Quote
LUA ERROR: Cannot add 'test' to hook 'connect_attempt' (hook does not exist)!
This happen when I try create hook.
General
CS2D Bug Reports
connect_attempt is a new hook which will become available with the next update (same for
connect_initplayer)
spawnprojectile is flawed under the dedicated server, as the animated image of the item never gets removed, and just stays on top of the actual item.@C)
msg or
msg2 the message won't centre (because it's registering the path as part of the message even though only the image shows).
hudtxt and
hudtxt2.
join and
connect. The solution is disabling voice chat feature on the whole server or calling functions with other hooks. 
join and
connect, but on various actions like
serveraction,
move. So the hacker will be banned not after he has joined the server, but after he used keys like F2, F3, F4 or moved on map.
) got faked and the hacker had an access to our admins script… That's why I wrote a script which checks if the admin IP is allowed. I mean, I can send the script to anyone but it's one of the first things I wrote on Lua so it looks poor. All it does is checks the UID (Steam and/or USGN). If the UID belongs to admin, it scans for the IP from a file. If the player's IP is not the same as in the file, the player being banned.[22:15:52] U.S.G.N.: Player (xx.xx.xx.xx) joining with U.S.G.N. ID #XXX - verifying... [22:15:53] U.S.G.N.: xx.xx.xx.xx is using U.S.G.N. ID #YYY
#XXX — admin's UID
#YYY — not admin's UID
Kolia_rus: That's not true, it doesnt let the player join the server then. Just make sure sv_checkusgn is enabled.
The Dark Shadow: that's true. And this console command was set to 1 already.
Kolia_rus: U.S.G.N.: Player (xxx) joining with U.S.G.N. ID #XXX - verifying... U.S.G.N.: xxx is NOT LOGGED IN!
U.S.G.N.: Player (xx.xx.xx.xx) joining with U.S.G.N. ID #XXX - verifying... U.S.G.N.: xx.xx.xx.xx is using U.S.G.N. ID #YYY
The Dark Shadow: what do you want to say? Do you think that I had a nightmare or dream about it? I saw it with my own eyes — player were using admin's USGN ID and the admin script too.
Marcell, it is possible.
sv_checkusgnlogin has nothing to do with this current exploit.
The Dark Shadow, it has nothing to do with the victim, anyone can get spoofed as long as they do X things (that I shall not bring up here).
Mami Tomoe: Can you tell what exactly makes you get spoofed? Say X does Y, or it isn't necessary to say anything at all.
The Dark Shadow, I already directed all the info to @
DC.
Marcell has written
I don't play it since 2016. The vulnerability I am talking about happened on my server. By the way, I am so glad to know that you have checked the CS2D & USGN source code so you are sure that the UID can't be stolen.
The Dark Shadow has written
Mami Tomoe: are trolling you?
Marcell: this means that only DC and SQ can be sure if the code has vulnerabilities.
Kolia_rus:
Marcell, if you don't keep an open mind, you'll never be ready.