Help There is a new exploit on all servers?

skiver

New member
Joined
Oct 20, 2024
Messages
1
Reaction score
0
things are starting to boil on openmp, one of the developers has information about a new exploit, does anyone have more information about it, what is it?

PBwoVoy.png
XMuIlpr.png
Cjmb45d.png
 

Hidend

Expert
Joined
Mar 4, 2013
Messages
656
Reaction score
50
The IP spoofing is refering to this: https://www.blast.hk/threads/215391
Basically some russians are selling an RCE exploit (Server->Client) but if you know a client IP, you can basically do Client->Client and run any file on their end, client can be on any server too so yeah.

In the last picture I think “fzfzfz” is referring to this exploit that he found out that works in <=R5: https://www.blast.hk/threads/222394/ which is a Server->Client RCE exploit. Nothing new tbh
 

SobFoX

Expert
Joined
Jul 14, 2015
Messages
1,463
Solutions
5
Reaction score
916
Location
Israel
This game is fundamentally broken in the raknet system
Openmp also has other weaknesses
This platform is dead.
If you want you can go play at MTA
And with a little work, gamemode can be converted with the help of a plugin to an MTA server
Not that complicated, I did it myself a few years ago

There are still people who insist on developing new platforms, I saw one that gives syncNPC which is very nice because even MTA didn't do it (it is not clear why it is easy and they have the knowledge for this and more..)

In this whole game it is not safe and the only way to be protected from RCE is to sit on a socket connection and look for bytes that are relevant to the exeute/dll loader code

But this can also be bypassed, in short the game is dead, the time will come to delete it
 
Top