misgav11Join Date: 2011-04-21 Post Count: 3418 |
^^^^
OHH, ok. |
|
|
@Met I gave it to sorcus, and I felt like releasing it to the Scripters forum because it can't be used online and can't be used in plugins, and can only be used in visit.ashx, and must be entered manually by the user, and it only spills the environment and there might not be an easy way to get level 7 |
|
|
Oh hi there. People mention me a lot in exploit threads apparently.
This doesn't look exploitable at all - it's just command bar having the same environment as join.ashx because $reasons, so stop complaining it's ruining roblox blah blah blah. Having a bug bounty program, even if it's just virtual items like Boss White Hat is, is a good idea to give incentive to report it correctly instead of abusing actual exploits, and generally most security-conscientious companies do it. Also I doubt that this bug is just about level 5 being crazy, since I'm certain that StarterScripts wouldn't also have the same environment as join.ashx even if Command Line does. |
|
MettaurSpJoin Date: 2010-03-20 Post Count: 3179 |
As for the whole environment problem, wat u smoking Roblox? Might as well allow us to tap into C side stuff and error 'Nope, not 4 u' when we edit it. I honestly don't see how or why something like this would even end up happening in the first place. |
|
|
hi render
I already mailed sorcus |
|
MettaurSpJoin Date: 2010-03-20 Post Count: 3179 |
Hai Render. |
|
|
and render, with this you've got access to the level 7 environment. It's writable.q |
|
|
And besides render I've never really exploited anything roblox-related by myself, and now I've found an exploit that gives access to the environment of a level 7 thread. |
|
|
Yea, I noticed that. Nice little exploit to elevate to level 7 without having to flip a memory flag. I meant exploitable in the way of ruining-all-of-roblox like people were posting about. I'm going to guess that it's something to do with how they are running stand-alone Lua - join.ashx is loaded via the --script argument, which also isn't bound to a Script instance like normal Lua is ran as, which is the same quirk that Command Line does. |
|
|
|
|
wat
'01-01-2014 11:38 PM'
its 1/2/2014 here
y forum no work with different timezones qq |
|
|
|
That's nothing. The Roblox forums orders posts by time, right, so every post should appear in the correct order, right?
Wrong.
Every time daylight saving time ends, it shifts the server's clock back, so every post received for the first hour after it ends can appear like it was posted before anything posted before it ended as long as someone posted something in the hour leading up to the end of daylight savings time. This means that even the original post in a thread can be replaced by anyone who posts there within that window of time. |
|
|
I am going to start to report misgavs posts because he is spamming and making utterly stupid comments.
Misgav, my message to you, get out, before you are banned. |
|
|
You used to be able to gain level 7 permissions via cheat engine and some lousy DLL files to inject. :p And everyone stop complaining about this hack, you need level 4-5 permission environment before anything, plus the fact that Ryan is practically TELLING the mods about this so they can potentially patch it. -Fuai0n
Source: I hack :p |
|
|
And that misgav kid, please, get out before you have oversensitive legit hackers come after you. ;D |
|
cntkillmeJoin Date: 2008-04-07 Post Count: 49450 |
You realize you just admitted to hacking, right? |
|
|
EXPLOITINGGGGGGGGGGG*
EXPLOITTTTTTTT********************
|
|
|
Fusi0nScripter oh my god
just
just what
u wot m8 |
|
MettaurSpJoin Date: 2010-03-20 Post Count: 3179 |
lol |
|
cntkillmeJoin Date: 2008-04-07 Post Count: 49450 |
It's funny because he says "over-legit hackers" and he's probably just leaching dotdotdot inb4flamewar |
|
|
fusi0n thinks hes kool
he b al lik
yo homies ik how this "hacking" thing works (thats wut i think its called) so ya i also hack so ya im cool |
|
|
Ohhhhhh my
OH MY
SWEET JESUS
IF YOU MODIFY THIS
THIS CAN GET YOU SERVER SIDED LEVEL 7
I HAVE LEVEL 5 :D
THANK YOU, MOAR HIGHER CONTEXT
(I just like playing with high context's :D)
Plus my script only functions correcly when run at level 4 + |
|
cntkillmeJoin Date: 2008-04-07 Post Count: 49450 |
Why is level 7 such a big deal honestly?
Level 4 has everything most people want |
|