0 Members and 1 Guest are viewing this topic.
QuoteI just wanted to share this information with the community. If there are any admins out there who are concerned & would like to know the username of the said individual then I would be happy to disclose this information in pm. I apologise if I have broken fourm regulations by posting this publicly and I will remove my post upon request. Just please DON'T send Boris The issue with assigning admin via HWID is if you have collisions. As the HWID is just what, 32 chars long, I really don't think it's 100% unique. I personally wouldn't trust it. Isn't it 32³² to get the maximum possible HWID amount then? Should be enough for Soldat or ? Maybe my math is just being bad again..Or can the lobby server (?!) assign 2 HWID's to 2 different persons ?
I just wanted to share this information with the community. If there are any admins out there who are concerned & would like to know the username of the said individual then I would be happy to disclose this information in pm. I apologise if I have broken fourm regulations by posting this publicly and I will remove my post upon request. Just please DON'T send Boris
Quote from: jrgp on May 28, 2014, 03:45:41 amAs for hackers names/contact info/screenshots/whatever, please PM them to me and Shoozza as we can take steps necessary that they're killed off the face of Soldat forever.Do you have means to do that?Server owners are defenseless against hackers. IP, HWID, nicknames, ... get changed. And hackers continue playing.When I was more active, I used to admin a lot of servers from different modes. There were times when there were several hackers everyday on the servers. We used to share lists of them between admins and server owners.Had there been a way to effectively get rid of them, something could have been done.My feeling is that it looks like there is almost no consequence to hacking in Soldat. The only one I can think of is getting bad reputation if you are a known player and you get busted.But even then, it's not much.I've been browsing the SCTFL forum. And many of the regular players there are ex-hackers who are still allowed to play competitively. Usually they get denied access for 2 seasons from official events and that's it.It's crazy.
As for hackers names/contact info/screenshots/whatever, please PM them to me and Shoozza as we can take steps necessary that they're killed off the face of Soldat forever.
Around two weeks ago I caught someone in Soldat openly boasting about how he'd written new cheats (undetectable by anticheat) for auto aim, unlimited ammo and amongst other things, the ability to obtain adminlog, take control of the server and evade being kicked/banned. This person was then seen to be clearly using cheats and was subsequently banned. He was then able to regain access to the server despite his hwid being banned. He was able to overcome being banned multiple times and continued to access the server. After this I found him sitting on spec sending some dodgey looking text to the server.Fortunately we had taken some precautionary measures such as changing adminlog and warning admins not to write adminlog whilst in the server. As a workaround we now have a script in place that recognises specified hwid's and adds them to admin list upon joining the server.. which is not only nice for security but actually really convenient I just wanted to share this information with the community. If there are any admins out there who are concerned & would like to know the username of the said individual then I would be happy to disclose this information in pm. I apologise if I have broken fourm regulations by posting this publicly and I will remove my post upon request. Just please DON'T send Boris
Dziwi mnie czemu też administracja natychmiast usunęła informacje na ten temat zamiast po prostu naprawić błąd. Czy to nie są dowody na, to że to własnie administracja kontroluje serwery czy raczej dowody na to że to odkąd została dev soldat to gówno robią, gówno potrafią, psują grę, klatki spadły drastycznie. EnEsCe był kimś nie bał się nowości i nie olewał tak tego ale wasza grupa shitt adminow go zniszczyła.
From an operations perspective, I can get their IPs and ban them from the forums and lobby. I can also call up their ISPs and tell them that their client who had IP X during Y time frame was being abusive and violating their TOS. Other things as well probably.From a developer perspective, Shoozza can look through what they're exploiting and try to fix it in the game.
From what I know the current way the HWID is determined is easily spoofable. The issue will be solved when Soldat will integrate MSAC.