Author Topic: Security Breach at Tasty?  (Read 3779 times)

Offline IrOn448

  • Newbie
  • *
  • Posts: 12
  • MY NEW TATTOO
    • View Profile
  • Rated:
Security Breach at Tasty?
« on: January 10, 2010, 03:51:38 AM »
Hi Console, I have been seeing a lot of this in the logs?

[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:60704[WallFly[BZZZ]]: status
[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:60954[WallFly[BZZZ]]: kick 3
[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:49722[WallFly[BZZZ]]: status
[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:52491[WallFly[BZZZ]]: status
[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:46169[WallFly[BZZZ]]: status
[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:53570[WallFly[BZZZ]]: status

Why kick 3, does somebody have my rcon password? just wanted to pass this along.
Do  I need to change my rcon password. Please let me know what to do?
« Last Edit: January 11, 2010, 12:56:13 PM by Admin »
  • Insightful
    Informative
    Funny
    Nice Job / Good Work
    Rock On
    Flawless Logic
    Well-Reasoned Argument and/or Conclusion
    Demonstrates Exceptional Knowlege of the Game
    Appears Not to Comprehend Game Fundamentals
    Frag of the Week
    Frag Hall of Fame
    Jump of the Week
    Jump Hall of Fame
    Best Solution
    Wins The Internet
    Whoosh! You done missed the joke thar Cletus!
    Obvious Troll Is Obvious
    DO YOU EVEN LIFT?
    DEMO OR STFU
    Offtopic
    Flamebait
    Redundant
    Factually Challenged
    Preposterously Irrational Arguments
    Blindingly Obvious Logical Fallacies
    Absurd Misconstrual of Scientific Principles or Evidence
    Amazing Conspiracy Theory Bro
    Racist Ignoramus

Offline X7

  • Sr. Member
  • ****
  • Posts: 447
  • Quake II
    • View Profile
  • Rated:
Re: Security Breach at Tasty?
« Reply #1 on: January 10, 2010, 05:49:17 AM »
Hi Console, I have been seeing a lot of this in the logs?

[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:60704[WallFly[BZZZ]]: status
[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:60954[WallFly[BZZZ]]: kick 3
[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:49722[WallFly[BZZZ]]: status
[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:52491[WallFly[BZZZ]]: status
[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:46169[WallFly[BZZZ]]: status
[2010-01-09 18:33] Rcon from 74.52.xxx.xxx:53570[WallFly[BZZZ]]: status

Why kick 3, does somebody have my rcon password? just wanted to pass this along.
Do  I need to change my rcon password. Please let me know what to do?

one of the TS admins, did a status
then kick player 3



X7
« Last Edit: January 11, 2010, 12:56:30 PM by Admin »
  • Insightful
    Informative
    Funny
    Nice Job / Good Work
    Rock On
    Flawless Logic
    Well-Reasoned Argument and/or Conclusion
    Demonstrates Exceptional Knowlege of the Game
    Appears Not to Comprehend Game Fundamentals
    Frag of the Week
    Frag Hall of Fame
    Jump of the Week
    Jump Hall of Fame
    Best Solution
    Wins The Internet
    Whoosh! You done missed the joke thar Cletus!
    Obvious Troll Is Obvious
    DO YOU EVEN LIFT?
    DEMO OR STFU
    Offtopic
    Flamebait
    Redundant
    Factually Challenged
    Preposterously Irrational Arguments
    Blindingly Obvious Logical Fallacies
    Absurd Misconstrual of Scientific Principles or Evidence
    Amazing Conspiracy Theory Bro
    Racist Ignoramus
Quake II

Offline console

  • Brobdingnagian Member
  • ***
  • Posts: 4518
  • "Man, this is the way to travel," said my attorney
    • View Profile
    • tastyspleen.net
  • Rated:
Re: Security Breach at Tasty?
« Reply #2 on: January 10, 2010, 12:12:09 PM »
one of the TS admins, did a status
then kick player 3

Not quite.  It was an auto-kick by wallfly, based on the active banlist.

  20:14:33 CONNECT:     [3]  "Buckwheat"
  20:14:33 wallfly: enforce_bans: name(Buckwheat) clnum(3) ip(24.21.xxx.xxx)
  20:14:33 wallfly: rcon kick 3
  Dropping Buckwheat, console kick issued.

Buckwheat contacted me yesterday, and I've already added an exception for him so he can bypass the subnet ban.


Note: Assuming the server IrOn448 is referring to is KILLERPINGS, the ts admins don't have access to that rcon password at all.

But wallfly does use the global banlist by default.


Regards,

quadz

« Last Edit: January 10, 2010, 12:13:44 PM by console »
  • Insightful
    Informative
    Funny
    Nice Job / Good Work
    Rock On
    Flawless Logic
    Well-Reasoned Argument and/or Conclusion
    Demonstrates Exceptional Knowlege of the Game
    Appears Not to Comprehend Game Fundamentals
    Frag of the Week
    Frag Hall of Fame
    Jump of the Week
    Jump Hall of Fame
    Best Solution
    Wins The Internet
    Whoosh! You done missed the joke thar Cletus!
    Obvious Troll Is Obvious
    DO YOU EVEN LIFT?
    DEMO OR STFU
    Offtopic
    Flamebait
    Redundant
    Factually Challenged
    Preposterously Irrational Arguments
    Blindingly Obvious Logical Fallacies
    Absurd Misconstrual of Scientific Principles or Evidence
    Amazing Conspiracy Theory Bro
    Racist Ignoramus

Offline yahoo

  • Opulent Member
  • *
  • Posts: 2291
  • Quake II | Powered by SMF 1.0.9.
    • View Profile
  • Rated:
Re: Security Breach at Tasty?
« Reply #3 on: January 10, 2010, 03:47:23 PM »
I was wondering , (global banlist) does it mean that the ban applies on all servers seen at goto?
  • Insightful
    Informative
    Funny
    Nice Job / Good Work
    Rock On
    Flawless Logic
    Well-Reasoned Argument and/or Conclusion
    Demonstrates Exceptional Knowlege of the Game
    Appears Not to Comprehend Game Fundamentals
    Frag of the Week
    Frag Hall of Fame
    Jump of the Week
    Jump Hall of Fame
    Best Solution
    Wins The Internet
    Whoosh! You done missed the joke thar Cletus!
    Obvious Troll Is Obvious
    DO YOU EVEN LIFT?
    DEMO OR STFU
    Offtopic
    Flamebait
    Redundant
    Factually Challenged
    Preposterously Irrational Arguments
    Blindingly Obvious Logical Fallacies
    Absurd Misconstrual of Scientific Principles or Evidence
    Amazing Conspiracy Theory Bro
    Racist Ignoramus
Quake II | Powered by SMF 1.0.9.
© 2001-2005, Lewis Media. All Rights Reserved.

Offline console

  • Brobdingnagian Member
  • ***
  • Posts: 4518
  • "Man, this is the way to travel," said my attorney
    • View Profile
    • tastyspleen.net
  • Rated:
Re: Security Breach at Tasty?
« Reply #4 on: January 10, 2010, 05:45:08 PM »
I was wondering , (global banlist) does it mean that the ban applies on all servers seen at goto?

Sort of.

The AIR* and TG* servers in UK and Italy are each on their own WallFly network, and have their own separate ban lists for their networks.

Most of the INDEPENDENT ZONE servers do share tastyspleen's ban list.  A few don't.  It's not mandatory for independent servers to share the ts ban list, BUT if a server participates in the invite! system, the only way I currently have to prevent someone from abusing invite! is to ban or mute them.

Some jerk from socal.res.rr.com was abusing invite! on KILLERPINGS and WHALE last week.  They were spoofing DonKeyballs-CRU's name and using both WHALE and KILLERPINGS to spam obnoxious invite messages.  So I added a mute for this player on all servers which participate in the invite! system.


Regards,

quadz


  • Insightful
    Informative
    Funny
    Nice Job / Good Work
    Rock On
    Flawless Logic
    Well-Reasoned Argument and/or Conclusion
    Demonstrates Exceptional Knowlege of the Game
    Appears Not to Comprehend Game Fundamentals
    Frag of the Week
    Frag Hall of Fame
    Jump of the Week
    Jump Hall of Fame
    Best Solution
    Wins The Internet
    Whoosh! You done missed the joke thar Cletus!
    Obvious Troll Is Obvious
    DO YOU EVEN LIFT?
    DEMO OR STFU
    Offtopic
    Flamebait
    Redundant
    Factually Challenged
    Preposterously Irrational Arguments
    Blindingly Obvious Logical Fallacies
    Absurd Misconstrual of Scientific Principles or Evidence
    Amazing Conspiracy Theory Bro
    Racist Ignoramus

Offline yahoo

  • Opulent Member
  • *
  • Posts: 2291
  • Quake II | Powered by SMF 1.0.9.
    • View Profile
  • Rated:
Re: Security Breach at Tasty?
« Reply #5 on: January 10, 2010, 06:14:43 PM »
The AIR* and TG* servers in UK and Italy are each on their own WallFly network, and have their own separate ban lists for their networks.

Most of the INDEPENDENT ZONE servers do share tastyspleen's ban list.  A few don't.  It's not mandatory for independent servers to share the ts ban list, BUT if a server participates in the invite! system, the only way I currently have to prevent someone from abusing invite! is to ban or mute them.


Ahh.. so maybe thats why when i was on an AIR server, i used goto and there were some servers that showed empty even if there were players


Some jerk from socal.res.rr.com was abusing invite! on KILLERPINGS and WHALE last week.  They were spoofing DonKeyballs-CRU's name and using both WHALE and KILLERPINGS to spam obnoxious invite messages.  So I added a mute for this player on all servers which participate in the invite! system.


Regards,

quadz



I think I saw that.. Thanks.
  • Insightful
    Informative
    Funny
    Nice Job / Good Work
    Rock On
    Flawless Logic
    Well-Reasoned Argument and/or Conclusion
    Demonstrates Exceptional Knowlege of the Game
    Appears Not to Comprehend Game Fundamentals
    Frag of the Week
    Frag Hall of Fame
    Jump of the Week
    Jump Hall of Fame
    Best Solution
    Wins The Internet
    Whoosh! You done missed the joke thar Cletus!
    Obvious Troll Is Obvious
    DO YOU EVEN LIFT?
    DEMO OR STFU
    Offtopic
    Flamebait
    Redundant
    Factually Challenged
    Preposterously Irrational Arguments
    Blindingly Obvious Logical Fallacies
    Absurd Misconstrual of Scientific Principles or Evidence
    Amazing Conspiracy Theory Bro
    Racist Ignoramus
Quake II | Powered by SMF 1.0.9.
© 2001-2005, Lewis Media. All Rights Reserved.

 

El Box de Shoutamente

Last 10 Shouts:

 

Yotematoi

February 14, 2025, 12:41:48 PM
 :-*
 

|iR|Focalor

February 13, 2025, 07:31:24 AM
I was on DM this morning for the first time in a pretty long time. Seemed fine to me.

0rbisson

February 13, 2025, 04:54:21 AM
DM server is fucked. 2 point blank rockets from spawn and lava damage and player survived? WTF?" Also someone has fucked with the spawn points, every single time no matter how big the map you spawn right in front of the person who killed you last
 

rikwad

February 08, 2025, 10:48:18 PM
Seattle FFA now has working HTTP downloads. Thanks Unholy!
 
RIP Pepp   ✟
 
 

-Unh0ly-

February 03, 2025, 01:20:14 AM
vvvALL WEAPS HAVE MUZZLE FLASH vvvv
 

|iR|Focalor

December 25, 2024, 12:15:35 AM
 

|iR|Focalor

December 25, 2024, 12:06:54 AM
 

RailWolf

December 23, 2024, 09:15:50 AM
Fixed the image for you =)
And Die Hard is a great Christmas movie
 

|iR|Focalor

December 19, 2024, 04:55:07 AM
correction - you gotta put the whole word, not just w: {img width=210}

Show 50 latest
Welcome, Guest. Please login or register.
February 16, 2025, 01:05:24 PM

Login with username, password and session length