Exploit Fixes Anyone?

Discussion in 'Bukkit Discussion' started by shmkane, Sep 6, 2013.

?

Is this my servers fault?

  1. Yes, it was one of your plugin that caused this!

    0 vote(s)
    0.0%
  2. No, this is a version of craftbukkit error.

    72.7%
  3. Honestly, I don't know, But this has happened to me.

    27.3%
Thread Status:
Not open for further replies.
  1. Offline

    shmkane

    I'm guessing this might be a problem with the version of the CraftBukkit I'm using or it may just be a server error.

    Basically what happened was, while I was AFK, someone repeatedly tried to join using my Minecraft name, with a cracked minecraft launcher. The person tried 20-30 times, and eventually logged on. Once he did, he proceeded to grief everything. Here's some error messages and what it looked like in the logs. IP's are blocked for privacy reasons, as well as minecraft names.
    [​IMG]

    2013-09-06 20:28:38 [INFO] Exploiter[/162.XXX:54563] logged in with entity id 1652718 at ([world] 245.5, 66.0, -262.5)
    2013-09-06 20:28:39 [WARNING] class net.minecraft.server.v1_6_R2.PlayerConnection wasn't prepared to deal with a class net.minecraft.server.v1_6_R2.Packet2Handshake
    2013-09-06 20:28:39 [INFO] §emacgruber45 left the game.
    2013-09-06 20:28:39 [SEVERE] Reached end of stream for /162.XXX
    2013-09-06 20:28:41 [INFO] [InfernoDrugs] Remember to vote every 24 hours for rewards!
    2013-09-06 20:28:46 [INFO] Disconnecting Exploiter [/162.XXX:54574]: Failed to verify username!
    2013-09-06 20:28:47 [SEVERE] Reached end of stream for /162.XXX
    2013-09-06 20:28:53 [INFO] Disconnecting Exploiter [/162.XXX:54579]: Failed to verify username!
    2013-09-06 20:28:53 [SEVERE] Reached end of stream for /162.XXX
    2013-09-06 20:28:59 [INFO] Exploiter[/162.XXX:54585] logged in with entity id 1652913 at ([world] 245.5, 66.0, -262.5)
     
  2. Offline

    Syd

    How can someone log in into our server with a cracked launcher?

    If that means, you run your server in online-mode=false, it's absolutly your fault.
     
  3. Offline

    user_43347

    Update your CraftBukkit to the lastest dev version

    Syd
     
  4. Offline

    Intangir

    this just happened to me too..

    not in offline mode, they are using some sort of hack
     
  5. Offline

    zolteex

    Server just got obliterated
     
  6. Offline

    Lolmewn

    Intangir Update your craftbukkit. There was a bug with handshakes, sometimes causing this. It has been patched, updating immediately is recommended.
     
  7. Offline

    shmkane

    There were some posts on Planetminecraft.com, as you said, they suggest updating to the latest bukkit build
     
  8. Offline

    boboman13

    Glad to see that this bug/glitch/bypass has been fixed. Thanks Bukkit staff!
     
  9. Offline

    Syd

    nkrecklow
    Good to know, thanks.

    Someone tried it on my server with my name as well, before I updated...
     
  10. This just GOT DAM happend to me.


    ..
    2013-09-08 10:27:53 [SEVERE] Reached end of stream for /92.32.46.126
    2013-09-08 10:27:55 [INFO] Disconnecting ××××××××× [/92.32.46.126:55249]: Invalid client reply
    2013-09-08 10:27:55 [SEVERE] Reached end of stream for /92.32.46.126
    ..

    2013-09-08 10:28:16 [INFO] Disconnecting ××××××××× [/92.32.46.126:55292]: Failed to verify username!
    2013-09-08 10:28:16 [SEVERE] Reached end of stream for /92.32.46.126
    ..
    2013-09-08 10:28:26 [INFO] Disconnecting ××××××××× [/92.32.46.126:55306]: Failed to verify username!
    2013-09-08 10:28:26 [SEVERE] Reached end of stream for /92.32.46.126
    ..
    2013-09-08 10:28:32 [INFO] ×××××××××[/92.32.46.126:55316] logged in with entity id 1093854 at ([world] 1.5, 78.0, -19.5)
    2013-09-08 10:28:32 [INFO] Creating empty config: C:\Users\Robin\Desktop\KN Pre\plugins\Essentials\userdata\coolingen.yml[/CODE]

    Time to update :/
     
  11. Offline

    shmkane

    The server was not run with online mode set to false
     
  12. Offline

    Necrodoom

    like multiple people told you, update to bukkit devbuild.
     
  13. Offline

    Karloz

    which version has this Problem?
     
  14. Offline

    Necrodoom

    what build you are using now?
     
  15. Offline

    Karloz

  16. Offline

    Necrodoom

  17. Offline

    Bobcat00

    Answering the person's question instead of providing a non-answer would have been much more useful to everyone.
     
  18. Offline

    Necrodoom

    I already given an answer. Get bukkit devbuild to avoid the exploit.
     
  19. Offline

    Bobcat00

    The question (which you did not answer) was: "which version has this Problem?"
     
  20. Offline

    kreashenz

    Bobcat00 #2684 (2864) whichever one it was. I think it's also happening with the beta, too.
     
  21. Offline

    Bobcat00

    It seems to me that #2864 has the fix.
     
  22. Offline

    evilmidget38

    All builds prior to the fix have the issue.
     
    lukegb likes this.
Thread Status:
Not open for further replies.

Share This Page