Subscribe: Subscribe to BigBlueBallRSSSubscribe to BigBlueBall by emailEmailSubscribe to BigBlueBallTwitter


Go Back   BigBlueBall Forums > Site News & Announcements > Instant Messaging News > Yahoo! Messenger News
Forgot Password? Register
Connect with Facebook

Reply
 
LinkBack (1) Topic Tools
  1 links from elsewhere to this Post. Click to view. #1 (permalink)  
Old 05-02-2008, 10:50 PM
Ven0m's Avatar
Y!Messiah
 

Join Date: May 2005
Location: Missouri
Posts: 1,575
Ven0m has left a lasting impression (500)Ven0m has left a lasting impression (500)Ven0m has left a lasting impression (500)Ven0m has left a lasting impression (500)Ven0m has left a lasting impression (500)Ven0m has left a lasting impression (500)
100% Unbootability on YMSG

YTK Support Forum :: View topic - How To Be Unbootable On ANY Chat Client Or ALG!

Well guys, now that a guy named LegendKiller (from Y!TunnelPro's forum) was so nice as to attempt to "Reverse Engineer" our BDP option in YTK Pro beta build 430 I'll tell you what's going on here (he looked at our external event logger and was able to figure it out).

Over the last several weeks Yahoo! has started "patching" their servers against the buffer boot exploit. Their "patch" consists of getting rid of the disconnection rule entirely when packet data is pending against you in the buffer. Nowadays if you were to be bombed with a booter you will NOT be disconnected regardless of what type the booter is (even if it's some hot new exploit it won't matter).

What does this mean?
This means that of the 61+ servers to chat on 6 of them I've found to be protected against all boots. Here is the following list of them (I tested all of them and here are my results at the time of this post):

Unbootable Servers:


- cs1.msg.dcn.yahoo.com
- cs2.msg.dcn.yahoo.com
- cs40.msg.dcn.yahoo.com
- cs50.msg.dcn.yahoo.com
- cs55.msg.dcn.yahoo.com
- cs58.msg.dcn.yahoo.com


Now that the cat's out of the bag you can use one of these servers on ANY chat program for Yahoo! Chat and be completely unbootable only as long as there's no local program flaws in your choice of chat program. Our BDP option is a TCP window scale option (at the socket level) plus a randomization of these servers (from the pool of protected servers).

Who deserves to be credited solely for this discovery? Venom, Brock and myself. Venom/Mike made me aware of the fact that certain people weren't affected by the buffer boot exploit. After looking into a couple of things I logically deduced all the complexities down to the chat servers themselves that are providing this type of protection for you.

The rest is history...
This can be done with any ALG (YTK Pro or Y!TunnelPro) or any chat clients (YahELite, Yazak, Yahaven, Y!mLite, etc.) that allows you to select which server to log in with. All you have to do is set it, and log in. :)
Attached Thumbnails
100-unbootability-ymsg-untitled-3-copy.png  

Last edited by detn8r; 05-04-2008 at 01:52 AM.
Reply With Quote
 

 
  #2 (permalink)  
Old 05-03-2008, 08:09 PM
Torseq Tech.'s Avatar
Senior Member
 

Join Date: May 2005
Location: Ohio
Posts: 148
Torseq Tech. is on a distinguished road (10)
Send a message via AIM to Torseq Tech. Send a message via MSN to Torseq Tech. Send a message via Yahoo to Torseq Tech.
This is true folks. By using one of these servers you will be immune to server-side disconnects and boot flooding. You won't get knocked off the chat network on these servers even if you're on a dial-up connection.

YTK Pro - The Yahoo! Messenger-Integrated Chat Companion
Reply With Quote
  #3 (permalink)  
Old 06-27-2008, 02:23 PM
Junior Member
 

Join Date: Jun 2008
Posts: 6
Stlouisx50 is on a distinguished road (10)
Quote:
Originally Posted by Ven0m View Post
YTK Support Forum :: View topic - How To Be Unbootable On ANY Chat Client Or ALG!

Well guys, now that a guy named LegendKiller (from Y!TunnelPro's forum) was so nice as to attempt to "Reverse Engineer" our BDP option in YTK Pro beta build 430 I'll tell you what's going on here (he looked at our external event logger and was able to figure it out).

Over the last several weeks Yahoo! has started "patching" their servers against the buffer boot exploit. Their "patch" consists of getting rid of the disconnection rule entirely when packet data is pending against you in the buffer. Nowadays if you were to be bombed with a booter you will NOT be disconnected regardless of what type the booter is (even if it's some hot new exploit it won't matter).

What does this mean?
This means that of the 61+ servers to chat on 6 of them I've found to be protected against all boots. Here is the following list of them (I tested all of them and here are my results at the time of this post):

Unbootable Servers:


- cs1.msg.dcn.yahoo.com
- cs2.msg.dcn.yahoo.com
- cs40.msg.dcn.yahoo.com
- cs50.msg.dcn.yahoo.com
- cs55.msg.dcn.yahoo.com
- cs58.msg.dcn.yahoo.com


Now that the cat's out of the bag you can use one of these servers on ANY chat program for Yahoo! Chat and be completely unbootable only as long as there's no local program flaws in your choice of chat program. Our BDP option is a TCP window scale option (at the socket level) plus a randomization of these servers (from the pool of protected servers).

Who deserves to be credited solely for this discovery? Venom, Brock and myself. Venom/Mike made me aware of the fact that certain people weren't affected by the buffer boot exploit. After looking into a couple of things I logically deduced all the complexities down to the chat servers themselves that are providing this type of protection for you.

The rest is history...
This can be done with any ALG (YTK Pro or Y!TunnelPro) or any chat clients (YahELite, Yazak, Yahaven, Y!mLite, etc.) that allows you to select which server to log in with. All you have to do is set it, and log in. :)
How can this be done with YTK PRO I see CS. Servers from 101 + but not any of the ones you mentioned above. If you can enter the servers manually I'D like to know how.
Reply With Quote
  #4 (permalink)  
Old 06-27-2008, 02:30 PM
Junior Member
 

Join Date: Jun 2008
Posts: 6
Stlouisx50 is on a distinguished road (10)
Also I just tried those servers on Yahelite and they dont work. (non working servers)
Reply With Quote
  #5 (permalink)  
Old 07-05-2008, 03:35 AM
Banned
 

Join Date: Feb 2007
Posts: 36
nakedzero is on a distinguished road (10)
Send a message via Yahoo to nakedzero
These servers got patched already, dont they ?
Reply With Quote
  #6 (permalink)  
Old 07-06-2008, 03:40 PM
Ven0m's Avatar
Y!Messiah
 

Join Date: May 2005
Location: Missouri
Posts: 1,575
Ven0m has left a lasting impression (500)Ven0m has left a lasting impression (500)Ven0m has left a lasting impression (500)Ven0m has left a lasting impression (500)Ven0m has left a lasting impression (500)Ven0m has left a lasting impression (500)
All servers are patched now, and the ones listed above do not exist anymore. Yahoo changed them from the DCNs to the MUDs now. :)
Reply With Quote
  #7 (permalink)  
Old 11-20-2008, 12:15 PM
Junior Member
 

Join Date: Nov 2008
Posts: 1
katrider900 is on a distinguished road (10)
venom can u help me i keep gettin booted but dont no which client to use that will help
Reply With Quote
Reply


LinkBacks (?)
LinkBack to this Thread: http://www.bigblueball.com/forums/yahoo-messenger-news/42453-100-unbootability-ymsg.html
Posted By For Type Date
100% Unbootability on YMSG - MSN Messenger news This thread Refback 06-03-2008 09:21 AM

Currently Active Users Viewing This Topic: 1 (0 members and 1 guests)
 
Topic Tools


Similar Topics
Topic Topic Starter Forum Replies Last Post
YMSG 11 protocol skbera Yahoo! Messenger Support 0 05-23-2004 07:30 PM

 

All times are GMT -5. The time now is 05:35 AM.