1. The forums will be archived and moved to a read only mode in about 2 weeks (mid march).

How do servers get hacked?

Discussion in 'General discussion' started by Levi, Jun 10, 2018.

  1. Levi

    Levi Skeleton

    Messages:
    955
    GitHub:
    captainleviftw
    I had a server before and I'm the only one OP in it or with the restricted permission but there are people who managed to 'hack' the server and get OP(restricted perms) for themselves. I kept deoping and banning them but they kept coming with OP and stuff. Is force OP real?

    fyi i only got the password for the server's files and it's has like 20 characters
     
  2. Tee7even

    Tee7even Slime

    Messages:
    81
    GitHub:
    tee7even
    The common case is to use plugins from questionable sources. Those plugins can contain various backdoors for certain players to get OP (at very least). Other than that there may be a lot of reasons actually, so it's better to provide more info.
     
  3. SOFe

    SOFe Administrator Staff Member PMMP Team Poggit Admin

    Messages:
    1,968
    GitHub:
    sof3
    The same way as how your wallet got stolen. Your wallet is in your pocket, and you are attentive to every person walking nearby, and you occasionally check if it's still there. How come the money inside suddenly disappeared?
     
    HimbeersaftLP and Thunder33345 like this.
  4. Thunder33345

    Thunder33345 Moderator Staff Member

    Messages:
    2,137
    GitHub:
    Thunder33345
    make sure plugins dont have backdoors
    having some command logger could kinda help
    checking user's permission helps too
    some might have * in pureperm
    some plugin backdoor might not need command to invoke(example throw a stick followed by stone to activate)
    regardless of the password length you should change it
     
  5. SOFe

    SOFe Administrator Staff Member PMMP Team Poggit Admin

    Messages:
    1,968
    GitHub:
    sof3
    Spoiler: the permissions system is quite broken.
     
    Thunder33345 likes this.
  6. Levi

    Levi Skeleton

    Messages:
    955
    GitHub:
    captainleviftw
    The pocketmine system or pureperms?
     
    Thunder33345 likes this.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.