Posts: 15
Threads: 9
Joined: Jul 2008
Reputation:
0
07-10-2009, 08:17 AM
(This post was last modified: 07-10-2009, 08:18 AM by fishtankmonster.)
Hi all I have a dedicated server...not SRCDS but I dont know where else to post this.
I am a new server owner. Someone recently came on my server and hacked it.
He changed the name and put a password on server. Then he banned everyone.
I think this was done through RCON but I really dont know how.
I have turned off the server. How can I protect the server??
THANKS
Posts: 7,778
Threads: 176
Joined: May 2008
Reputation:
83
Make a unbreakable password for RCon. Which shouldn't be that hard. And don't make other people admins, only yourself.
Posts: 1,655
Threads: 38
Joined: Apr 2008
Reputation:
20
Do you have Mani or Eventscripts? There are ways to exploit your server if you use either one.
Posts: 33
Threads: 4
Joined: Jul 2009
Reputation:
0
it have happened to me he asked me to put on sv_cheats 1 i did it then he started tp spawn objects like barrels walls and stuff the everyone being banned and he changed the rcon password but i don´r know any way to change rcon pw trugh console ^o) i have the hackers steam id:
STEAM_0:1:6240526
noooooooooone
Posts: 1,321
Threads: 85
Joined: Feb 2008
Reputation:
11
Their is a widely available script to change the servers rcon password if sv_cheats is set to 1.
~ trewq
Posts: 15
Threads: 9
Joined: Jul 2008
Reputation:
0
The server is unsecure and I have mani admin installed.
SV_cheats is set to 0
What do I do?
Posts: 15
Threads: 9
Joined: Jul 2008
Reputation:
0
Also if I just outright disable RCON, am I protected against hackers?
Posts: 7,778
Threads: 176
Joined: May 2008
Reputation:
83
Yes. If you ran the server with no RCon password, no admin plugins and sv_cheats 0 you will be save.
Posts: 779
Threads: 5
Joined: Apr 2008
Reputation:
9
You are the server owner....so what's the problem? Keep that super-safe Rcon password to yourself ...
Posts: 3
Threads: 1
Joined: Jul 2009
Reputation:
0
Add rcon_lock and exploit_coverup like mentioned above and also install zBlock. It prevents from DoS attacks.
And try to make a good RCON. Don't give it out to anyone.
Posts: 234
Threads: 11
Joined: May 2008
Reputation:
3
Those scripts are sooo funn. I love the tornado one. Also the rcon hacking script doesn't re-write the server.cfg. So as long as he doesnt know the real rcon, you should be fine. unless i'm mistaken.
Posts: 1,033
Threads: 13
Joined: Oct 2008
Reputation:
11
You know its a stupid thing mentioning that you know how to do it, and that you love them which mean you use them often, which means you deserve to be banned from every server you go to...
Posts: 53
Threads: 4
Joined: Feb 2009
Reputation:
0
I'd also recommend zblock.