Server vulnerabilities scanner

Bluscream

Retired Staff
Contributor
Joined
May 8, 2015
Messages
967
Reaction score
934
Points
211
Regarding to this post: http://forum.teamspeak.com/showthre...ent-3-0-18-1-is-Available?p=420981#post420981 i got a idea.
Maybe someone like @hASVAN with php knowledge could create a subdomain like https://scan.r4p3.net where you can scan a TS³ server for known vulnerabilities with query.
It could come in handy for serveradmins to check if their server is safe and for 1337 h4x0rs to see if a server is vulnerable to known exploits.

It could use query to check if there guest server query is permitted to spam channels/pokes/msgs etc.
Also it could check the server version to see if it is outdated 'n stuff.

Just a idea :)
 

fyfywka

TeamSpeak Developer
Contributor
Joined
Sep 10, 2015
Messages
147
Reaction score
140
Points
158
First: Thanks

But, is there a "Doc." or something?
Which Colour means what?
FAQ under construction)
red - bad
green - good
yellow - the scanner is not connected - good
 

Pim

Member
Joined
Sep 27, 2015
Messages
71
Reaction score
9
Points
43
omg fyfywka o.o... you.... i know you...
 

Pim

Member
Joined
Sep 27, 2015
Messages
71
Reaction score
9
Points
43
Hmm im not sure if its you... the original fyfywka.. i banned you in my ts3 server coz of trying to get access to my serverquery......

[edit]
mistaken :<
 
Last edited:

fyfywka

TeamSpeak Developer
Contributor
Joined
Sep 10, 2015
Messages
147
Reaction score
140
Points
158
Hmm im not sure if its you... the original fyfywka.. i banned you in my ts3 server coz of trying to get access to my serverquery......
it was not a hack, it was a global scan of 400 000 servers for vulnerabilities and how to determine what I wanted to get serverquery access?
f11671ed93.png
 

Pim

Member
Joined
Sep 27, 2015
Messages
71
Reaction score
9
Points
43
it was not a hack, it was a global scan of 400 000 servers for vulnerabilities and how to determine what I wanted to get serverquery access?
f11671ed93.png
oh okay i think i was mistaken about it.. i tried that vulnerability scanner... anw.. how to see that thing? so sorry man (im still a noob)
 

Glumanda

Member
Joined
Sep 25, 2015
Messages
9
Reaction score
14
Points
38
Why u save our "Input Server" in your Database D:

Evil fyfywka ^^
 

fyfywka

TeamSpeak Developer
Contributor
Joined
Sep 10, 2015
Messages
147
Reaction score
140
Points
158
I did not save servers IP, I have a database 400 000 servers :)
e79cb7fdbf473f5f7f93de6500f1755ea0a46758.png
 

Glumanda

Member
Joined
Sep 25, 2015
Messages
9
Reaction score
14
Points
38
Its clear, that u Save the IP + Port + Query + "NOW()" (Current Date)

In your Database -.-'

You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '10011','[CENSORED]', NOW(), '', '', '', '', '', '', '')' at line 1

There was and is a SQL-Injection on your Site, i've seen all....
No need to deny...
 

fyfywka

TeamSpeak Developer
Contributor
Joined
Sep 10, 2015
Messages
147
Reaction score
140
Points
158
it persists for a while to avoid mass scan
 

Glumanda

Member
Joined
Sep 25, 2015
Messages
9
Reaction score
14
Points
38
At first you said: "I did not save servers IP"
Now: "it persists for a while to avoid mass scan"

BTW: Even when you double or triple check a ip with same port etc.
It saves it - I tested ;)

I know why i dont trust you ;)

Anyway its a nice move of you to share this Script with everyone.
But the Save-Thing is a bitch move.
 

fyfywka

TeamSpeak Developer
Contributor
Joined
Sep 10, 2015
Messages
147
Reaction score
140
Points
158
Well, write to me on how to avoid that you have not started to scan 24/7 using the site do not save anything
 
Top