Page 1 of 2 12 LastLast
Results 1 to 15 of 19
  1. #1
    supercarz1991's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Posts
    6,285
    Reputation
    435
    Thanks
    3,719
    My Mood
    Doh

    I may have cracked nexon again by accident...

    I haven't tried with anything serious yet or even gone in game, but i did manage to discover HOW they are checking the rez files and it may be VERY easy to bypass and it's something that should remain unpatched

    commando: You're probably the best non-coder coder I know LOL


  2. The Following 2 Users Say Thank You to supercarz1991 For This Useful Post:

    iEnVy (01-03-2014),mavaja33 (12-17-2013)

  3. #2
    Skaterforeva1's Avatar
    Join Date
    Apr 2010
    Gender
    male
    Location
    Up your ass
    Posts
    936
    Reputation
    32
    Thanks
    485
    My Mood
    Psychedelic
    You are the single reason that nexon has to do so much work. But its pretty epic. Congrats.




    ^Suck it!

  4. #3
    supercarz1991's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Posts
    6,285
    Reputation
    435
    Thanks
    3,719
    My Mood
    Doh
    i'll give everyone a hint...

    md5 spoofing is very easy...

    md5clone

    commando: You're probably the best non-coder coder I know LOL


  5. The Following User Says Thank You to supercarz1991 For This Useful Post:

    Skaterforeva1 (12-17-2013)

  6. #4
    maniac16's Avatar
    Join Date
    Nov 2009
    Gender
    male
    Posts
    307
    Reputation
    9
    Thanks
    36
    My Mood
    Devilish
    Wow Nice o:

    Sold accounts: CA LTC NA
    Dont forget to thank/me

  7. #5
    B4NDiT26's Avatar
    Join Date
    Apr 2012
    Gender
    male
    Posts
    1,010
    Reputation
    26
    Thanks
    32
    My Mood
    Shocked
    Thanks for the hint.

  8. #6
    supercarz1991's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Posts
    6,285
    Reputation
    435
    Thanks
    3,719
    My Mood
    Doh
    i you know how to use google, you'll figure it out from there

    commando: You're probably the best non-coder coder I know LOL


  9. #7
    B4NDiT26's Avatar
    Join Date
    Apr 2012
    Gender
    male
    Posts
    1,010
    Reputation
    26
    Thanks
    32
    My Mood
    Shocked
    Quote Originally Posted by supercarz1991 View Post
    i you know how to use google, you'll figure it out from there
    Yep^^

    But I don't have time to edit .rez, it should work with an old .rez chams anyway, right?

  10. #8
    lilghost8631's Avatar
    Join Date
    Jul 2013
    Gender
    male
    Posts
    68
    Reputation
    10
    Thanks
    14
    it's just a checksum correct? Seems easy enough, but the easiest bypass would be to hook the function that performs the checksum and force it to return the valid number. Or i suppose the checksum must be stored locally somewhere so find that hash and change it to yours?

  11. #9
    supercarz1991's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Posts
    6,285
    Reputation
    435
    Thanks
    3,719
    My Mood
    Doh
    Quote Originally Posted by lilghost8631 View Post
    it's just a checksum correct? Seems easy enough, but the easiest bypass would be to hook the function that performs the checksum and force it to return the valid number. Or i suppose the checksum must be stored locally somewhere so find that hash and change it to yours?
    the point of modding is to not have something you need to code to bypass. the point of modding is JUST modding the files with already created 3rd party tools. if you create something that hooks a function, your just making a hack correct? then just use a hack

    commando: You're probably the best non-coder coder I know LOL


  12. #10
    lilghost8631's Avatar
    Join Date
    Jul 2013
    Gender
    male
    Posts
    68
    Reputation
    10
    Thanks
    14
    Quote Originally Posted by supercarz1991 View Post
    the point of modding is to not have something you need to code to bypass. the point of modding is JUST modding the files with already created 3rd party tools. if you create something that hooks a function, your just making a hack correct? then just use a hack
    I know what modding is, I was just stating that a simple hook would be easier. However I do enjoy the challenge of modding.

  13. #11
    supercarz1991's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Posts
    6,285
    Reputation
    435
    Thanks
    3,719
    My Mood
    Doh
    Quote Originally Posted by lilghost8631 View Post
    I know what modding is, I was just stating that a simple hook would be easier. However I do enjoy the challenge of modding.
    hacking and hooking (with proper knowledge) is probably always easier. Frankly i think if they would have played their cards right, this could have been much funnier XD

    imagine if they took the MD5's of the modded rez files for a month and any rez file that was different, insta ban

    commando: You're probably the best non-coder coder I know LOL


  14. #12
    lilghost8631's Avatar
    Join Date
    Jul 2013
    Gender
    male
    Posts
    68
    Reputation
    10
    Thanks
    14
    Quote Originally Posted by supercarz1991 View Post
    hacking and hooking (with proper knowledge) is probably always easier. Frankly i think if they would have played their cards right, this could have been much funnier XD

    imagine if they took the MD5's of the modded rez files for a month and any rez file that was different, insta ban
    Without looking at it, I'm not sure what protocol you're referring to. I just assume it's an MD5 checksum on the files that's stored locally and thus any checksum could be put in place for the original value.

  15. #13
    supercarz1991's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Posts
    6,285
    Reputation
    435
    Thanks
    3,719
    My Mood
    Doh
    Quote Originally Posted by lilghost8631 View Post
    Without looking at it, I'm not sure what protocol you're referring to. I just assume it's an MD5 checksum on the files that's stored locally and thus any checksum could be put in place for the original value.
    its server sided. they have a Game folder on the server that gets scanned at the beginning of the game launch, at loading screen. the game folder on their side gets scanned, if any of our files are different

    commando: You're probably the best non-coder coder I know LOL


  16. #14
    lilghost8631's Avatar
    Join Date
    Jul 2013
    Gender
    male
    Posts
    68
    Reputation
    10
    Thanks
    14
    Quote Originally Posted by supercarz1991 View Post
    its server sided. they have a Game folder on the server that gets scanned at the beginning of the game launch, at loading screen. the game folder on their side gets scanned, if any of our files are different
    Not seeing a weak spot here without hooking or SQLi (very frowned upon).

    ----
    I see you got the idea from this post:
    https://www.mpgh.net/forum/211-combat...ml#post9108349

    ----
    nvm just saw your post afterwards
    Last edited by lilghost8631; 12-20-2013 at 09:07 PM.

  17. #15
    supercarz1991's Avatar
    Join Date
    Jul 2010
    Gender
    male
    Posts
    6,285
    Reputation
    435
    Thanks
    3,719
    My Mood
    Doh
    Quote Originally Posted by lilghost8631 View Post
    Not seeing a weak spot here without hooking or SQLi (very frowned upon).

    ----
    I see you got the idea from this post:
    https://www.mpgh.net/forum/211-combat...ml#post9108349

    ----
    nvm just saw your post afterwards
    it's easier to spoof it than it is to hook a function. If you were going to go that route though, no point in hooking sqli and doing all that crap. The game works on Send to Server commands. almost everything has an ID and parameters. Just figure out the ID and block the ID or manipulate the params. It's not that hard, that's how unlimited ammo works

    commando: You're probably the best non-coder coder I know LOL


  18. The Following User Says Thank You to supercarz1991 For This Useful Post:

    claypole2 (12-28-2013)

Page 1 of 2 12 LastLast

Similar Threads

  1. [Tutorial] i have found one again
    By tdcoolboy in forum WarRock Discussions
    Replies: 4
    Last Post: 10-19-2009, 10:27 AM
  2. I can Crack nexon accounts
    By monsterthejuggalo in forum Combat Arms Discussions
    Replies: 9
    Last Post: 10-08-2009, 05:25 PM
  3. ANY IDEA IF MPGH WILL EVER HAVE VIP CA AGAIN
    By bigbadwolf in forum Combat Arms Hacks & Cheats
    Replies: 22
    Last Post: 06-25-2009, 12:05 AM
  4. May have fix for Arberb's gun hack for Vista.
    By Toxin in forum CrossFire Hacks & Cheats
    Replies: 193
    Last Post: 05-09-2009, 11:22 AM
  5. SOLVE MOST OF THE PROBS U MAY HAVE!
    By merderer16 in forum Combat Arms Hacks & Cheats
    Replies: 17
    Last Post: 12-23-2008, 08:45 PM