÚÆexec %s.cfg ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds
Re: [hlds] DoD Exploit
next time email Alfred/Valve directly, no need to spread word of things like this further than their ears. On 8/13/05, Your Name [EMAIL PROTECTED] wrote: snip -- Clayton Macleod get ye flask You cannot get ye flask. ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds