Server vulnerabilities scanner

Bluscream

Retired Staff
Contributor
May 8, 2015
967
934
211
Regarding to this post: http://forum.teamspeak.com/showthre...ent-3-0-18-1-is-Available?p=420981#post420981 i got a idea.
Maybe someone like @hASVAN with php knowledge could create a subdomain like https://scan.r4p3.net where you can scan a TS³ server for known vulnerabilities with query.
It could come in handy for serveradmins to check if their server is safe and for 1337 h4x0rs to see if a server is vulnerable to known exploits.

It could use query to check if there guest server query is permitted to spam channels/pokes/msgs etc.
Also it could check the server version to see if it is outdated 'n stuff.

Just a idea :)
 

Pim

Member
Sep 27, 2015
71
9
43
Hmm im not sure if its you... the original fyfywka.. i banned you in my ts3 server coz of trying to get access to my serverquery......

[edit]
mistaken :<
 
Last edited:

fyfywka

TeamSpeak Developer
Contributor
Sep 10, 2015
147
140
158
Hmm im not sure if its you... the original fyfywka.. i banned you in my ts3 server coz of trying to get access to my serverquery......
it was not a hack, it was a global scan of 400 000 servers for vulnerabilities and how to determine what I wanted to get serverquery access?
f11671ed93.png
 

Pim

Member
Sep 27, 2015
71
9
43
it was not a hack, it was a global scan of 400 000 servers for vulnerabilities and how to determine what I wanted to get serverquery access?
f11671ed93.png
oh okay i think i was mistaken about it.. i tried that vulnerability scanner... anw.. how to see that thing? so sorry man (im still a noob)
 

fyfywka

TeamSpeak Developer
Contributor
Sep 10, 2015
147
140
158
I did not save servers IP, I have a database 400 000 servers :)
e79cb7fdbf473f5f7f93de6500f1755ea0a46758.png
 

Glumanda

Member
Sep 25, 2015
9
14
38
Its clear, that u Save the IP + Port + Query + "NOW()" (Current Date)

In your Database -.-'

You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '10011','[CENSORED]', NOW(), '', '', '', '', '', '', '')' at line 1

There was and is a SQL-Injection on your Site, i've seen all....
No need to deny...
 

Glumanda

Member
Sep 25, 2015
9
14
38
At first you said: "I did not save servers IP"
Now: "it persists for a while to avoid mass scan"

BTW: Even when you double or triple check a ip with same port etc.
It saves it - I tested ;)

I know why i dont trust you ;)

Anyway its a nice move of you to share this Script with everyone.
But the Save-Thing is a bitch move.
 

fyfywka

TeamSpeak Developer
Contributor
Sep 10, 2015
147
140
158
Well, write to me on how to avoid that you have not started to scan 24/7 using the site do not save anything
 
Top