]> jfr.im git - irc.git/blob - software/!RELEASES/ircservices/achurch.org/services/lists/ircservices/2002/002845.html
RELEASE -> !RELEASE
[irc.git] / software / !RELEASES / ircservices / achurch.org / services / lists / ircservices / 2002 / 002845.html
1 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
2 <HTML>
3 <HEAD>
4 <TITLE> [IRCServices] /ns ghost exploit
5 </TITLE>
6 <LINK REL="Index" HREF="index.html" >
7 <LINK REL="made" HREF="mailto:ircservices%40ircservices.za.net?Subject=%5BIRCServices%5D%20/ns%20ghost%20exploit&In-Reply-To=3c9062fb.05657%40achurch.org">
8 <META NAME="robots" CONTENT="index,nofollow">
9 <META http-equiv="Content-Type" content="text/html; charset=us-ascii">
10 <LINK REL="Previous" HREF="002844.html">
11 <LINK REL="Next" HREF="002846.html">
12 </HEAD>
13 <BODY BGCOLOR="#ffffff">
14 <H1>[IRCServices] /ns ghost exploit</H1>
15 <B>J.Brown (Ender/Amigo)</B>
16 <A HREF="mailto:ircservices%40ircservices.za.net?Subject=%5BIRCServices%5D%20/ns%20ghost%20exploit&In-Reply-To=3c9062fb.05657%40achurch.org"
17 TITLE="[IRCServices] /ns ghost exploit">ender at enderboi.com
18 </A><BR>
19 <I>Thu Mar 14 10:50:01 PST 2002</I>
20 <P><UL>
21 <LI>Previous message: <A HREF="002844.html">[IRCServices] /ns ghost exploit
22 </A></li>
23 <LI>Next message: <A HREF="002846.html">[IRCServices] /ns ghost exploit
24 </A></li>
25 <LI> <B>Messages sorted by:</B>
26 <a href="date.html#2845">[ date ]</a>
27 <a href="thread.html#2845">[ thread ]</a>
28 <a href="subject.html#2845">[ subject ]</a>
29 <a href="author.html#2845">[ author ]</a>
30 </LI>
31 </UL>
32 <HR>
33 <!--beginarticle-->
34 <PRE>I believe what he's trying to get at is this:
35
36 - User 'nick' registers 'othernick', 'anothernick', 'toomanynicks'.
37 - User 'nick' has a script which will ghost any other user using those
38 nicknames
39 - New user connects with nickname 'othernick' and gets ghosted straight
40 away by the script.
41
42 Personally, I really don't see too much of a problem with this. Sure, it
43 would be nice if the new user was just asked by Nickserv to change his
44 nickname - but..
45
46
47 Regards, | Server Admin: bean.esper.net
48 | Server Admin: forte.nevernet.net
49 |
50 Ender | <A HREF="http://www.enderboi.com/">http://www.enderboi.com/</A>
51 (James Brown) | [Nehahra, ScummVM, PureLS, www.QuakeSrc.org]
52
53 On Thu, 14 Mar 2002, Andrew Church wrote:
54
55 &gt;<i> Date: Thu, 14 Mar 2002 17:42:56 JST
56 </I>&gt;<i> From: Andrew Church &lt;<A HREF="http://www.ircservices.za.net/mailman/listinfo/ircservices">achurch at achurch.org</A>&gt;
57 </I>&gt;<i> Reply-To: <A HREF="http://www.ircservices.za.net/mailman/listinfo/ircservices">ircservices at ircservices.za.net</A>
58 </I>&gt;<i> To: <A HREF="http://www.ircservices.za.net/mailman/listinfo/ircservices">ircservices at ircservices.za.net</A>
59 </I>&gt;<i> Subject: Re: [IRCServices] /ns ghost exploit
60 </I>&gt;<i>
61 </I>&gt;<i> Services does not use SVSKILL in the first place, and does not allow
62 </I>&gt;<i> GHOST anyway without a password unless the calling user is on the access
63 </I>&gt;<i> list of the target nick _and_ the nick does not have the SECURE option set.
64 </I>&gt;<i> Have you modified Services?
65 </I>&gt;<i>
66 </I>&gt;<i> --Andrew Church
67 </I>&gt;<i> <A HREF="http://www.ircservices.za.net/mailman/listinfo/ircservices">achurch at achurch.org</A>
68 </I>&gt;<i> <A HREF="http://achurch.org/">http://achurch.org/</A>
69 </I>&gt;<i>
70 </I>&gt;<i> &gt;Something I recently became aware of was users &quot;abusing&quot; the ghost command.
71 </I>&gt;<i> &gt;
72 </I>&gt;<i> &gt;When the ghost command is issued, Services will SVSKILL the user from the
73 </I>&gt;<i> &gt;network. However, the new trend appears to be setting up a notify script,
74 </I>&gt;<i> &gt;which will automatically ghost any user trying to use a given nickname.
75 </I>&gt;<i> &gt;This quickly became popular. How this came to my attention is that a new
76 </I>&gt;<i> &gt;user was trying to access the network but was repeatedly killed by the
77 </I>&gt;<i> &gt;ghost command.
78 </I>&gt;<i> &gt;
79 </I>&gt;<i> &gt;Use of &quot;kill immediate&quot; should be sufficient for those users who do not
80 </I>&gt;<i> &gt;want people using their nicknames and can be handled by services with a
81 </I>&gt;<i> &gt;nick change so I do not see use of the command in this manner as
82 </I>&gt;<i> &gt;beneficial.
83 </I>&gt;<i> &gt;
84 </I>&gt;<i> &gt;One way to remove this exploit which seems the least complex to actually
85 </I>&gt;<i> &gt;manage is to only trigger the ghost if the target is currently identified.
86 </I>&gt;<i> &gt;
87 </I>&gt;<i> &gt;This would mean that in the event a user got disconnected before they were
88 </I>&gt;<i> &gt;able to identify, they would be unable to remove a real 'ghost' on
89 </I>&gt;<i> &gt;reconnect with the ghost command, but they could use 'recover'
90 </I>&gt;<i> &gt;and 'release' instead. I believe that the 'recover' will &quot;guest&quot; a user
91 </I>&gt;<i> &gt;where NSForceNickChange is enabled.
92 </I>&gt;<i> &gt;
93 </I>&gt;<i> &gt;--
94 </I>&gt;<i> &gt;Mark.
95 </I>&gt;<i> &gt;
96 </I>&gt;<i> &gt;
97 </I>&gt;<i> &gt;------------------------------------------------------------------
98 </I>&gt;<i> &gt;To unsubscribe or change your subscription options, visit:
99 </I>&gt;<i> &gt;<A HREF="http://www.ircservices.za.net/mailman/listinfo/ircservices">http://www.ircservices.za.net/mailman/listinfo/ircservices</A>
100 </I>&gt;<i> ------------------------------------------------------------------
101 </I>&gt;<i> To unsubscribe or change your subscription options, visit:
102 </I>&gt;<i> <A HREF="http://www.ircservices.za.net/mailman/listinfo/ircservices">http://www.ircservices.za.net/mailman/listinfo/ircservices</A>
103 </I>&gt;<i>
104 </I>
105
106 </PRE>
107
108 <!--endarticle-->
109 <HR>
110 <P><UL>
111 <!--threads-->
112 <LI>Previous message: <A HREF="002844.html">[IRCServices] /ns ghost exploit
113 </A></li>
114 <LI>Next message: <A HREF="002846.html">[IRCServices] /ns ghost exploit
115 </A></li>
116 <LI> <B>Messages sorted by:</B>
117 <a href="date.html#2845">[ date ]</a>
118 <a href="thread.html#2845">[ thread ]</a>
119 <a href="subject.html#2845">[ subject ]</a>
120 <a href="author.html#2845">[ author ]</a>
121 </LI>
122 </UL>
123
124 </body></html>