Jump to content

[Exploit + fix]Lets hack: Stack subclass skills ( Race condition exploit ).


Recommended Posts

Posted

wont work that way cause l2j uses a lock on subclass if i remember correctly. When something wants to change the class, it must wait in that lock for its turn.

damn >.<

anyway if i'll ever start l2 again i'll try ur way :P

Posted

Anyway those conditions ( l2j was doing fixes that way in the past ) are not the right way to fix problems. A problem can lead to several exploits, blocking the exploit, wont fix the problem. But taking care of the problem itself, will fix all exploits related to them. When i went in some br interlude server some weeks ago, they had some protection ( l2jbrazil ) that you are not allowed to have equiped weapon when you change subclass. Obvious stupid is obvious :) Those checks can be bypassed, the solution is to lock the right function that handles the skill awarding in different cases.

Posted

Anyway those conditions ( l2j was doing fixes that way in the past ) are not the right way to fix problems. A problem can lead to several exploits, blocking the exploit, wont fix the problem. But taking care of the problem itself, will fix all exploits related to them. When i went in some br interlude server some weeks ago, they had some protection ( l2jbrazil ) that you are not allowed to have equiped weapon when you change subclass. Obvious stupid is obvious :) Those checks can be bypassed, the solution is to lock the right function that handles the skill awarding in different cases.

 

And who guarantees that your possible fix doesnt create (new) exploits as well? :D

  • 3 weeks later...
Posted

lol!

it's new. never shared before here!

BUT... a friend discovered this one 1 or 2 years before and we decided not telling it to anyone on web so it wouldnt be fixed by anyone!

but now......dmn you! :P

 

btw.sharing it is allright. but why how to fix it?

Posted

A way i propose is using a lock object that gets locked by both the two methods ( setActiveSubclass and levelUp ) so as they cant race together. Or even using the existing subclass lock they have ( i think ) in l2j. Just try to lock it when getting level up.

 

The idea behind going inside an exploit and figuring how it works is to help us discover more by understanding the mechanisms behind exploits. Btw did you guys find it by chance, just by experimenting with ingame actions ? :)

Posted

The idea behind going inside an exploit and figuring how it works is to help us discover more by understanding the mechanisms behind exploits. Btw did you guys find it by chance, just by experimenting with ingame actions ? :)

the main idea came to my friend and then we tried it and really worked!!! :D

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



  • Posts

    • My official facebook profile!: https://www.facebook.com/spectrumL2 Specifications: Revamped L2JACIS revision FROM the core Private project!!! Revision that has been receiving corrections for over 3 years!!! Events already installed in the revision: TVT CTF KTB PARTY FARM SPOIL EVENT CRAZY RATES TOURNAMENT TIME ZONE (INSTANCE) All working correctly!!! SIEGE ESSENTIAL FEATURES: Walls fix Gates fix Flags fix 100% functional: OLYMPIADS: Implemented settings Hero receives enchanted Weapons with equal status PvP Weapons Optional /true/false Hero can acquire all Hero Weapons Optional true/false OTHER IMPLEMENTATIONS: Teleport fixed (directly to Giran) Teleport effect classic Vip skins vip collor name Pack NPCs with effect already configured BOSES already configured Mobs already configured CLASS BALANCE SPECIAL SYSTEM We have a SPECIAL system developed for Class Balance with only 1 digit in XML %tage of configurable debuffs Player limitation system in BOSES or PvP zones BS blocking system in FLEG zones or events Among others dozens of improvements made in the review... price: 390 USD !  OBS: WE CAN CHANGE THE BANNER AND NAME OF THE SERVICE TO THE ONE OF YOUR PREFERENCE BUT THE SETTINGS MUST BE KEPT ANY CHANGES REQUIRE ADDITION        
    • Server is Online – 1,000+ Active Players! We’re excited to announce the addition of a Europe Proxy to improve connectivity for our EU players! Clans can now benefit from VIP Access to help you catch up faster. 🎯 If you're a clan leader with at least 9 active members, join our Discord and open a ticket to claim your VIP rewards!  
    • The Telegram team is rolling out a new batch of Stars-only gifts you’ll be able to mint as NFTs. Don’t miss your chance to join the next Telegram trend and earn from it! Buy Telegram Stars cheap and KYC-free 1 Star from $0.0149 (min. 50 Stars, bulk discounts available) Promo code STARS5 — 5 % off Pay any way you like: bank cards · crypto · other popular methods How to purchase: ➡Online Store — Click ➡ Telegram bot — Click Other services: ➡ SMM panel — Click Regular buyers get extra discounts and promo codes. Support: ➡ Telegram: https://t.me/solomon_bog ➡ Telegram channel: https://t.me/accsforyou_shop ➡ Discord: https://discord.gg/y9AStFFsrh ➡ WhatsApp: https://wa.me/79051904467 ➡ Email: solomonbog@socnet.store Use these contacts to discuss wholesale orders, partnerships (current list: https://socnet.bgng.io/partners) or to become a supplier. SocNet — your shop for digital goods and premium subscriptions
    • The Telegram team is rolling out a new batch of Stars-only gifts you’ll be able to mint as NFTs. Don’t miss your chance to join the next Telegram trend and earn from it! Buy Telegram Stars cheap and KYC-free 1 Star from $0.0149 (min. 50 Stars, bulk discounts available) Promo code STARS5 — 5 % off Pay any way you like: bank cards · crypto · other popular methods How to purchase: ➡Online Store — Click ➡ Telegram bot — Click Other services: ➡ SMM panel — Click Regular buyers get extra discounts and promo codes. Support: ➡ Telegram: https://t.me/solomon_bog ➡ Telegram channel: https://t.me/accsforyou_shop ➡ Discord: https://discord.gg/y9AStFFsrh ➡ WhatsApp: https://wa.me/79051904467 ➡ Email: solomonbog@socnet.store Use these contacts to discuss wholesale orders, partnerships (current list: https://socnet.bgng.io/partners) or to become a supplier. SocNet — your shop for digital goods and premium subscriptions
  • Topics

×
×
  • Create New...

AdBlock Extension Detected!

Our website is made possible by displaying online advertisements to our members.

Please disable AdBlock browser extension first, to be able to use our community.

I've Disabled AdBlock