server hacked

Use this forum if you have a relatively general question or comment about a game, Ventrilo, TeamSpeak, or Murmur/Mumble server with us. If you have a server-specific question that might not help out the community, please directly contact us through your control panel instead.
Post Reply
m3rcury
New to forums
New to forums
Posts: 4
https://www.youtube.com/channel/UC40BgXanDqOYoVCYFDSTfHA
Joined: Mon Dec 05, 2005 9:13 am

server hacked

Post by m3rcury »

hello folks.

first off, let me say how pleased i am with nfo servers. i've been renting mine about 2 weeks and just upgraded to the ping accelerator and i'm thrilled. your price cannot be beat and you guys have some of the best customer service i've seen.

ok, now on to the problem. i rent a 15man css server on the LA hybrid network. yesterday my clan and i were scrimming another team. we made the stupid mistake of setting the password to "scrim" (which we will never do again). anyhow, someone logged in and started spamming the chat - something about flashlight something strikes again - "do not open console 1111" etc. when i tried to open the console, it locked css for me, and the server locked up for everyone else. most of the guys had to completely reboot their systems. restarting the server fixed the problem. however, when i went to check my log files to try to get the guy's steam ID, the log files were gone.

so, what in the world happened? was this some kind of script this guy ran? besides using a less obvious password, what can i do to prevent this in the future?

like i said, i know it was stupid to use such a simple password. what else can i do to prevent this?

thanks in advance !!!
User avatar
bOoya
Former staff
Former staff
Posts: 886
Joined: Thu Jan 15, 2004 3:46 pm
Location: Corona, CA
Contact:

Post by bOoya »

I haven't heard of this one before, but it's likely just another exploit that VALVe will need to patch. (This isn't the first time something like this has happened with CS:S)

If you can give us your server identifier we might beable to look into the logs situation. You can also contact us directly by using the "Live chat" button on your control panel.
m3rcury
New to forums
New to forums
Posts: 4
Joined: Mon Dec 05, 2005 9:13 am

Post by m3rcury »

the server is s17.

i suspect whoever did this is using a stolen steam ID anyway, so i'm not worried about banning them. i'm more worried about how to prevent this in the future. it was a practice scrim, but if it had been a cal match, we would have had to start the match over.

thanks for your help.
User avatar
bOoya
Former staff
Former staff
Posts: 886
Joined: Thu Jan 15, 2004 3:46 pm
Location: Corona, CA
Contact:

Post by bOoya »

The best way is to set a random password before the match begins and give it only to your clanmates and people on the other page. In all honesty it was pretty random that someone would guess your IP and password, unless it was someone you have scrimmed with or someone you know 8O.
m3rcury
New to forums
New to forums
Posts: 4
Joined: Mon Dec 05, 2005 9:13 am

Post by m3rcury »

when i run the lo3.cfg script, it changes the server name to "CAL CS:Source Match Server" or something like that. couldn't someone just look at the server list, find all the servers with that name, and guess passwords until they got in? granted, this would have to be a very lonely, sad dude, but this is possible, right?

is it a requirement of cal that the name be displayed like that?

thanks for your suggestions.
User avatar
bOoya
Former staff
Former staff
Posts: 886
Joined: Thu Jan 15, 2004 3:46 pm
Location: Corona, CA
Contact:

Post by bOoya »

They could do that, but having a password other than scrim would pretty much thwart this.. like scr1m or scrim123 or scrimleet, etc.
m3rcury
New to forums
New to forums
Posts: 4
Joined: Mon Dec 05, 2005 9:13 am

Post by m3rcury »

right on. thanks for your help.

like i said, nfo is awesome. i so glad i found you guys.
Post Reply