• Log InLog In
  • Register
Liquid`
Team Liquid Liquipedia
EDT 01:55
CEST 07:55
KST 14:55
  • Home
  • Forum
  • Calendar
  • Streams
  • Liquipedia
  • Features
  • Store
  • EPT
  • TL+
  • StarCraft 2
  • Brood War
  • Smash
  • Heroes
  • Counter-Strike
  • Overwatch
  • Liquibet
  • Fantasy StarCraft
  • TLPD
  • StarCraft 2
  • Brood War
  • Blogs
Forum Sidebar
Events/Features
News
Featured News
[ASL21] Ro24 Preview Pt2: News Flash10[ASL21] Ro24 Preview Pt1: New Chaos0Team Liquid Map Contest #22 - Presented by Monster Energy18ByuL: The Forgotten Master of ZvT30Behind the Blue - Team Liquid History Book20
Community News
Weekly Cups (May 30-Apr 5): herO, Clem, SHIN win0[BSL22] RO32 Group Stage1Weekly Cups (March 23-29): herO takes triple6Aligulac acquired by REPLAYMAN.com/Stego Research8Weekly Cups (March 16-22): herO doubles, Cure surprises3
StarCraft 2
General
Ivermectin & Fenbendazole Combo Pack for Parasite Weekly Cups (May 30-Apr 5): herO, Clem, SHIN win Rongyi Cup S3 - Preview & Info Team Liquid Map Contest #22 - Presented by Monster Energy Blizzard Classic Cup @ BlizzCon 2026 - $100k prize pool
Tourneys
RSL Season 4 announced for March-April Sparkling Tuna Cup - Weekly Open Tournament StarCraft Evolution League (SC Evo Biweekly) WardiTV Mondays World University TeamLeague (500$+) | Signups Open
Strategy
Custom Maps
[M] (2) Frigid Storage Publishing has been re-enabled! [Feb 24th 2026]
External Content
The PondCast: SC2 News & Results Mutation # 520 Moving Fees Mutation # 519 Inner Power Mutation # 518 Radiation Zone
Brood War
General
so ive been playing broodwar for a week straight. ASL21 General Discussion [BSL22] RO32 Group Stage Gypsy to Korea Pros React To: JaeDong vs Queen
Tourneys
[ASL21] Ro24 Group F Escore Tournament StarCraft Season 2 [Megathread] Daily Proleagues [ASL21] Ro24 Group E
Strategy
What's the deal with APM & what's its true value Fighting Spirit mining rates Simple Questions, Simple Answers
Other Games
General Games
Stormgate/Frost Giant Megathread Starcraft Tabletop Miniature Game Nintendo Switch Thread General RTS Discussion Thread Darkest Dungeon
Dota 2
The Story of Wings Gaming Official 'what is Dota anymore' discussion
League of Legends
G2 just beat GenG in First stand
Heroes of the Storm
Simple Questions, Simple Answers Heroes of the Storm 2.0
Hearthstone
Deck construction bug Heroes of StarCraft mini-set
TL Mafia
Mafia Game Mode Feedback/Ideas TL Mafia Community Thread Five o'clock TL Mafia
Community
General
US Politics Mega-thread The Chess Thread Russo-Ukrainian War Thread NASA and the Private Sector Things Aren’t Peaceful in Palestine
Fan Clubs
The IdrA Fan Club
Media & Entertainment
[Manga] One Piece [Req][Books] Good Fantasy/SciFi books Movie Discussion!
Sports
2024 - 2026 Football Thread Formula 1 Discussion Cricket [SPORT] Tokyo Olympics 2021 Thread General nutrition recommendations
World Cup 2022
Tech Support
[G] How to Block Livestream Ads
TL Community
The Automated Ban List
Blogs
Broowar part 2
qwaykee
China Uses Video Games to Sh…
TrAiDoS
Funny Nicknames
LUCKY_NOOB
Iranian anarchists: organize…
XenOsky
FS++
Kraekkling
ASL S21 English Commentary…
namkraft
Electronics
mantequilla
Customize Sidebar...

Website Feedback

Closed Threads



Active: 13448 users

SCBW Bnet hacker: Watch out - Page 2

Forum Index > BW General
Post a Reply
Prev 1 2 3 4 5 6 7 Next All
igotmyown
Profile Blog Joined April 2009
United States4291 Posts
May 04 2010 07:30 GMT
#21
On May 04 2010 16:23 dRaW wrote:
Where do you find this BWHF? The all @Useast is funny though...


Can TL ban you for asking for hacks?
Deleted User 47542
Profile Blog Joined May 2009
1484 Posts
Last Edited: 2010-05-04 07:35:47
May 04 2010 07:34 GMT
#22
On May 04 2010 16:30 igotmyown wrote:
Show nested quote +
On May 04 2010 16:23 dRaW wrote:
Where do you find this BWHF? The all @Useast is funny though...


Can TL ban you for asking for hacks?

BWHF = brood war hack finder, not a hack.

If you google that exactly you will get it, it's a 3rd party program that analyzes replays for hacks pretty much instantly, and can load up a black list of known hackers, etc. I used it when I used to play around on bnet but those days are long gone :x It catches multi/autogather 100% of the time, but map hack is pretty much undetectable.. [unless a newer version was released in the 1-2 years I've been off bnet]
LunarDestiny
Profile Blog Joined August 2008
United States4177 Posts
May 04 2010 07:35 GMT
#23
BWHF is a replay scanner for hacks. It can not hack and most players use it to analyze their games.

http://code.google.com/p/bwhf/
LunarDestiny
Profile Blog Joined August 2008
United States4177 Posts
May 04 2010 07:39 GMT
#24
On May 04 2010 16:12 omfghi2u2 wrote:
I think the funniest hacks are when you play the UMS game tittled, "Banning game." And when you trap them, they drophack you.

But back on topic, I remember going into a game and someone came in the game and wrote in all caps, "BAN ME? I BAN YOU" and Bnet crashed.

This allah/frost guy is all over bnet.

Ironically, I think Allah made that Banning game and with extra hack speed.
MaRiNe23
Profile Blog Joined December 2006
United States747 Posts
May 04 2010 07:44 GMT
#25
What I've always wondered is..why does he keep the same game names. Like he always makes it ALLAH@USEAST or FROST@USEAST "something@USEAST". If he really wanted to annoy people he would make the game name like "1v1 python play/obs" so that people will join or some other popular UMS. Either he's dumb or he can't adjust the game name for whatever reason and always has to add "@USEAST at the end of his game name" I dunno it was always strange for me that he would keep the same game name so that ppl can just skip over his games.
We have competitive ladder, strong community, progaming in Korea going strong, perfectly balanced game..why do we need sc2? #1 ANTI-SC2 fan
L_Master
Profile Blog Joined April 2009
United States8017 Posts
May 04 2010 07:52 GMT
#26
I dunno it was always strange for me that he would keep the same game name so that ppl can just skip over his games.


Thing is, if you even gloss over them it will make SC crash, you don't even have to try and enter. But yeah, if he gave them random "real" names it would be far more annoying that it is now, where you just have to be careful where you place your cursor.
EffOrt and Soulkey Hwaiting!
EleanorRIgby
Profile Joined March 2008
Canada3923 Posts
May 04 2010 08:00 GMT
#27
On May 04 2010 16:44 MaRiNe23 wrote:
What I've always wondered is..why does he keep the same game names. Like he always makes it ALLAH@USEAST or FROST@USEAST "something@USEAST". If he really wanted to annoy people he would make the game name like "1v1 python play/obs" so that people will join or some other popular UMS. Either he's dumb or he can't adjust the game name for whatever reason and always has to add "@USEAST at the end of his game name" I dunno it was always strange for me that he would keep the same game name so that ppl can just skip over his games.


Clearly he wants to make a name from himself as an e-villian
savior did nothing wrong
anch
Profile Blog Joined June 2006
United States5457 Posts
May 04 2010 08:10 GMT
#28
On May 04 2010 14:15 krndandaman wrote:
Show nested quote +
On May 04 2010 13:33 Amnesia wrote:
Let's get R1CH to stomp his ass


Agreed.
R1CH would make him cry for his mommy.

Show him who's the real wizard around starcraft.

would be scary as hell if R1CH is Frost's alter ego.
dum dum dum.
lgd-haze
Profile Blog Joined January 2009
Sweden547 Posts
May 04 2010 08:32 GMT
#29
Release the Krak.. R1CH!!
Flying Tushin!!
PobTheCad
Profile Blog Joined July 2006
Australia893 Posts
May 04 2010 09:49 GMT
#30
i first noticed those games on west about 1 1/2 - 2 months back
the past few weeks i noticed less of them but it may just be a time of day thing
Once again back is the incredible!
Oddysay
Profile Blog Joined October 2007
Canada597 Posts
May 04 2010 10:14 GMT
#31
blizzard are behind the hacker ! they want you to switch to sc2 !!

seriously that kinda scary people can make hack like that , battle.net security was pretty bad if you think about that .
GTR
Profile Blog Joined September 2004
51574 Posts
May 04 2010 10:16 GMT
#32
[image loading]
Commentator
infinity2k9
Profile Blog Joined January 2009
United Kingdom2397 Posts
May 04 2010 10:23 GMT
#33
On May 04 2010 16:12 omfghi2u2 wrote:
I think the funniest hacks are when you play the UMS game tittled, "Banning game." And when you trap them, they drophack you.

But back on topic, I remember going into a game and someone came in the game and wrote in all caps, "BAN ME? I BAN YOU" and Bnet crashed.

This allah/frost guy is all over bnet.


You know, there is a drophack protector. It works well and is really funny when they try it cause it warns you too or counter-drops them. One guy i had was spamming it loads of times trying to drop me and was getting really mad about it. I just use that along with BWHF and i don't tend to have much trouble with hackers thanks to it (this is on USWest).
Excel Excel
Profile Blog Joined February 2010
142 Posts
May 04 2010 10:37 GMT
#34
On May 04 2010 16:34 superbabosheki wrote:
Show nested quote +
On May 04 2010 16:30 igotmyown wrote:
On May 04 2010 16:23 dRaW wrote:
Where do you find this BWHF? The all @Useast is funny though...


Can TL ban you for asking for hacks?

BWHF = brood war hack finder, not a hack.

If you google that exactly you will get it, it's a 3rd party program that analyzes replays for hacks pretty much instantly, and can load up a black list of known hackers, etc. I used it when I used to play around on bnet but those days are long gone :x It catches multi/autogather 100% of the time, but map hack is pretty much undetectable.. [unless a newer version was released in the 1-2 years I've been off bnet]


The only undetectable hacks (map hack, resource hack) happen to be the most useful; autogather and multicommand do not really help the hacker that much in higher level games, so they can turn off the easily detectable features and still have a massive advantage.
"SCREW OBSERVERS MUST HAVE MOAR ARBITERS!!!11one1" - Famous last words
dhe95
Profile Blog Joined December 2008
United States1213 Posts
May 04 2010 11:01 GMT
#35
From Hot_Bid's R1CH quotes thread:
Sent a copy of this to hacks@blizzard, but if you catch anyone in person, direct them to this thread as this seems serious enough to warrant attention:

---------------------

There appears to be a hack circulating in SC:BW where an oversized game name is passed to bnet upon game creation. Bnet does not perform input sanitization on this value before storing it. Bnet then sends this information back to the client when the client is at the join game screen, at which point the oversized game name is added to the join game list box. When the user clicks the entry, the list box text is copied into an unchecked 128 byte buffer and a stack-based buffer overflow occurs.

On a quick glance, the return address looks possibly controllable, meaning with the right length and combination of characters, this could be exploited to execute arbitrary code on the StarCraft client.

Vulnerable code resides in battle.snp @ base + 0x237D0:

190237D0 |. 8B1D BCA20319 mov ebx,dword ptr ds:[<&USER32.SendMessa>; USER32.SendMessageA
190237D6 |. 6A 00 push 0 ; /lParam = 0
190237D8 |. 6A 00 push 0 ; |wParam = 0
190237DA |. 68 88010000 push 188 ; |Message = LB_GETCURSEL
190237DF |. 56 push esi ; |hWnd
190237E0 |. FFD3 call ebx ; \SendMessageA
190237E2 |. 83F8 FF cmp eax,-1
190237E5 |. 0F84 7D000000 je battle.19023868
190237EB |. 8D95 70FFFFFF lea edx,dword ptr ss:[ebp-90]
190237F1 |. 52 push edx ; /lParam
190237F2 |. 50 push eax ; |wParam
190237F3 |. 68 89010000 push 189 ; |Message = LB_GETTEXT
190237F8 |. 56 push esi ; |hWnd
190237F9 |. FFD3 call ebx ; \SendMessageA

As shown here, LB_GETTEXT is used to pull the string out of the listbox into edx. edx points to a stack buffer of 128 bytes. Since the string in the listbox is controlled by the attacker as no bounds checking is done on either the client or the server, a stack-based buffer overflow occurs.

My suggested immediate fix would be to limit the maximum game name / mapname and other user-controlled parameters that the battle.net server will accept as this would not require a client patch. If the user submits to bnet values of greater length than the BW client would normally allow, they can be flagged as malicious and handled accordingly. An additional suggested client-side update in the next patch would validate the game name and other parameters received from battle.net before working with them, to protect the player from 3rd party servers.

I would appreciate being informed of any updates to this issue, as if no action is taken I will make my own unofficial patch to address this bug. Thanks!


seems like R1CH already found this ages ago.
Nytefish
Profile Blog Joined December 2007
United Kingdom4282 Posts
May 04 2010 11:31 GMT
#36
^Also seems like Blizzard completely ignored him.
No I'm never serious.
TwilightStar
Profile Blog Joined August 2009
United States649 Posts
May 04 2010 12:48 GMT
#37
Holy crap, that's one of my old/good friends from east... wtf is he doing this for xD
(5)Twilight Star.scx --------- AdmiralHoth: There was one week when I didn't shave for a month.
Kentucky
Profile Joined November 2009
United States63 Posts
May 04 2010 13:44 GMT
#38
Who cares?

These people are only looking for attention and that's exactly what you give them by posting this pointless thread.

They're not clever, they're pathetic untalented unemployed retards who downloaded 1 millionth of an ounce of power over an internet game and now they're spending their time trying to annoy people because they're that desperate to get attention from someone even if it's negative attention from a stranger.

They have zero power over you, just avoid them and ignore them. Don't make their little game of annoying people fun for them by showing them how annoyed you are, just ignore it.
gumbum8
Profile Blog Joined December 2008
United States721 Posts
May 04 2010 14:05 GMT
#39
On May 04 2010 22:44 Kentucky wrote:
Who cares?

These people are only looking for attention and that's exactly what you give them by posting this pointless thread.

They're not clever, they're pathetic untalented unemployed retards who downloaded 1 millionth of an ounce of power over an internet game and now they're spending their time trying to annoy people because they're that desperate to get attention from someone even if it's negative attention from a stranger.

They have zero power over you, just avoid them and ignore them. Don't make their little game of annoying people fun for them by showing them how annoyed you are, just ignore it.


Uhm... So if he crashes everyone's computer on East, we should just ignore it and let East become a frost dessert? I'm kinda glad there was this warning, my friend only plays on East... (mac)
but really, has anyone REALLY been far even as decided to use even go want to do look more like?
Xeofreestyler
Profile Blog Joined June 2005
Belgium6775 Posts
May 04 2010 15:58 GMT
#40
I would so love it if rich would e-rape that lil scriptpunk
Graphics
Prev 1 2 3 4 5 6 7 Next All
Please log in or register to reply.
Live Events Refresh
CranKy Ducklings
00:00
TLMC #22: Map Judging #1
Liquipedia
[ Submit Event ]
Live Streams
Refresh
StarCraft 2
Nina 124
ROOTCatZ 88
StarCraft: Brood War
Sea 5933
GuemChi 4684
Leta 364
Tasteless 259
sSak 72
soO 33
Sacsri 14
Noble 14
ajuk12(nOOB) 14
IntoTheRainbow 7
[ Show more ]
Icarus 5
Dota 2
canceldota26
League of Legends
JimRising 697
Counter-Strike
Coldzera 1584
Stewie2K1165
m0e_tv561
Super Smash Bros
C9.Mang0361
Mew2King177
Other Games
summit1g9371
NeuroSwarm77
Organizations
Other Games
gamesdonequick996
BasetradeTV207
StarCraft 2
Blizzard YouTube
StarCraft: Brood War
BSLTrovo
sctven
[ Show 13 non-featured ]
StarCraft 2
• AfreecaTV YouTube
• intothetv
• Kozan
• IndyKCrew
• LaughNgamezSOOP
• Migwel
• sooper7s
StarCraft: Brood War
• BSLYoutube
• STPLYoutube
• ZZZeroYoutube
League of Legends
• Lourlo1369
• Rush873
• Stunt510
Upcoming Events
Sparkling Tuna Cup
4h 5m
PiGosaur Cup
18h 5m
Replay Cast
1d 3h
Kung Fu Cup
1d 6h
Replay Cast
1d 18h
The PondCast
2 days
CranKy Ducklings
2 days
WardiTV Team League
3 days
Replay Cast
3 days
CranKy Ducklings
4 days
[ Show More ]
WardiTV Team League
4 days
uThermal 2v2 Circuit
4 days
BSL
4 days
Sparkling Tuna Cup
5 days
WardiTV Team League
5 days
BSL
5 days
Replay Cast
5 days
Replay Cast
6 days
Wardi Open
6 days
Liquipedia Results

Completed

CSL Elite League 2026
RSL Revival: Season 4
NationLESS Cup

Ongoing

BSL Season 22
ASL Season 21
CSL 2026 SPRING (S20)
StarCraft2 Community Team League 2026 Spring
Nations Cup 2026
PGL Bucharest 2026
Stake Ranked Episode 1
BLAST Open Spring 2026
ESL Pro League S23 Finals
ESL Pro League S23 Stage 1&2
PGL Cluj-Napoca 2026
IEM Kraków 2026
BLAST Bounty Winter 2026

Upcoming

Escore Tournament S2: W2
IPSL Spring 2026
Escore Tournament S2: W3
Acropolis #4
BSL 22 Non-Korean Championship
CSLAN 4
Kung Fu Cup 2026 Grand Finals
HSC XXIX
uThermal 2v2 2026 Main Event
uThermal 2v2 Last Chance Qualifiers 2026
RSL Revival: Season 5
IEM Cologne Major 2026
Stake Ranked Episode 2
CS Asia Championships 2026
Asian Champions League 2026
IEM Atlanta 2026
PGL Astana 2026
BLAST Rivals Spring 2026
CCT Season 3 Global Finals
IEM Rio 2026
TLPD

1. ByuN
2. TY
3. Dark
4. Solar
5. Stats
6. Nerchio
7. sOs
8. soO
9. INnoVation
10. Elazer
1. Rain
2. Flash
3. EffOrt
4. Last
5. Bisu
6. Soulkey
7. Mini
8. Sharp
Sidebar Settings...

Advertising | Privacy Policy | Terms Of Use | Contact Us

Original banner artwork: Jim Warren
The contents of this webpage are copyright © 2026 TLnet. All Rights Reserved.