11 ms·
Hacking GTA V RP Servers Using Web Exploitation Techniques
- curiousgal 3y agoThat was a very nice write-up!
- nullpt_rs 3y agoThank you! Hope to publish more like it soon :)
- Jerrrry 3y agoLooking forward to reading it -- genuine, raw, straight up hacking is almost nostalgic at this point. wish we could get more bug bounty write up submissions
- rainonmoon 3y agoMy friend, you seem genuine in your enthusiasm if a little misinformed, so in the spirit of trying to stoke that rather than smother it, can I gently alert you to the thousands of bug bounty write ups you can read online? A decent place to start is the various H1 Disclosed writeups [0] but there's an avalanche of this sort of content on Medium (most not as well written as OP's, it must be said, but still very technical and detailed.) Good news! The time you're nostalgic for is right now! If people would like to share other blogs below which also post technical writeups for this poster, feel free. I'll throw in another one [1] too. [0] https://twitter.com/h1disclosed https://twitter.com/h1disclosed [1] https://jub0bs.com/posts/ https://jub0bs.com/posts/
- Jerrrry 3y agoThank you, this was precisely what I was looking for, as searching for "bug bounty write ups" in the past was more noise than signal; but this is what I wanted, thank you a lot!
- Jerrrry 3y agoI miss these kinda posts, so rare now. I know XSS is dying due to CORS and DLL injection is mooted by ALSR, that API's are usually authenticated and authorized, but damn... I wish there was a more collective place to showcase modern exploits, they just hit nice in the feelies.
- deleted 3y ago[deleted]
- shitlord 3y agoASLR doesn't stop DLL injection.
- l33t7332273 3y agoI think GP confused DLL injection with return to libc. I see why; in return to libc, which is prevented by ASLR, you are injecting the control of flow into the middle of a DLL(that DLL is libc). The terminology is a little confusing.
- Jerrrry 3y agomeant hooking functions statically or even dynamically with a minimal amount of codegolf'd asm instructions inserted via buffer overflow, and repairing the stack to sneak by stack smashing detecting, but yea, libc is implied in the linux environment
- rainonmoon 3y agoCORS doesn't prevent XSS and isn't designed to.
- nullpt_rs 3y agoI can sorta share this sentiment. Luckily (for us) tech seems to be moving in the direction of embedding Chromium everywhere which always leads to some fun exploits :)
- mtlynch 3y ago
- serf 3y agoit's nice seeing someone open with telling everyone that GTA V is some of the most poisoned online gameplay with regards to cheating. I don't agree with the conclusion that it's because it's peer-to-peer. that's not why -- it's because of lazy developer methods and a lower prioritization of security effort. the biggest genuine effort that Rockstar puts into anti-cheat effort is an occassional memory-structure shuffle to kick sand into cheat-engine users eyes, and the occassional honey-pot that bans a few hundred people -- and these efforts come after begging Rockstar for years to do something, and the most it accomplishes is selling additional copies of the already dirt-cheap game. These ban cycles and 'enforced ignorance' to the problem nets them more profit than it would otherwise; disenchanted players play less, reducing infrastructure costs -- and banned players buy another 2 dollar copy of the game -- but it kills user experience outside of single player entirely. They don't care. I get it, but it sucks -- and it's not some GTA6 thing, they never cared.
- usui 3y agoRockstar doing something about cheaters on their online experience won't affect a thing for what this post is talking about. The exploit in this post is for FiveM servers, a third-party mod. The interactions on here are not usually peer-to-peer.
- tehbeard 3y agoR* recently bought FiveM, so it's a bit less third party now. https://www.polygon.com/23828445/gta-5-mods-roleplay-red-dead-rockstar-fivem-redm https://www.polygon.com/23828445/gta-5-mods-roleplay-red-dea... Maybe they'll do the same as mojang did with bukkit, and leave it out to dry...
- mavamaarten 3y agoYeah, they absolutely don't care. It cannot be hard to detect griefing and obnoxious cheating by just looking at player behavior. How hard can it be to detect 90000000000 in-game dollars to be added to players, how hard can it be to detect that someone is blowing up everyone in the server, ... They just don't care, and it's a shame because GTA V still holds up as a fantastic game even after all these years.
- mgl 3y agoThe „good news” is that code injections are still widely popular in a form of supply chain attacks. And this is also our fault, e.g. due to the explosion of dependency hell in npm libraries. This is probably the best intro to modern supply chain attacks and detection techniques, just shared with my team this week: https://youtu.be/3pLfkutz1x8 https://youtu.be/3pLfkutz1x8 (edit: removed youtube tracking)
- deleted 3y ago[deleted]
- dns_snek 3y agoIs this an ad? The video is essentially an ad for the vendor's solution that's unrelated to the original post.
- padjo 3y agoA bit off topic but I played a bit of GTA online recently after not playing for years, was really amazed at how little it had developed in terms of core gameplay. Lots of new weapons and vehicles but very little to make a compelling game.
- hellotheretoday 3y agoThat’s modern gaming now. Once they figured out the concept of the Skinner box it was all downhill I do wonder if there are statistics on how many of the attempts at creating micro transaction economies fail though. I hope it’s high. I feel like it has to be, but I guess at the same time it’s a question of as long as game sales recoup development costs any micro transaction stuff just needs to cover server and admin costs and then the rest is all profit. But I feel like so many studios go in hoping to recreate Fortnite, Roblox, or gta V and that’s just so unlikely.
- Alifatisk 3y agoThey misspelled “amount” “amountt: $('#transferval').val()” But great dive into FiveM! Had no idea it came bundled with Vue.