Jump to content

Recommended Posts

  • 3 weeks later...
Posted

Only an idiot would make an account called admin. And only an idiot would not password their SQL, and their Navicat. And only an idiot will leave an account with admin user, and blank password. If you are in any of those categories, God Speed!

Posted

how we know that  it is not a virus.how i am sure?

 

Because the share was posted from a global moderator

which i highly doubt he would post anything "infected".

Besides if you are not even bothered checking what this

does don't reply at all because from your replies it is prety

obvious that you are trying to spam.

 

PS:I believe that the 45% of the servers are from "lame" teenagers

that use preconfigured packs.They use a database with user and pass "root".

Isn't there a way to hack their database from just adding their ip in the configs and

enter their database? :)? (I'm not sure what i am saying makes sense but i have seen

friends of mine setting up a database i don't really bother with l2 developing... and as

i tried i saw at the config files that there was options and ips where you connect to your

database... learn their user and database info and get their ip and i believe that you

are going to find a way to hack them :) Be creative :D)

 

Reply if this makes any sense at all... i'm curius to find out :)

Posted

Jesus wtf?! This is NOT an exploit. It's just a program that tries as many possible variables of a username/password.

 

Three things that sql servers check for

Username

Password

Host that's logging in (whitelist)

 

If your username/password are incorrect AND if you are not comming from the ip specified in the host it will reject your connection.

 

Even if somehow magically the admin is a fucking idiot and has username root and password fuckmeImdumb there is a high chance he will have allowed ip with 127.0.0.1 which means NOONE but him from localhost can connect to mysql. If you do have all of those opened to public then you deserve to be shot on sight.

 

But lets say he does have % on host origin and username root. In case his password is consisted of something like this 34%V#4t3gc3$G34t the bruteforce will NEVER figure it out. Well, maybe in a couple of years...

Posted

But lets say he does have % on host origin and username root. In case his password is consisted of something like this 34%V#4t3gc3$G34t the bruteforce will NEVER figure it out. Well, maybe in a couple of years...

Hahah! Sad but true!

 

The majority of l2j servers are set to "%" and not to localhost(naabs adminz).

  • 3 weeks later...
Posted

Ech.... dont work for me...

 

I think u need -1 karma, this is the second post that u make like that.

 

:s !

 

BtW XxRxX Great Sharing !! :)

  • 2 weeks later...
  • 3 weeks later...
  • 2 weeks later...
Posted

Oh yes I forgot that you can change localhost to an IP and connect to it Smiley

Thanks hax0r ;]

 

I'am going to find a guide for it, if I do I will post it somewhere =]

 

Google Ftw Wink

 

SQLPing right? Or should I search for teh bruter hax0r gave? Cheesy

 

I downloaded both but I've done more things with Bruter I think but no passwordlist and userlist -.-

 

Have fun Cheesy Let the hack be with us Cheesy

Guest
This topic is now closed to further replies.

  • Posts

    • how do I make it so that you only deal damage to a mob if you have the right items equipped, like jewels, belt, underwear, bracelet, so if you don't have one of those items equipped, you don't deal any damage to the mob thanks
    • I always welcome bug reports and never ban ppl - until proven leaker - not sure where the "arrogant" part comes from, I would like to know what exactly let you think that (quote me please, and not 12y old quotes as the other frog meme dude). I request bug reports to be properly detailed, otherwise it's a waste of time. Other than that, I don't see where I have been arrogant. I got proper discussions with many ppl, not sure why you wouldn't be one of them.   I got 76 bug reports in my list (21 on forums, 55 on gitlab).   I have a single bug report regarding lvl 4 clan quest, which has to be tested since it's not even clear about what is supposed to be broken. Seven Signs was never reworked and is basically L2J based (we got a rework branch to test/commit with reworked AIs). Geoengine got no specific issues (at my knowledge), pathfinding was reworked lately to be way more performant, and I still try to improve performance using some pool system. Movement was partially fixed in latest 410, and probably will get another rework soon (notably reverting to the task wallclock).   "I" surely didn't spend 12y over geoengine - Hasha cared about geoengine during rev 334 / 354 / 390 / 395 and 397. It is solely his work, and always tagged as it. He was rewarded with money for his work, and almost a decade of aCis access.   aCis is a community work, things tagged with Tryskell is my work, the leftover is someone else work. 22 ppl worked as developers in this project over 14 years.   I would gladly accept whatever list of fixes/reports you have to share. You will even be rewarded (you probably know about cookie system), as anyone else sharing bug report or fixes.   My main concerns lately is the lack of decent L2OFF IL data, it is my main bottleneck actually. If you're aware about decent L2OFF data to parse, let me know.   Eventually reach me over Discord to speak, I don't want to continue the offtopic over that help request.
    • Your project doesn't compare to aCis; you have to be an idiot to use that. I know someone who bought the High Five "PREMIUM" version, which has the same bugs as the free version. If you want, I can share his latest premium version. Players are going through walls with their bad geoengine, falling under the Olympiad. If you want, I can record and prove what I'm saying. The aCis project is 50 steps ahead of yours and it's not even stable...
    • l2jteon, l2joneo l2jscoria etc etc. and from that we went to this 
  • Topics

×
×
  • Create New...

Important Information

This community uses essential cookies to function properly. Non-essential cookies and third-party services are used only with your consent. Read our Privacy Policy and We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue..

AdBlock Extension Detected!

Our website is made possible by displaying online advertisements to our members.

Please disable AdBlock browser extension first, to be able to use our community.

I've Disabled AdBlock