All about exploits #1 - Filtering Enabled Vulnerabilities

Sdílet
Vložit
  • čas přidán 17. 08. 2023
  • Links:
    Intro song made by:
    / gibberish
    Join The Cursors Roblox group:
    www.roblox.com/groups/7103305...
    Discord server:
    / discord
    #roblox #robloxdev #robloxhack #anticheat #programming #gamedev
  • Hry

Komentáře • 220

  • @OHWAVIDA
    @OHWAVIDA Před 10 měsíci +8

    cant wait for part 2, ill have my notify on for that! fantastic tutorial and i think you had a smart use of visual elements because it kept me very engaged, good luck on anything you do in the future!

  • @Iconsumebodilyfluids
    @Iconsumebodilyfluids Před 10 měsíci +3

    I've recently started working on a game that has almost 1000 players at any time, this of course was a new experience for me and was struggling to fend off the huge amount of exploiters storming at the game. Each time I patched an exploit one of them would just find a fix and share it to the others. It eventually got so bad that exploits were being made to crash servers, we had to pay them to find out how they were doing it. You have been of great help to help me fend of these zombies.

  • @Vexeronix
    @Vexeronix Před 10 měsíci +26

    Exploiters can do many things, such as repeating/firing events that either are supposed to happen (example : You reload a weapon, sending an event to the server to change your ammo data) once or twice, and is not supposed to be tampered with by the user of the client or device. Exploiters can also Replicate their own lag, basically making it so that the sever takes 1 second to send info from you or you to the server, as in artificial ping.

    • @ozymandeez
      @ozymandeez Před 10 měsíci +1

      I wouldnt really call fps unlocker exploiting... Because then half of the obby community are exploiters.

    • @CopperCogStudio
      @CopperCogStudio  Před 10 měsíci +5

      all of the things you said depend on a game's programming, so I won't talk about them for now.
      My game doesnt has those flaws because I dont trust the client with anything except inputs.

    • @Vexeronix
      @Vexeronix Před 10 měsíci

      @@ozymandeez What do you mean FPS Unlocker?

    • @wedoalittletrolling723
      @wedoalittletrolling723 Před 10 měsíci +1

      ​@@ozymandeez Any program injecting into the roblox process is automatically an exploit. Thus making half the obby community "exploiters", altrough unintentionally unlike malicious exploiters.

    • @aoqia
      @aoqia Před 9 měsíci

      By that definition, a simple overlay such as MSI/RivaTuner would be classified as an exploit. That is not the case. @@wedoalittletrolling723

  • @IndependentProgramD
    @IndependentProgramD Před měsícem +1

    Thanks for the video, almost no other video on youtube actually properly explains FilteringEnabled and how exploiters bypass it.

  • @nfroizey
    @nfroizey Před 10 měsíci

    dang bro you pumping out so much content thats dedication congrats 👏

  • @SnappySnip_
    @SnappySnip_ Před 9 měsíci

    Hey man, awesome video! Keep up the good work, you're super underrated!

  • @robloxexpert2513
    @robloxexpert2513 Před 10 měsíci

    Amazing video! You really explained stuff, and now Roblox makes so much sense now. Thank you! :)

  • @krokach9386
    @krokach9386 Před 10 měsíci

    Bro i love your videos. I always wanted to know how do exploits work in roblox. Gotta love the simple and useful videos you do! Keep up the good job my guy!

  • @Aphr0D1si1ac
    @Aphr0D1si1ac Před 10 měsíci

    honestly, this helped a lot
    Thanks for teaching something that I didn't know
    New Sub and I liked :D

  • @blocky074
    @blocky074 Před 10 měsíci +5

    Great video, you always fail to disappoint!

    • @Redstoniste
      @Redstoniste Před 10 měsíci +1

      My brain stopped working twice while reading that.

  • @explodinghammeronthe17thof36
    @explodinghammeronthe17thof36 Před 10 měsíci

    Dude that intro was cool as heck eith awesome transitions

  • @Mielesplayz
    @Mielesplayz Před 10 měsíci +3

    it has been years since I've seen someone use an intro, I was surprised to see one, it looks so good!

  • @Raykiv
    @Raykiv Před 10 měsíci +17

    I believe this is important and you should've brought it up!
    Exploiters can only play Animations made by Roblox or the game's creator (which could also be tied to a group)!
    Exploiters can only play malicious animations for themselves using joints and tweens! (Unless of course you have a backdoor from a free model)

    • @SomeDudeCauseYes
      @SomeDudeCauseYes Před 10 měsíci

      Theres was way to use animations without needing to be from creator.

    • @Raykiv
      @Raykiv Před 10 měsíci

      @@SomeDudeCauseYes That still exists but its only on client.

    • @AgentThat
      @AgentThat Před 10 měsíci

      Before its was Cframe animation

  • @dortuff
    @dortuff Před 10 měsíci

    Oh hell ye, as a dev I always wondered how most exploits work, like definitely not just how I'd imagen it goes about.
    Great work.

  • @Jake-wl2ol
    @Jake-wl2ol Před 10 měsíci +1

    Love the intro man
    Will you discuss remote events next video?

  • @12Duckz
    @12Duckz Před 10 měsíci

    Really nice video, keep up the good work

  • @dande3208
    @dande3208 Před 10 měsíci +1

    Holy shit that intro is so good!

  • @wssoup
    @wssoup Před 10 měsíci +1

    Nice, a deeper dive into this with things like remotes and such would be cool

    • @r50142
      @r50142 Před 10 měsíci

      They're essentially the same thing. Client sends a signal to the server, the server trusts the signal is legit and then it'll replicate whatever is happening to the other clients.

    • @wssoup
      @wssoup Před 10 měsíci

      @@r50142 I know, im not talking about the basic stuff

  • @danieldelgadillo9461
    @danieldelgadillo9461 Před 10 měsíci

    keep growing my pal

  • @_3XP
    @_3XP Před 10 měsíci

    nice new intro, also great vid!

  • @Dj_531
    @Dj_531 Před 10 měsíci

    Veery interesting, I'd love to hear you talk about actions occurring on the client but not the server next

    • @CopperCogStudio
      @CopperCogStudio  Před 10 měsíci

      The issue with this is that a client can do anything with the data in its world state so there's not really a point on talking about that.

  • @basteless
    @basteless Před 2 měsíci

    Really well made video

  • @therealorangemangoes
    @therealorangemangoes Před 10 měsíci

    another great vid bro

  • @ComunPaixnator
    @ComunPaixnator Před 10 měsíci +3

    This video helped stop my intrusive thoughts from unplugging my grand auntie’s life support since she would not give me her cranberry pie recipe 😭

  • @ITS_N00DLZ
    @ITS_N00DLZ Před 10 měsíci

    really well explained ! i love your content, really simple and straight to the point

  • @yesman7825
    @yesman7825 Před 10 měsíci +1

    Loved the video!!! As an exploiter i understood everything so easily, It would be great if you would talk about rejectcharacterdeleting being added on roblox meaning you cant do cool tricks with your hats anymore

    • @kristopher3623
      @kristopher3623 Před 10 měsíci +1

      Damn so you ruin fun for other people?

    • @yesman7825
      @yesman7825 Před 10 měsíci +1

      @@kristopher3623 nah i dont use scripts like autofarms and those shit and even if i do i use it in vip servers, i mostly use like hat scripts to look cool and paid hubs for that

    • @fitmotheyap
      @fitmotheyap Před 10 měsíci

      ​@@kristopher3623 why assume ruin fun? 99% are just to do cool stuff or ignore boring parts of a game

    • @kristopher3623
      @kristopher3623 Před 10 měsíci

      @@fitmotheyap I agree, there are some people (Decaying winter exploiters) Who can make the game more fun, but sometimes it's just not fun, specially in pvp focused games.

  • @valiki5
    @valiki5 Před 10 měsíci

    whyd i get recommened this i dont even know what the title means, great vid anyways

  • @Ashtri
    @Ashtri Před 10 měsíci

    I was thinking about making my own server-sided anti-cheat, that can patch alot of exploits, thanks this video helps alot.

  • @MuhammandRiyan
    @MuhammandRiyan Před 10 měsíci

    LOVE THE INTRO MAN

  • @AngusReallyKai
    @AngusReallyKai Před 10 měsíci

    Bro almost hit 3k rn good job 👍

  • @MarkedThing
    @MarkedThing Před 10 měsíci +11

    That's a very informative video for beginners, you compressed the details nicely and made it understandable!

  • @rewritefan123
    @rewritefan123 Před 10 měsíci +2

    WAIT THATS THE TPOT INTRO
    RRRRAAHHHHH I LOVE BFDI

  • @epixerty
    @epixerty Před 10 měsíci +1

    I already knew all of this but it still was interesting to watch

  • @ItzpoomAV1
    @ItzpoomAV1 Před 10 měsíci +1

    I already know this, but that is also enjoyable!

  • @opm_a-ngo2903
    @opm_a-ngo2903 Před 10 měsíci

    congrats on hitt
    ing 3k bro

  • @happyispoetic
    @happyispoetic Před 10 měsíci +5

    Bro FE era exploiting was crazy, exploiters could do ANYTHING they wanted to the game, like yes exactly the what ur thinking about rn, and that traumatized a bunch of kids for life so compared to current roblox alot of stuff were toned down

    • @v_vuu
      @v_vuu Před 10 měsíci

      I can tell you're a skid. It's not FE. FE is what stoped people from controlling games.

    • @leogaitsgorypiano8870
      @leogaitsgorypiano8870 Před 10 měsíci

      i think you mean the pre-FE era that was before roblox starting giving trust in only the players movements. people could just do anything they want since the server just trusted the client

    • @tord5363
      @tord5363 Před 10 měsíci

      My friend was forced to give head on Roblox super hero tycoon 💀💀

    • @wedoalittletrolling723
      @wedoalittletrolling723 Před 10 měsíci

      @@leogaitsgorypiano8870 why did they even trust client, it's not even a peer-to-peer game there was still a game server yet roblox thought it would be genius to fully trust the client and have any value the client changes be blindly accepted by server.

    • @leogaitsgorypiano8870
      @leogaitsgorypiano8870 Před 10 měsíci

      @@wedoalittletrolling723 cause roblox was small at the time and they didn't know what to do about exploiters, eventually they figured it out

  • @invaderx5206
    @invaderx5206 Před 9 měsíci

    5:46 I need to learn how to do that
    I'm struggling to understand why other players can't see my building parts
    This video helps a lot for my exploits

  • @ndwrx
    @ndwrx Před 9 měsíci

    holy sh(wahwahwah) you are underrated

  • @zTKL.
    @zTKL. Před 10 měsíci

    that intro goes hard tho

  • @lancegoh301
    @lancegoh301 Před 10 měsíci

    You used the tpot intro very well

  • @bsteg
    @bsteg Před 10 měsíci

    Underrated 🙏

  • @alexskorpik11play79
    @alexskorpik11play79 Před 10 měsíci

    DANG THE TPOT INTRO HITS HARD

  • @514komeiji5
    @514komeiji5 Před 10 měsíci

    Wow please do more of this I want to learn how to prevent these things

  • @alepalex8343
    @alepalex8343 Před 10 měsíci

    great intro inspired by the power of two!

  • @yarik_superpro
    @yarik_superpro Před 10 měsíci +1

    Oh bro you really helped me a lot to know how replication works so i can secure my game better.

  • @hehecat72
    @hehecat72 Před 10 měsíci +5

    Best 7 minute of my life

    • @v_vuu
      @v_vuu Před 10 měsíci

      because you're a skid

  • @BruneBrickStudios
    @BruneBrickStudios Před 10 měsíci

    soo underated :( + 1 sub and like!

  • @Czarlo
    @Czarlo Před 8 měsíci

    Most of the properties that are replicated to the server are (most of the time) meant for developers. For example, you can get sprinting with just one (local) script by setting the humanoid's walkspeed, kill the player when they are outside a shadow almost instantly by modifying the humanoid's health, and double jumping. Double jumping especially wouldn't be as easy if the state wasn't replicated, as you'd have to use forces such as AssemblyLinearVelocity or ApplyImpulse. The only thing you _should_ worry about is players firing events, such as buying an unobtainable item.

  • @truestbluu
    @truestbluu Před 10 měsíci

    haha i love the tpot reference!!!

  • @Bulborb7
    @Bulborb7 Před 10 měsíci +2

    i was definitely there, surely, probably, maybe, and seemingly.

  • @kidkovak140
    @kidkovak140 Před 10 měsíci

    Absolute W vid

  • @Coragle
    @Coragle Před 10 měsíci

    what an epic intro

  • @ooftimestop4119
    @ooftimestop4119 Před 10 měsíci +2

    You could (maybe) fix the invincibility thing (the deletion of the humanoid) by making the game kick you if it doesnt detect a humanoid in the player model.

    • @MrY7zz
      @MrY7zz Před 9 měsíci

      You can't because of Reject Character Deletions, because of that the humanoid will get deleted only on the client, if you disable it you will have a huge vulnerability to hat scripts (which are patched)

  • @tord5363
    @tord5363 Před 10 měsíci

    Thanks for this video now I know how to use dark dex I’m very bad at LUA

  • @erikas2272
    @erikas2272 Před 10 měsíci

    you should cover sanity checks next

  • @exotic42069
    @exotic42069 Před 10 měsíci

    very useful for beginner exploiters

  • @dddddd9225
    @dddddd9225 Před 10 měsíci

    there are also raknet exploits, which let you disable any physics packets replicating from your client to the server.

    • @utc_3
      @utc_3 Před 10 měsíci

      raknet is just fancy word for networking aka: Disabling some replication to server

  • @NobaraPlushy
    @NobaraPlushy Před 10 měsíci +2

    nice job i didn't expect this to blow up as i expected ALSO IS THE BAD BUSIENSS FURRY GOIGN OT BE A BOSS

  • @zk7874
    @zk7874 Před 10 měsíci

    I like the new intro 👍

    • @hjanatlatl5699
      @hjanatlatl5699 Před 10 měsíci

      its just the TPOT intro what is a anmited film (on youtube edit)

  • @BrokenDiskStudios961
    @BrokenDiskStudios961 Před 10 měsíci

    The tpot intro was pretty cool I guess

  • @ToastingToaster69
    @ToastingToaster69 Před 10 měsíci

    "marvel has the best transitions"
    This dude:

  • @Sansman888.
    @Sansman888. Před 10 měsíci

    I'm damn sure the reason why death on client replicates to server IS DUE TO RESET CHARACTER. You indeed need an local script to turn it on/off...reset char gui is local, as well as leave

  • @The_Eggz
    @The_Eggz Před 10 měsíci

    Thanks for this information I can now make my own exploi-

  • @bore3918
    @bore3918 Před 10 měsíci

    wow! nice intro

  • @dietz7390
    @dietz7390 Před 10 měsíci

    On another note, floormaterial no longer replicates from client to server. Youc an use that to make a flight anticheat

    • @CopperCogStudio
      @CopperCogStudio  Před 10 měsíci +1

      Real men dont use anticheats, we use server authoritative movement.

  • @leogaitsgorypiano8870
    @leogaitsgorypiano8870 Před 10 měsíci +1

    in part 2 please say the difference between hacking and exploiting exploiting is changing your client and hacking is hacking into a game and doing whatever you want (or just hacking in general)

  • @jynz_l
    @jynz_l Před 10 měsíci

    Intro must have a reference

  • @Heavenly_one.
    @Heavenly_one. Před 10 měsíci +1

    Cool vid

  • @Gubther
    @Gubther Před 10 měsíci

    amazing intro

  • @Raishee
    @Raishee Před 10 měsíci

    bro has a whole anime intro

  • @edgarzomboss7185
    @edgarzomboss7185 Před 10 měsíci +1

    now cover the topic of remote vulnerabilities, getrenv, getgc, changing modules, breaking data stores by executing remotes with arguments such as "\255" etc

    • @CopperCogStudio
      @CopperCogStudio  Před 9 měsíci

      this is specific to a game's programming so i wont cover it for now.

    • @edgarzomboss7185
      @edgarzomboss7185 Před 9 měsíci

      @@CopperCogStudio btw, for now you can cancel this because currently, uwp roblox has byfron sooo

  • @Ultamite
    @Ultamite Před 10 měsíci

    0:35 Ayo that’s the tpot intro

  • @yarik_superpro
    @yarik_superpro Před 10 měsíci +1

    Thank you roblox
    Now I waste like 4 weeks patching this things in my game!

  • @rodricbr
    @rodricbr Před 10 měsíci

    cheat engine times were the good old times of real exploiting

  • @soubnors
    @soubnors Před 10 měsíci

    yoo is that the tpot intro music in your intro

  • @b_mbyz
    @b_mbyz Před 10 měsíci

    bro +2k in 13 days 🔥

  • @k1ng0f
    @k1ng0f Před 10 měsíci +1

    I like this

  • @apple_ilev5s
    @apple_ilev5s Před 10 měsíci

    since i know:
    the intro music is tpot gibberish

  • @HarambaeXelonmuskfans
    @HarambaeXelonmuskfans Před 10 měsíci

    You talk like chills

  • @MayhemDev
    @MayhemDev Před 10 měsíci +1

    So technically we are playing alone, but it just seems as we are playing with others?

  • @Faab.
    @Faab. Před 10 měsíci

    thats facts bro

  • @sheeppro1463
    @sheeppro1463 Před 7 dny

    bfdi: the power of two intro lol

  • @mausdaebom2457
    @mausdaebom2457 Před 10 měsíci

    0:20
    Sounds very familiar, WAIT THATS THE TPOT INTR-

  • @doinic09
    @doinic09 Před 10 měsíci

    There are 2 types of people who watch this video: exploiters and people looking to prevent them

    • @Hexie094
      @Hexie094 Před 10 měsíci

      people who make explots already know all this stuff, its not hidden info or anything. Most people who use exploits are just script kiddies who have no idea how the stuff works anyway, they just push button on the GUI

    • @dogeball2628
      @dogeball2628 Před 10 měsíci

      me whos both:

  • @alexroblox9745
    @alexroblox9745 Před 10 měsíci

    my face when new cc video:

  • @camronandelean3666
    @camronandelean3666 Před 10 měsíci

    Nice intro

  • @deniedprosperity4144
    @deniedprosperity4144 Před 10 měsíci

    Roblox Studio: Why??

  • @criticalprocessdied
    @criticalprocessdied Před 10 měsíci

    If the Server replicates anything that is happening within the client ( character model ) 5:03 does that mean when i move a part into my character will it automatically replicate onto the server? So if i move a part into my character and then delete it it will replicate onto server?

  • @Aldreii
    @Aldreii Před 10 měsíci

    GOOD VIDEO

  • @Dlc1312
    @Dlc1312 Před 10 měsíci +1

    What about reject character deletions ? 4:55

  • @Gruhbb
    @Gruhbb Před 10 měsíci +2

    As a former exploiter, this is a very informative video.

  • @pedro-lucas
    @pedro-lucas Před 10 měsíci

    sick ass intro

  • @bowxd
    @bowxd Před 10 měsíci

    btw characters cant delete their client parts anymore

  • @santixio1987
    @santixio1987 Před 5 měsíci +1

    The intro looks like the tpot intro

  • @SKYPORF
    @SKYPORF Před 10 měsíci +1

    Ayy tpot intro

  • @clixis
    @clixis Před 10 měsíci

    TPOT intro!!

  • @Alexboi2391
    @Alexboi2391 Před 10 měsíci

    TPOT intro music bro

  • @amalgat3152
    @amalgat3152 Před 10 měsíci +1

    The accessory scripts were fixed and are no longer exploitable (i mean i'm pretty sure)

  • @khalidhermanson7236
    @khalidhermanson7236 Před 10 měsíci

    remember me when your famous

  • @_.viper._
    @_.viper._ Před 10 měsíci

    Good 7 minute video