Server Help Forum Index Server Help
Community forums for Subgame, ASSS, and bots
 
 FAQFAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups   StatisticsStatistics   RegisterRegister 
 ProfileProfile   Login to check your private messagesLogin to check your private messages   LoginLogin (SSL) 

Server Help | ASSS Wiki (0) | Shanky.com
Security of Open Source

 
Post new topic   This topic is locked you cannot edit posts or make replies Printable version
 View previous topic  persist.c - crash on load Post :: Post Need help, fast: Spawn points  View next topic  
Author Message
BDwinsAlt
Agurus's Posse


Age:34
Gender:Gender:Male
Joined: Jun 16 2003
Posts: 1145
Location: Alabama
Offline

PostPosted: Sun Nov 20, 2005 4:53 pm    Post subject: Security of Open Source This topic is locked you cannot edit posts or make replies Reply with quote

Well since AS3 is open source, im scared to use it. What is stopping people from using that to make people download trojans and unwanted things like spyware. They could use this to get/put files to your pc. I think some form of security needs to be put into as3 that cannot be changed. If it's already there, sry im not using ASSS cause im scared to. icon_eek.gif

What if someone screwed everyone over who came into their zone. That would suck. ROFL i can see the wallpapers now:

"You have been Hacked by xxxxxxx!"

then 2 days later windows won't start up.
Back to top
View users profile Send private message Add User to Ignore List Send email Visit posters website AIM Address Yahoo Messenger MSN Messenger
Dr Brain
Flip-flopping like a wind surfer


Age:39
Gender:Gender:Male
Joined: Dec 01 2002
Posts: 3502
Location: Hyperspace
Offline

PostPosted: Sun Nov 20, 2005 5:03 pm    Post subject: This topic is locked you cannot edit posts or make replies Reply with quote

You're talking about using asss as a player, not as a zone op, right?

First off, continuum can only get/put things to the continuum directory, so about the only thing it'd be able to do would be put random junk into your cont directory. This is very unsatisfying for a hacker, so they'd never bother. Besides, cont tells you whenever you receive a file, so you'd instantly know.
_________________
Hyperspace Owner

Smong> so long as 99% deaths feel lame it will always be hyperspace to me
Back to top
View users profile Send private message Add User to Ignore List AIM Address Yahoo Messenger MSN Messenger
BDwinsAlt
Agurus's Posse


Age:34
Gender:Gender:Male
Joined: Jun 16 2003
Posts: 1145
Location: Alabama
Offline

PostPosted: Sun Nov 20, 2005 5:05 pm    Post subject: This topic is locked you cannot edit posts or make replies Reply with quote

Oh i thought subgame told you. My Bad. Thanks for shutting me up icon_cool.gif
Back to top
View users profile Send private message Add User to Ignore List Send email Visit posters website AIM Address Yahoo Messenger MSN Messenger
Mr Ekted
Movie Geek


Gender:Gender:Male
Joined: Feb 09 2004
Posts: 1379
Offline

PostPosted: Sun Nov 20, 2005 6:05 pm    Post subject: This topic is locked you cannot edit posts or make replies Reply with quote

Cont only accepts BMP BM2 WAV WA2 TXT LVL LVZ and maybe a few other "non-executable" file types. Sure the zone op could put executable code in any of those, but then you'd still need something else to actually run it.
_________________
4,691 irradiated haggis!
Back to top
View users profile Send private message Add User to Ignore List
BDwinsAlt
Agurus's Posse


Age:34
Gender:Gender:Male
Joined: Jun 16 2003
Posts: 1145
Location: Alabama
Offline

PostPosted: Sun Nov 20, 2005 7:54 pm    Post subject: This topic is locked you cannot edit posts or make replies Reply with quote

But what if these people making another version of continuum don't put in things like only accepting certian file types and all. Then what happens.
Back to top
View users profile Send private message Add User to Ignore List Send email Visit posters website AIM Address Yahoo Messenger MSN Messenger
D1st0rt
Miss Directed Wannabe


Age:37
Gender:Gender:Male
Joined: Aug 31 2003
Posts: 2247
Location: Blacksburg, VA
Offline

PostPosted: Sun Nov 20, 2005 8:21 pm    Post subject: This topic is locked you cannot edit posts or make replies Reply with quote

Maybe you should stop using the internet because you could get unwanted files on your computer.
_________________

Back to top
View users profile Send private message Add User to Ignore List Visit posters website
Dr Brain
Flip-flopping like a wind surfer


Age:39
Gender:Gender:Male
Joined: Dec 01 2002
Posts: 3502
Location: Hyperspace
Offline

PostPosted: Sun Nov 20, 2005 8:25 pm    Post subject: This topic is locked you cannot edit posts or make replies Reply with quote

Mr Ekted wrote:
Cont only accepts BMP BM2 WAV WA2 TXT LVL LVZ and maybe a few other "non-executable" file types. Sure the zone op could put executable code in any of those, but then you'd still need something else to actually run it.


It accepts whatever I ask it for on my ASSS server. Most of the files I request have funky extensions, so I find your statement hard to believe (I don't see priit as the type to code in hundreds of odd allowed extensions). You sure it's not the server imposing that limit? I'm pretty sure that Cont won't let you override the main executable, but I'm not so sure beyond that.
Back to top
View users profile Send private message Add User to Ignore List AIM Address Yahoo Messenger MSN Messenger
Mr Ekted
Movie Geek


Gender:Gender:Male
Joined: Feb 09 2004
Posts: 1379
Offline

PostPosted: Sun Nov 20, 2005 8:28 pm    Post subject: This topic is locked you cannot edit posts or make replies Reply with quote

The client only ever requests LVL, LVZ, TXT, and CFG files I believe. And it will only extract and use files within an LVZ with certain extensions. You can use *getfile/*putfile on anything you like, but that's your own damn fault.
Back to top
View users profile Send private message Add User to Ignore List
Dr Brain
Flip-flopping like a wind surfer


Age:39
Gender:Gender:Male
Joined: Dec 01 2002
Posts: 3502
Location: Hyperspace
Offline

PostPosted: Sun Nov 20, 2005 8:44 pm    Post subject: This topic is locked you cannot edit posts or make replies Reply with quote

The client doesn't have to request anything to have it downloaded.

Here, I have a program explaining everything, BD. Just unzip and run it.




explanation.zip - 38.25 KB
File downloaded or viewed 17 time(s)
Back to top
View users profile Send private message Add User to Ignore List AIM Address Yahoo Messenger MSN Messenger
BDwinsAlt
Agurus's Posse


Age:34
Gender:Gender:Male
Joined: Jun 16 2003
Posts: 1145
Location: Alabama
Offline

PostPosted: Sun Nov 20, 2005 9:34 pm    Post subject: This topic is locked you cannot edit posts or make replies Reply with quote

ROFL
Back to top
View users profile Send private message Add User to Ignore List Send email Visit posters website AIM Address Yahoo Messenger MSN Messenger
BDwinsAlt
Agurus's Posse


Age:34
Gender:Gender:Male
Joined: Jun 16 2003
Posts: 1145
Location: Alabama
Offline

PostPosted: Sun Nov 20, 2005 9:35 pm    Post subject: This topic is locked you cannot edit posts or make replies Reply with quote

Dude i only posted this to see all the crazy things you ppl would come up with. I could careless about as3. I never use it.
Back to top
View users profile Send private message Add User to Ignore List Send email Visit posters website AIM Address Yahoo Messenger MSN Messenger
Display posts from previous:   
Post new topic   This topic is locked you cannot edit posts or make replies    Server Help Forum Index -> ASSS Questions All times are GMT - 5 Hours
Page 1 of 1

 
Jump to:  
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum
View online users | View Statistics | View Ignored List


Software by php BB © php BB Group
Server Load: 17 page(s) served in previous 5 minutes.

phpBB Created this page in 0.430183 seconds : 38 queries executed (92.8%): GZIP compression disabled