Archive for the ‘IRC’ Category

Possible DoS Found in IRCd-Ratbox

Tuesday, May 15th, 2007

A possible DoS has been found in IRCd-Ratbox. This IRCd is in use on EFNet and other smaller networks.

The discovery was announced on the Ratbox mailinglist by Lee H: “We have recently uncovered a potential DoS in ircd-ratbox that could result in resource starvation of the CPU.”

The bug dates back to very early version of Ratbox, which makes it a vulnerability that is presence in all flavors of the IRCd in use.

“We have now released ircd-ratbox-2.2.6, it is recommended that everybody upgrades — the attack is fairly easy to abuse.  Details follow in the next email”, Lee ends. Since then, Lee retracted to give more details about the exploit to prevent malicious users causing havoc.

Oslo* server Duo Delinks from Undernet

Monday, May 14th, 2007

The 31st of May the Oslo* server duo from Undernet will be delinked. They served the Undernet community for many years, and its staff was active in different help related channels, with #nastrand being well known.

IRC-Junkie had a short interview with one of the admins of the server duo, Bjoern. Bjoern Vik, living in Oslo Norway, has been working in the IP business for about a decade and became involved with Undernet in 2002.

Syzop resigns his position on the UnrealIRCd project

Sunday, May 13th, 2007

Today, In an unexpected announcement on their homepage www.unrealircd.com and an email to all the official testers, Syzop has officially resigned his position as Head Coder and maintainer of Unreal 3.2*. “Having severe wrist issues (RSI) has forced me to have surgery, but the doctors don’t know if that will help” says Syzop, now former coder of UnrealIRCd project.

“I’m not sure if I’ll ever (be able to) get back, and if so, in what kind of shape or form (I certainly would love to get back)” explains Syzop. With Unreals’ recent “call for help”, I think a lot of people have been anticipating this would happen, but I don’t think any body knew it would be this fast.

Undernet Re-implements Multiple Logins on X

Saturday, April 21st, 2007

Undernet introduced multiple logins a few years ago to be forthcoming to users who had to login from work while their home connection was still running for example. In this article however the decision had to be made to remove the functionality again as users were abusing the feature by having bots flood channel that had the +r flag set. The flag requires users to be logged in to join a channel.

Undernet user, and #help op Eenie did not settle with the decision however and started a petition and website in September 2006. “Five hundred and seventy (570) users signed it”, Eenie said to IRC-Junkie.

IRC Still Most Used Platform for Botnets

Wednesday, April 11th, 2007

Although botnet masters increasingly use platforms other then IRC to command their zombie networks, it remains the biggest platform in use to date.

These botnets are being used by malicious users to perform DDoS attacks, collect personal data such as banking info and creditcard details and for example to use as a base to send spam. The machines used in the botnets are usually compromised home PC’s.