PostPatchedRequestFile exploit release ( RCON stealing )

Posts 46–60 of 172 · Page 4 of 12
there is a secret where you can use this on every server

incrementvar sv_allowdownload 0 1 1
how do you use it on any server
Quote Originally Posted by buckballs View Post
how do you use it on any server
lua_run_cl cam.End3D();request_file cfg/cfg
Quote Originally Posted by LeaDeR20 View Post
So you are saying mess up with people who open the server new
In theory yes. However it only works if these reasons are correct.

1) sv_allowdownload is set to 1
2) rcon_password is set in the server.cfg rather than being set through command line like certain server hosts do.
Example: NFOServers
Holy shit i didnt know i had to give huge spoonfeed instructions with this. Just go into a server and request a file, if it says opening then you grabbed it ( saves to your downloads folder in gmod ). also it only works on servers with sv_allowdownload to 1, And you cant tell what the cvar is set to because it isnt replicated to the client. So you just gotta test and see what servers are vulnerable
Thank you mate
I just enter to one server,got rcon password.
writed rcon_password password to the console.
Nothing happened.

- - - Updated - - -

I just enter to one server,got rcon password.
writed rcon_password password to the console.
Nothing happened.
lol he just banned me from wrong rcon lol

- - - Updated - - -

for*
lolollol
I would love to know how it works in detail.

Is it request_file/send_file in engine.dll?
Quote Originally Posted by itchinganus View Post
I would love to know how it works in detail.
use sourcesdk
include inetchannel.h
https://github.com/ValveSoftware/sou...tchannel.h#L73

i think that's all there is.

then you'd also use convar.h to add the concommands
Quote Originally Posted by tdsx View Post
use sourcesdk
include inetchannel.h
https://github.com/ValveSoftware/sou...tchannel.h#L73

i think that's all there is.

then you'd also use convar.h to add the concommands
No, There is a bit more to it. You need to detour some shit and hook a file function ( forget the exact name ). iirc it sends a huge payload or something
Quote Originally Posted by ehex View Post
No, There is a bit more to it. You need to detour some shit and hook a file function ( forget the exact name ). iirc it sends a huge payload or something
IsSafeFileToDownload
Quote Originally Posted by Kona-chan View Post
IsSafeFileToDownload
you can do it without hooking anything at all - it's not hard
Quote Originally Posted by MeepDarknessMeep View Post
you can do it without hooking anything at all - it's not hard
nobody said it was hard
Quote Originally Posted by Kona-chan View Post
nobody said it was hard
i never said anyone said it was hard
Sorry to be rude and idiotic but may I please have some instructions as to what to do once the dll is injected?
Posts 46–60 of 172 · Page 4 of 12
This thread is closed for replies.

Similar Threads

Tags for this Thread

Talk with us