Discussion in 'Bukkit Discussion' started by Kainzo, Aug 8, 2012.

    The short story:
    *personal information removed by Staff* demanded Herochat push an update before RB of CB for 1.31. We didn't respond fast enough. Their answer? DDOS our repos / build servers. *personal information removed by Staff* gets on IRC and requests homosexual services on his privates then proceeds to DDOS myself and Herocraft MC server.

    This is part 2 from http://forums.bukkit.org/threads/treat-plugin-devs-better.91128 (Now locked/deleted due to offensive material)

    Well, I thought it was something just childish, because we wouldn't 'jump' to one person's whiney attitude fast enough. This person *personal information removed by Staff* is now targetting our users and our main server (Herocraft).

    Update: It has been over 30 hours now and our main server is still unplayable - having a DDOS run for 30+ hours because we wouldnt push an update at this speed.

    The user in question admits to ddosing our services and laughs about it.
    *link removed by Staff*
    Is the combined log of all that was said/done - the previous thread we created was set to private and locked.
    More info of the user - IRC chat logs..
    *link removed by Staff*
    Emails of him being "superior" over other server owners/devs
    *link removed by Staff*

    We are a non-profit organization and a non-profit development team. We don't have a lot of cash to fling around for anti-ddos protection and we can't develop anything if our build servers / test servers are offline.

    We believe hes running a Slow Iris attack, it's not a massive DDOS but its enough to steadily knock out our services every 5-10mins to create chaos in the userbase.

    Anyone want to help out and throw us a bone?
    couldn't you test it locally?
    The immaturity and track record of these Craftlandia guys is unreal...they have reputation all over the place. I wish I could help you Kainzo.

    Here's hoping someone with extra services can help out...one way....or another.
    mfw they deleted the whole 'treat devs better' thread. After i wrote a giant wall of text as well (which was on topic might i add). This makes me sad, i had 1 like on that so i am 1 like less. I demand a refund, bukkit/whoever deleted it. :p
    Yeah... the other thread really gave insight of how the person is insane - shouldn't have been deleted.
    A simple lock would have sufficed...it would give (more) context to your current issues.
    Running netstats and such now...
  8. Really hope you find a solution soon, hero chat is a great plugin, and I use it on my server. Really sucks that people stoop this low. People were DDOSing the charity event while it was live the other day. Some people really are the low of low.

    What is it that you actually need help with? Maybe I can talk someone into helping out if possible.
    Right now we're just trying to mitigate the damage on our main servers. The jenkins build server is more responsive now but is still going down.

    I'm attempting to monitor the ddos and catch the ips - but whenever I shut down the main MC server - the ddos stops, when I bring it back up, it starts again - so not sure if they are flooding connections on a port that is only opened when the server is online or something else.
    Suppose they figure its you guys Ddos'ing their site (still down atm)...so they keep at it with you guys.

    Too bad their lacking the IQ to put it together its not you guys at all.
    Assuming this is a linux box, can't you accept only good IP's (the developers or testers or whatever) and have iptables drop everything else?
    Yes, this is possible - but we're getting massive access request floods to the build jenkins - its holding up okay.

    The main server *advertising removed by Staff* is being hit now and I'm unable to catch whos doing it (of course we know)

    So much drama, haha.
    Sadly, he sounded around 12 so it might be a while before he discovers girls and realizes what a waste of DNA he currently is.
    Its just sad to see people doing this. A bunch of script kiddies who think they will get respect by entering an IP into a window and press a button. He probably considers himself a master hacker aswell... sigh

    We use HeroChat on our server and cant wait for you guys to release a new update, hope the kid gets grounded for flooding his parents network while DDosing you guys.
    Wow, that really sucks. :( (Reminds me of this)
    I hope it resolves itself soon.

    edit: double ^^
    Kainzo, so sorry to hear about that mate. I myself can offer no help, but I did put a query in to a couple of my buddies in the IT dept of my work. Will let you know if anything can be done or of any suggestions.
    cant you just use somekinda firewall to block them ?
    @Kainzo i suggest you stop making these thread as it will just result in a flame war

    To add onto your other thread i can understand where your coming from and I'm thinking about not doing public deving because the amount of spam and kids who dont know how to use a plugin
    We have a switch (level 3) firewall in place and two firewalls on the machine - its not so easy as "block" connections - we drop packets that are malicious.

    The issue is hes exploiting a security hole somewhere - we're trying to patch it.

    No life losers like this guy really make the internet a sad place.

    More info of the user - IRC chat logs..
    *link removed by Staff*

    I had a brazillian server, the second biggest brazil server, and i got DDOsed to death.

    Today, ANY new brazillian server gets ddosed to death in a week or less by this guy.

    Im a experienced java coder, and i know a little things about internet however i still have not found an option witch not uses a high ammount of money to protect the server.

    So ,if any coding skills can help, or if you need a coder to help to stop this guy shit, PLEASE count me in i will be VERY GLAD to help, really.

    If you guys pay me a trip to where he lives im pretty sure he will stop doing this shit :)
    This is our friend: *personal information removed by Staff*
    Feel sorry for you, but many servers have gone through this so it's nothing new. How did all of this start anyways? Well, never develop non-profit for kids when they expect 24/7 support.
  22. Offline


    Hello friend also had problems with *personal information removed by Staff*.
    My server was the second largest in Brazil.
    The craftlandia not stand the competition and launched DDOS to my server
    can read a little about the dramatic history by following the link
    *advertising removed by Staff*

    I have also some emails with the founder of craftlandia
    it acts as if it were the best in the world

    Can I show you all emails
    Can anyone provide the type of DDOS, and PPS and size?
  24. Offline


    If someone is wanting to help, i would ask for information as well since i was a victim of this guy too. Please, share the solution !

    Theyr ddos size is around 80-200mb , im not sure about the type of ddos, i had spoofed ips sening low quota packages.
    More pasties about how psychotic this person is.
    It's actually kind of hard to read.

    *link removed by Staff*
    That's just sad. This person obviously has some mental issues. Hope they get the help they need.
  27. Offline


  28. Offline


  29. Offline


    quote: 'It would indeed be a contradiction, the largest and most successful Minecraft server in the world, making an alliance with the crudest and most failed server that has ever existed.'

    Just about says it all really.
    Why don't you get the cops on this? Hacking is an illegal offense worldwide.
