Armagetron chat exploit --> Armagetron Virus! Ha Ha!
- Tank Program
- Forum & Project Admin, PhD
- Posts: 6711
- Joined: Thu Dec 18, 2003 7:03 pm
Ya, it was him again.
In that particular game where it was saying "Hacked by Zapple"
I kept saying, "Evil! Stop it, come out of spec mode" cause I knew he was in it.
Then he came out saying "Zapple make it stop" and having it so everyone exept me got the hacked thing.
Im getting really tired of this now.
In that particular game where it was saying "Hacked by Zapple"
I kept saying, "Evil! Stop it, come out of spec mode" cause I knew he was in it.
Then he came out saying "Zapple make it stop" and having it so everyone exept me got the hacked thing.
Im getting really tired of this now.
hi
Yesterday, I met Evil Inside ...
He told me he fixed the "lag problem" (probably refering to brake related bugs).
I'd really be interested in this patch (especially for Armagetron 2.6).
He said it was pretty easy to fix - "you only have to disable/modify clamping"
(I am not sure what he was talking about - I have not spent much time on
the network messages related to walls).
Any ideas on that one ?
I talked to him about his message faking, and he kind of confirmed
that his message faking would not work on a server with
the fixes I mentioned to him. (I hope you know the source of the problem . )
I provided a patch a long time ago.
It's performance is not that good though, but I didn't find a way to access the data more direct.
The patch is here:
http://guru3.sytes.net/viewtopic.php?p=11686#11686
Just search the diff for "bogus"
(it's in the first few rows)
I invited him to a privat server to demonstrate his message exploit, but he never really logged in, he probably just send a lot of malformed packets. His packets caused a lot of lag and the console of the server sometimes showed a warning that "user 2" does not own cycle instances X ...
I think he just send some malformed packets with faked IPs to the server.
On the other hand my fix of the problem is perhaps not 100% correct
- perhaps he tried to login. I didn't and couldn't track him down, as I don't have any root access on that machines.
In my opinion evil inside is proud of being a pain in the ****.
Once ppl get angry or their game is ruined, he will be proud of himself.
I think in a wierd way he helps improve the game, as he makes those exploits visible (to everyone). As long as noone uses the exploit, noone will be interested to fix them, eh ?
To sum it up, I have no problem with him finding and showing off exploits, but I am disappointed that he will not provide any contact details or share his knowledge somehow.
My two cents on howto handle Exploits:
Assumption: the development team is aware of the exploit.
The best solutions is probably inbetween those two extremes.
joda
Yesterday, I met Evil Inside ...
He told me he fixed the "lag problem" (probably refering to brake related bugs).
I'd really be interested in this patch (especially for Armagetron 2.6).
He said it was pretty easy to fix - "you only have to disable/modify clamping"
(I am not sure what he was talking about - I have not spent much time on
the network messages related to walls).
Any ideas on that one ?
I talked to him about his message faking, and he kind of confirmed
that his message faking would not work on a server with
the fixes I mentioned to him. (I hope you know the source of the problem . )
I provided a patch a long time ago.
It's performance is not that good though, but I didn't find a way to access the data more direct.
The patch is here:
http://guru3.sytes.net/viewtopic.php?p=11686#11686
Just search the diff for "bogus"
(it's in the first few rows)
I invited him to a privat server to demonstrate his message exploit, but he never really logged in, he probably just send a lot of malformed packets. His packets caused a lot of lag and the console of the server sometimes showed a warning that "user 2" does not own cycle instances X ...
I think he just send some malformed packets with faked IPs to the server.
On the other hand my fix of the problem is perhaps not 100% correct
- perhaps he tried to login. I didn't and couldn't track him down, as I don't have any root access on that machines.
In my opinion evil inside is proud of being a pain in the ****.
Once ppl get angry or their game is ruined, he will be proud of himself.
I think in a wierd way he helps improve the game, as he makes those exploits visible (to everyone). As long as noone uses the exploit, noone will be interested to fix them, eh ?
To sum it up, I have no problem with him finding and showing off exploits, but I am disappointed that he will not provide any contact details or share his knowledge somehow.
My two cents on howto handle Exploits:
Assumption: the development team is aware of the exploit.
- ShortTerm solution: Devs keep hack/exploit/weak code quite.
- LongTerm solution: Make those exploits public and known, and start working on a fix or provide one.
The best solutions is probably inbetween those two extremes.
joda
- Tank Program
- Forum & Project Admin, PhD
- Posts: 6711
- Joined: Thu Dec 18, 2003 7:03 pm
- Tank Program
- Forum & Project Admin, PhD
- Posts: 6711
- Joined: Thu Dec 18, 2003 7:03 pm
- Tank Program
- Forum & Project Admin, PhD
- Posts: 6711
- Joined: Thu Dec 18, 2003 7:03 pm
- philippeqc
- Long Poster - Project Developer - Sage
- Posts: 1526
- Joined: Mon Jul 12, 2004 8:55 am
- Location: Stockholm
- Contact:
X-it wrote:Evil Inside come today (3 november 4h45 pm) on Classic Play!
With a new code
:arrow:
Waitaminute!
Is that the same "Evil Inside" than the one who just received developers access recently??? Its quite of a coincidence!!!!
How comes I'm the only one to notice that?
Maybe now might not be the best of times to allow new developers to come and join us, with all respect for forum-Evil-inside.
-ph
Canis meus id comedit.