Are the minceraft servers down?

Are the minceraft servers down?

Postby Raz » July 15th, 2012, 12:17 am

Whenever the minecraft servers are down, tell everyone so there won't be spammage of questions of it in the chat and stuff.
This is for the session servers, when the minecraft.net servers are down go to
http://isminecraftdown.net/.

7.15.12
3:00AM EST
(the following is taken from reddit)
Spoiler: show
http://www.reddit.com/r/Minecraft/comments/wl0zy/psa_exploit_in_minecraft_login_server_hackers_can/
UPDATE: 8.41am BST: Mojang have pulled down the session server. This should stop the issue while a proper fix is being worked on!
UPDATE: 8.52am BST: mojang blog post
Hi all. Over the past few days, numerous people have reported notch logging in to their servers. From the dialogue and IP, it was pretty obvious it wasn't really notch.
Then today on the reddit servers, we had someone log in on the account of one of our head admins. The resulting griefing was quickly caught, the account password changed, and we waited to see if further attacks would follow. After a short period, the same account was used again. The admin, forty_two, confirmed that he hasn't logged into any unknown servers lately, ruling out a MITM attack. The short time between changing the password and logging in ruled out a brute force attack on the account.
We took the servers down and began investigating. I made a post to /r/admincraft with the thought of cross-comparing plugin lists to find one with a back door. We decompiled and pulled PEX and NoCheatPlus apart, and found no back doors.
To eliminate the chance of it being a plugin bug/backdoor, we put a honeypot server up on c.nerd.nu with a [10] minecraft protocol proxy attached, to record how they were triggering it. Within an hour, the hackers were back and connected to the (now whitelisted) c.nerd.nu server, again as forty_two. Here's the relevant portion of the log:
[20:01:28] >>> 0x02: Handshake {'username_host': u'forty_two;c.nerd.nu:25565'}
[20:01:28] <<< 0x02: Handshake {'connection_hash': u'xxx'}
[20:01:29] >>> 0x01: Login request {'username': u'forty_two', 'not_used_6': 0, 'not_used_4': 0, 'not_used_5': 0, 'not_used_2': 0, 'not_used_3': 0, 'not_used_1': u'', 'protocol_version': 29}
[20:01:29] <<< 0x01: Login request {'entity_id': 1172, 'world_height': 0, 'not_used_2': 0, 'not_used_1': u'', 'game_mode': 1, 'max_players': 60, 'level_type': u'default', 'dimension': 0}
We also patched bukkit to print information about the authentication step:
[INFO] LoginPacketName forty_two; ServerID xxx; Request URL http://session.minecraft.net/game/check ... rverId=xxx
[INFO] Response is YES
[INFO] forty_two [/xxx:54685] logged in with entity id 381 at ([world] 3.399717322546743, 64.0, 10.73634280242685)
What's striking here is that there's nothing unusual. If it had been a bukkit plugin backdoor, we'd see some kind of communication with the plugin to tell it to skip the user auth. If it had been some kind of protocol/string packing exploit in minecraft server, again we'd see it in the packets. Nor is a minecraft session server error being triggered. The only explanation is that someone has found an exploit in the minecraft login server. It affects vanilla servers and bukkit servers equally.
After some sleuthing, we determined and confirmed that the exploit only affects accounts which have been migrated to a Mojang account. If you log into minecraft with your email address, you’re vulnerable.
A few hours ago we spoke to Dinnerbone, who got in contact with Grum and EvilSeph, and confirmed the exploit existed. We held off posting, hoping it would be fixed before the griefing community at large finds out about it. Information on how to use this exploit has now been made public, and as such we feel duty bound to advise that all server admins should do as we did and either take your servers offline or install a secondary authentication plugin. - fix now being worked on by mojang, this advice no longer applies.
A more detailed post to /r/mcpublic will follow.
TL;DR: hackers can log in as any migrated user! take your server down or use secondary authentication! see updates up top - taking your server down is no longer necessary.
Last edited by Raz on July 15th, 2012, 1:19 am, edited 1 time in total.
Karyete, Master of Civil Conversation
Disclaimer: none of these messages have been edited, context can be provided if needed (thanks discord!) but absolutely does not change anything about these messages and that he's too overly defensive and cocky to make situations better

Karyete: I don't have anything to say to you, I've been deliberately trying to not offend you for years, actually, but apparently everything I say to you is wrong. You come across as so aggressive that you successfully intimidated me into not wanting to talk to you
Karyete: Seriously, what is your problem? And not only that, you fail to even acknowledge you might be in some wrong here.
Karyete: Oooh it's you? Hello. Feel free to drop this right now. You're going to make yourself look like an idiot.
Karyete: We don't want to hear your opinion at this stage.
Karyete: You're not getting any apology, especially after now.
Karyete: You can stay up on your high horse, continue to twist the truth and act like an absolute child all you want. I refuse to give respect to a man who right now is picking up a dropped argument because he simply cannot fathom the idea that he might be in the wrong.
Karyete: How pathetic
User avatar
Raz
"quite easily the most manly man of all" --Raz

Error contacting Twitter
 
Posts: 4432
Joined: July 12th, 2010, 5:48 pm
Location: :-)

Razzian Fighter

Thumbs Up given: 40 times
Thumbs Up received: 367 times

Re: Are the minceraft servers down?

Postby *Emelia K. Fletcher » July 15th, 2012, 1:17 am

http://www.reddit.com/r/mcpublic/commen ... an_moving/
More detail on the downtime for you tech-hungry people.


');
');





');





User avatar
*Emelia K. Fletcher
Who's this douchebag?

Error contacting Twitter
Error contacting last.fm
 
Posts: 2926
Joined: July 24th, 2010, 3:40 am
Location: A\//\\/A

Cookie
Venexis: "He had everything out seven hours after I had sent the results, give or take. And most of those hours were in the dead of night, lawl. 11/10 would hire as host of a game show."

Thumbs Up given: 42 times
Thumbs Up received: 211 times

Re: Are the minceraft servers down?

Postby Raz » November 17th, 2012, 9:56 am

The minecraft session servers are down, can't log into servers.
Karyete, Master of Civil Conversation
Disclaimer: none of these messages have been edited, context can be provided if needed (thanks discord!) but absolutely does not change anything about these messages and that he's too overly defensive and cocky to make situations better

Karyete: I don't have anything to say to you, I've been deliberately trying to not offend you for years, actually, but apparently everything I say to you is wrong. You come across as so aggressive that you successfully intimidated me into not wanting to talk to you
Karyete: Seriously, what is your problem? And not only that, you fail to even acknowledge you might be in some wrong here.
Karyete: Oooh it's you? Hello. Feel free to drop this right now. You're going to make yourself look like an idiot.
Karyete: We don't want to hear your opinion at this stage.
Karyete: You're not getting any apology, especially after now.
Karyete: You can stay up on your high horse, continue to twist the truth and act like an absolute child all you want. I refuse to give respect to a man who right now is picking up a dropped argument because he simply cannot fathom the idea that he might be in the wrong.
Karyete: How pathetic
User avatar
Raz
"quite easily the most manly man of all" --Raz

Error contacting Twitter
 
Posts: 4432
Joined: July 12th, 2010, 5:48 pm
Location: :-)

Razzian Fighter

Thumbs Up given: 40 times
Thumbs Up received: 367 times

Re: Are the minceraft servers down?

Postby Master1.0 » November 17th, 2012, 10:31 am

You actually should blame dinnerbone:

Dinnerbone on Twitter wrote:Decided to go play some pvp on some servers with some friends on mumble, but then I accidentally hit quit and the session servers went. :(


Dinnerbone on Twitter wrote:Yes, the MC session servers are down, and no it's not just you. Check http://help.mojang.com/ in the future. I don't know when it'll be up.
Image
Image
~Excuse the mess~
User avatar
Master1.0
Minister of Oerhaos

 
Posts: 1991
Joined: October 23rd, 2010, 1:51 pm
Location: Sips Co. 3rd Floor

Cookie
MessengerOfDreams: "THERE! HERE'S YOUR F****** COOKIE! NOW WILL YOU STFU AND GET SOME FIREWOOD?! *is shot*"

Thumbs Up given: 52 times
Thumbs Up received: 61 times

Re: Are the minceraft servers down?

Postby Raz » November 17th, 2012, 11:31 am

Oh lawd... The account servers just went down. I'm glad i didn't close out of MC.
Karyete, Master of Civil Conversation
Disclaimer: none of these messages have been edited, context can be provided if needed (thanks discord!) but absolutely does not change anything about these messages and that he's too overly defensive and cocky to make situations better

Karyete: I don't have anything to say to you, I've been deliberately trying to not offend you for years, actually, but apparently everything I say to you is wrong. You come across as so aggressive that you successfully intimidated me into not wanting to talk to you
Karyete: Seriously, what is your problem? And not only that, you fail to even acknowledge you might be in some wrong here.
Karyete: Oooh it's you? Hello. Feel free to drop this right now. You're going to make yourself look like an idiot.
Karyete: We don't want to hear your opinion at this stage.
Karyete: You're not getting any apology, especially after now.
Karyete: You can stay up on your high horse, continue to twist the truth and act like an absolute child all you want. I refuse to give respect to a man who right now is picking up a dropped argument because he simply cannot fathom the idea that he might be in the wrong.
Karyete: How pathetic
User avatar
Raz
"quite easily the most manly man of all" --Raz

Error contacting Twitter
 
Posts: 4432
Joined: July 12th, 2010, 5:48 pm
Location: :-)

Razzian Fighter

Thumbs Up given: 40 times
Thumbs Up received: 367 times

Re: Are the minceraft servers down?

Postby Master1.0 » November 17th, 2012, 12:02 pm

You're kidding right? XD
Image
Image
~Excuse the mess~
User avatar
Master1.0
Minister of Oerhaos

 
Posts: 1991
Joined: October 23rd, 2010, 1:51 pm
Location: Sips Co. 3rd Floor

Cookie
MessengerOfDreams: "THERE! HERE'S YOUR F****** COOKIE! NOW WILL YOU STFU AND GET SOME FIREWOOD?! *is shot*"

Thumbs Up given: 52 times
Thumbs Up received: 61 times

Re: Are the minceraft servers down?

Postby Raz » November 17th, 2012, 12:25 pm

no, bedwetters ruining all the fun
Karyete, Master of Civil Conversation
Disclaimer: none of these messages have been edited, context can be provided if needed (thanks discord!) but absolutely does not change anything about these messages and that he's too overly defensive and cocky to make situations better

Karyete: I don't have anything to say to you, I've been deliberately trying to not offend you for years, actually, but apparently everything I say to you is wrong. You come across as so aggressive that you successfully intimidated me into not wanting to talk to you
Karyete: Seriously, what is your problem? And not only that, you fail to even acknowledge you might be in some wrong here.
Karyete: Oooh it's you? Hello. Feel free to drop this right now. You're going to make yourself look like an idiot.
Karyete: We don't want to hear your opinion at this stage.
Karyete: You're not getting any apology, especially after now.
Karyete: You can stay up on your high horse, continue to twist the truth and act like an absolute child all you want. I refuse to give respect to a man who right now is picking up a dropped argument because he simply cannot fathom the idea that he might be in the wrong.
Karyete: How pathetic
User avatar
Raz
"quite easily the most manly man of all" --Raz

Error contacting Twitter
 
Posts: 4432
Joined: July 12th, 2010, 5:48 pm
Location: :-)

Razzian Fighter

Thumbs Up given: 40 times
Thumbs Up received: 367 times

Re: Are the minceraft servers down?

Postby Master1.0 » November 17th, 2012, 1:36 pm

Daniel Frisk @Daniel Frisk wrote:Daniel Frisk ‏@danfrisk

There seems to be some kind of attack on our servers. DDoS is for losers who can't hack properly.
Image
Image
~Excuse the mess~
User avatar
Master1.0
Minister of Oerhaos

 
Posts: 1991
Joined: October 23rd, 2010, 1:51 pm
Location: Sips Co. 3rd Floor

Cookie
MessengerOfDreams: "THERE! HERE'S YOUR F****** COOKIE! NOW WILL YOU STFU AND GET SOME FIREWOOD?! *is shot*"

Thumbs Up given: 52 times
Thumbs Up received: 61 times

Re: Are the minceraft servers down?

Postby Raz » November 17th, 2012, 1:53 pm

they're back up
Karyete, Master of Civil Conversation
Disclaimer: none of these messages have been edited, context can be provided if needed (thanks discord!) but absolutely does not change anything about these messages and that he's too overly defensive and cocky to make situations better

Karyete: I don't have anything to say to you, I've been deliberately trying to not offend you for years, actually, but apparently everything I say to you is wrong. You come across as so aggressive that you successfully intimidated me into not wanting to talk to you
Karyete: Seriously, what is your problem? And not only that, you fail to even acknowledge you might be in some wrong here.
Karyete: Oooh it's you? Hello. Feel free to drop this right now. You're going to make yourself look like an idiot.
Karyete: We don't want to hear your opinion at this stage.
Karyete: You're not getting any apology, especially after now.
Karyete: You can stay up on your high horse, continue to twist the truth and act like an absolute child all you want. I refuse to give respect to a man who right now is picking up a dropped argument because he simply cannot fathom the idea that he might be in the wrong.
Karyete: How pathetic
User avatar
Raz
"quite easily the most manly man of all" --Raz

Error contacting Twitter
 
Posts: 4432
Joined: July 12th, 2010, 5:48 pm
Location: :-)

Razzian Fighter

Thumbs Up given: 40 times
Thumbs Up received: 367 times


Return to Minecraft