Help against login brute force

If something doesn't fit in any other forum then post it here.
Forum rules
READ NOW: L2j Forums Rules of Conduct
Post Reply
User avatar
Renasc
Posts: 18
Joined: Mon Sep 30, 2013 12:18 am

Help against login brute force

Post by Renasc »

Hello friends, some smartass is trying a lot of logins probably with some bruteforce/hack tool :evil:
The flood protector don't block him, i think its because he isn't using created accounts...

Image

If someone know something about it i'm all ears and ready to listen :mrgreen:
User avatar
Zoey76
L2j Inner Circle
L2j Inner Circle
Posts: 7005
Joined: Tue Aug 11, 2009 3:36 am

Re: Help against login brute force

Post by Zoey76 »

So how did he accessed you account names?
Powered by Eclipse 4.30 ๐ŸŒŒ | Eclipse Temurin 21 โ˜• | MariaDB 11.3.2 ๐Ÿ—ƒ๏ธ | L2J Server 2.6.3.0 - High Five ๐Ÿš€

๐Ÿ”— Join our Discord! ๐ŸŽฎ๐Ÿ’ฌ
User avatar
Renasc
Posts: 18
Joined: Mon Sep 30, 2013 12:18 am

Re: Help against login brute force

Post by Renasc »

Zoey76 wrote:So how did he accessed you account names?
nonono :!:

He is trying non created accounts, these accounts are not created.
User avatar
Aikimaniac
L2j Inner Circle
L2j Inner Circle
Posts: 3048
Joined: Sun Aug 07, 2005 11:42 pm
Location: Slovakia

Re: Help against login brute force

Post by Aikimaniac »

3 unsuccessful attempts and block in firewall rule for 24 hours, maybe IP range... btw..cant be that this is bot trying to log ? :)
Image
User avatar
Renasc
Posts: 18
Joined: Mon Sep 30, 2013 12:18 am

Re: Help against login brute force

Post by Renasc »

Aikimaniac wrote:3 unsuccessful attempts and block in firewall rule for 24 hours, maybe IP range... btw..cant be that this is bot trying to log ? :)
this is automated, probably a software with login/pass list and maybe proxy list support...
User avatar
Aikimaniac
L2j Inner Circle
L2j Inner Circle
Posts: 3048
Joined: Sun Aug 07, 2005 11:42 pm
Location: Slovakia

Re: Help against login brute force

Post by Aikimaniac »

Renasc wrote:
Aikimaniac wrote:3 unsuccessful attempts and block in firewall rule for 24 hours, maybe IP range... btw..cant be that this is bot trying to log ? :)
this is automated, probably a software with login/pass list and maybe proxy list support...
get apache log and block him on firewall...
Image
angkor_tm
Posts: 135
Joined: Fri Nov 19, 2010 1:38 pm

Re: Help against login brute force

Post by angkor_tm »

Aikimaniac wrote: get apache log and block him on firewall...
free proxy has not been canceled
I can use hundreds of different ip addresses....
Aikimaniac is right, you can use mod ipconnlimit for login port (for apache) or iptables (other firewall) for limit connection to login port.
Or you can use captcha mod for login.
The window that pops up before the login and password.
Or modified login window, but this is a modification of the client.

p.s. Or use L a m e Guard with autoupdater
Post Reply