Backdoors

From 2b2t Wiki
(Redirected from Backdoor)
Jump to navigation Jump to search

Backdoors on 2b2t can refer to server backdoors or player backdoors. A server backdoor is when a player or group of players bypass the server's normal operations to gain access to exploits in which the particular players can abuse. There have been three major backdoors in 2b2t's history and one not-so major backdoor, all of which have been patched by Hausemaster. Player backdoors are more common and usually occur with player-made hacked clients, which give developers access to users' data, such as with nhack, Adolf, and Phobos clients.

List of server backdoors

First Backdoor

Little is known about this backdoor except it was the first malicious plugin that popbob managed to get Hausemaster to install on 2b2t and was only discovered because popbob would use it to teleport directly to coordinates around the server.

Second Backdoor

The second backdoor is commonly referenced/referred to being the first time the server was backdoored. This backdoor was intended to be a plugin which helped players get down from being stuck on the nether roof. This plugin would allow anybody with access to it to bypass NoCheat, grab another players current coordinates and their bed location, give themselves XP and could also allow popbob to set his gamemode to Creative. Players with access to this backdoor were popbob, policemike55, passie05, xcc2, x0XP, Polly_The_Parrot, assassin_raptor, CreamOFtheSlop and XxPR3D4TORxX86. This access to TooManyItems mode and the backdoor allowed for the creation of Ziggy Town's bedrock comet and Plugin Town. Hause eventually ended this backdoor by removing the NoNetherRoof plugin. Polly_The_Parrot and CreamOFtheslop also used this backdoor access to create hacked items.

Another Backdoor Attempt

Sometime during mid 2012 popbob and x0XP came up with the idea of showing an exploit to Hausemaster involving Minecarts being able to travel infinitely with no rails and at high speed causing both intense lag and world generation. With this exploit they decided to create a plugin to fix this and presented it to Hausemaster along with it having the added ability for the plugin to autoupdate so it could be uploaded to the official Bukkit website as a non-malicious plugin. Hausemaster decided to download the plugin but had another user named Benjojo remove the autoupdater from the plugin they had made, Benjojo would then host the original plugin on his own server to later see that popbob and x0XP were infact trying to backdoor 2b2t once again.

Third Backdoor

The third backdoor of 2b2t occurred during December of 2013. The backdoor involved iTristan and Pyrobyte designing a plugin to block access to the nether roof. The backdoor has two major features, the ability to spawn hacked items such as player heads and 32K weapons, and allowed travel on the nether roof if the player was riding a horse. They also used it to get to the world border. This is also when Pyrobyte spawned in his infamous "666 Sword" which was personal sword which had a sharpness level of 666.

Fourth Backdoor

The fourth backdoor was the most severe backdoor to this date and occurred sometime during the end of 2015 and ended in April 2016. The backdoor involved iTristan creating a website backdoor to create illegal items. The backdoor was patched before June 1st. Players either migrated to Constantiam or left the server temporarily during this time to avoid their base getting griefed or compromised. The server would have as little as one or no players online during this time, however this lack of players would only only last a short span of time. The active population had returned to its normal levels before the video by TheCampingRusher, and subsequently the 4th Incursion.

Cause of server backdoors

The first three backdoors were caused by Hausemaster using player designed plugins to fix issues on the server. These players would add in code to give themselves access to a backdoor of the server once Hause implemented the plugin. In the case of the fourth backdoor, iTristan was given access to 2b2t's web server which was hosted on the same system as 2b2t's Minecraft server, resulting in direct access to all server files.

List of player backdoors

See also: Cheat Clients § Backdoored clients