#general
3141 messages · Page 1801 of 4
@vestal jasper uwu
uwu
owo
@twin lagoon
KRUSIC! BRO!
in windows if you enclose the path in quotes you dont need the \ between words with spaces.
BRO.
just get wsl
go dos
jokes on you i accidentally uninstalled microsoft store using https://privacy.sexy
Web tool to generate scripts for enforcing privacy & security best-practices such as stopping data collection of Windows and different softwares on it.
very good
there's a thing to recover components, you can try that
already tried
your address is probably local so..
it was an accident, it was under a subcategory
might as well just uninstall windows and install linux
^
until headphone driver not work please help fix
most linux distro's its hard to break unintentionally
uh..
?????
you need root or an exploit to break shit
no
nah
you will eventually break installs at some points
you don't even need the terminal
good ram
explain
Is there an issue with persisted data on items? I check the items by key on interact events but everything seems to pass anyway. It's as if some items have the same key as I've given my custom items, which is weird, because they are totially unrelated
well I switched from an nvidia card to team red
ok
ubuntu terminal doesnt need much to run
i think the last time i used ubuntu term it was on a server and it was hitting 110 mb usage with nothing
ubuntu without a desktop environment*
You mean nothing as in "entire os" ? 🙂
i mean nothing as in nothing opened
the pc is opened
I mean, yeah, entire ubuntu server uses less than 200 mb of memory. Its crazy to see 128 gigabytes of memory on server, and just 0.1% of that is used.
also depends on what services you have
the os was open
as this is in wsl there is no systemD
tf..
Yes people need all this ram just to have ubuntu idling right
where does the server run then?
tell me where the power button is in the ssh command and i'll retract what i said
a barebones server with some remote accessability enabled will take anywere between 100-200mb fresh out of the box
depends on the distro
barebones server with remote accessibility enabled did take up 100-200mb
agreed
agre
200mb sounds like some bloated ubuntu type of stuff smh
haha
I use arch btw
they only know ubuntu
I use fedora
I use windows
what's that
this is the sevrer with a MC server, Mineos interface, Sql databases, and a webserver running on it
better than the WSL ubuntu install with 1906 packages
oh idk my windows is just so bloated that I have neofetch and don't even know when I installed that
I'm just glad that microsoft saw stuff like chocolaty rising and decided to steal somebody elses project and create an even shitter alternative
what's the name?
yeah the powershell repository is shit
don't mention
I will find it
winget or some shit
oh
yeah
well
choco can install gcc in one line
that's based
the only reason why I use it
I like the good old browser, download and install
manjaro kek
haha
any plugins capable of running stress tests with like fake players
I really like yay and don't wanna bother redo an arch install
am the type of person that so long as you can support yourself idc
there used to be some pluigins like that but i havent seen any lately
why would you want that?
and, it will be, as your parents say, all your fault
Mineflayer
you should be able to feel how your code works
yes cat will mock you, for anything
it's not a plugin
yeah but I'd need to make my server cracked
not really useful to do that on the plugin layer
^
Should be fine for a dev environment
would it be completely accurate?
or buy minecraft accounts lol
just don't make it accessible from the outside
what are you testing?
a stress test on the server
which plugin
to see how many players it can handle doing stuff at the same time
no, the only way to get accurate results would be real players. But an approximation can be helpful as well
I'm not using one
running a sevrer in offline mode and making it accessible to public is a big nono
which s why I asked
a server out of the box?
you can use mineflayer yeah
guys the exploit is already patched?
read the pins
read #paper-help pins
Now we have one PR adding a warning for the outdated builds and one outright removing them, thats gonna be interesting
+1 on the one removing them, won't cause 1.8 users to ask for builds in here at all
FML just had a PSU go boom on me
fire or no fire? 
fire
yeah, that would be nice
not great, I hope everything else is still okay
first I jsut heard a loud pop then saw smoke and fire coming from it
do blocks of raw anything spawn in the ground
wait
your power supply boom?
not the first rodeo with a system going into flames
any reason why?
had a customer system come in we plugged it in and the power cables in the system immediatly caught fire
dont know why thios PSU just went boom
what brand
it came in due to it randomly shutting off when gaming
apple
Gigabyte
more like samsung
guarentee it is one of the exploding gigabyte PSU
exploded two times?
We spent MONTHS evaluating Gigabyte's GP-P750GM & GP-P850GM power supplies to determine why so many users reported DOAs, failures, and "exploding" MOSFETs.
Sponsor: US! Help GN pay for this work via our store: https://store.gamersnexus.net/ (use code SENDHELP for 10% off for a limited time!)
Grab a GN Wireframe Mouse Mat, in stock and shipping ...
never used gigabyte
their mobos are good
i have had many gaming PC's come in with gigabyte components that have failed in less than a year
I don't think it's that bad
once you work in computer repair you see it more often
I think that asus and acer are worse
just like HP laptops are garbage when it comes to hinges
I had hinge problems only with Lenovo so far
HP and Acer are the worst in the laptop industry
but luckily they are easy to replace
In our shop we actually recommend Lenovo and Dell
for desktops?
desktops and laptop
My dell is currently in to get the hinges fixed 
from my experience macs are quite durable if you treat them well
everything is quite durable if you treat it well
just bought a IdeaPad 5i 14 a few days ago, really curious if I will like it or not, but it seemed pretty good
I don't really think so
and repairing them is a pain in the ass if a third party repairs them apple sues the damn compnay that repaired it.
who gave you the right to do it? 😏
Fuck Apple
my huawei i bought second hand and paid 250euro for it, 6 years later and it still works fine
I have a matebook, it's pretty good for the price
loving the chinese spyware on it?
put linux
Lenovo is chinese
friend of mine has one, she always complains about the camera being in a unfavorable position 
???
response about spyware being in chineise electronics
come to think of it when the log4j exploit was mentioned and i did a search within hours of it coming out all I had were Chinese and Russian results on google
on wikipedia it says Tencent is impacted
An old log4j 1.2 bug that people also used for a RCE had a chinese page with a lot of google juice
You were probably finding that and related stuff
But Alibaba are the ones that reported the bug so there might have been a lot of interest from Chinese press about it
interesting
In this video I show you how to remove most of the malicious components of redstar OS, note I still wouldn't recommend using this as a daily driver linux system.
Link to article
https://richardg867.wordpress.com/2015/01/01/notes-on-red-star-os-3-0/
Link to RedStar Tools
https://github.com/takeshixx/redstar-tools
₿💰💵💲Help Support the Ch...
Where do I download the paper on here for 1.16.5 and 1.18+
And waterfall newest ?
Thank you my friend
Just point them to #announcements , don't copy/paste from it for them 😛
Either way thank you
Hey sorry 1 more thing
What is velocity ?
Is that like another bungee type of thing
Waterfall or velocity ?
waterfall is a fork of bungee
velocity is basically a complete rebuild of bungee based on the lessons of the years of dealing with waterfall
What is recommended?
Velocity is probably better but all the config and plugins are different
Waterfall is a drop in replacement for bungee
velocity if you're starting something new?

fix the expoit on optifine
https://imgur.com/a/3Zj7h58
What's the chances of a Paper 1.8 Exploit Fix? 🙂
hes talking about optifine tho
Probably slim-to-none, but I need to check.
All the info we can provide is pinned in the #paper-help channel
0.01%
At least spigot fixed the bug for 1.8 apparently
optifine didnt yet
Why did the taco channel get archived
well, for one, the taco god disappeared and left the project, and secondly, it wasn'treally used
Has everything calmed down around the exploit already?

Still talking about the exploit I see
jw, the log4j stuff, thats not related to updating java at all right?
who was the taco god
Lmao my 5800x is "better" in benchmark than my 5900x (from ovh)
but 5900x should get PCIE-4 nvme, so better write/read speed, but nothing in bench..
You're comparing disk speeds between CPUs...
I mean, we're mostly at the point where its not the CPU holding file transfers back
"dd sequential write speed" is not cpu
Is the irc bridge running the latest commit? It also seems to use log4j
Not sure how much it logs, just a thought
just delete it
well, my puzzled fact was why you brought up the CPU models
OVH just buys "decent" SSDs by the pallet
Or should I say, Bonjour. 😩😩
Hello Owen, how was your french exam ?
not really hard to find disks which are faster
but 5900x should get faster ssd, as it should be pcie-4 nvme
not pcie-3 the 5800x has
maybe the ssd is not on 4
it's not the PCI interface which is really holding us back though
or even a different ssd
it's the controller and all the back and forth BS that they do
Should be fine as long as it's not in debug mode
bien joué, plus qu'à voir les résultats
Which is the strongest and most optimized anti-xray plugin for Version 1.17.1?
Paper's built in anti xray
Some people are able to bypass that protection.
papers + orebuscator has some extra stuff but for the most point welcome to minecraft
french people need to learn english to get support on discord, but for you it's easy, you don't need to learn english 
they're generally able to bypass a plugins too
Like, pretty much all anti xray is the same thing on the surface
well
actually, most anti xray plugins are just block break counters, orebuscator is the only plugin worth looking at as that adds some things like ray tracing for some stuff, but, that is not cheap resource wise
According to my players, the orebuscator plugin drops fps.
they ALL do
it's not a plugin issue
it's not a server issue
It's a limitation of the client
and don't mention.
Iirc most hacked clients can deal with orebfuscator
But it does protect you from randoms just using a texture pack
doing a proper anti xray which is unbustable basically requires a lot of resources
there are probably plugins to see average mining performance, that's an another good way to detect them
well, that's practically what all of them bar orbfuscator are
if someone's flagged go check their tunnels
they're just block break counters
Unfortunately, this is impossible because there are 300 players at the same time.
you can do it with the flagged ones
Is 1.18.1 Paper stable release?
isn't there a giant red message?
he logged 2021
Indeed 👀
Apex hosting has in there list without it saying experimental
@naomi are you awake
I bet they also call spigot stable too
thats why i asked
what hosts say is literally irrelevant
Ok thanks
I already have a few bots attempting the log4j exploit in my webserver access logs 
lovely
hope 1.18.1 improve some performances (or at least FIX some performances issues) like goats
Wasn't expecting this to actually get merged https://github.com/PaperMC/papermc.io/pull/140
hello dap
Naomi!!!
i am not working on any project atm
we're well aware thank you trycs
only from the website?

Oh

log4j
php

I wanted to contribute to something
well tough luck
Go port some leaf patches to 1.18
Very fun
"Implement Velocity VarInt optimizations #6957"
this seems a good pull request 
i just updated shogicraft the other day
... if your definition of fun is torture
with this todo list I'm hoping myself "yes 1.18 will get better perf than 1.17" but I should stop hopping 😦
and we obviously don't fucking read anymore
That looks extraordinarily complex
Most of it depends on no tick view
Why are her legs human like
anyway dap wanna make some free plugin that replaces a premium plugin
with you?????
no
why are you asking me questions i obviously dont know the answer to?
Well can’t you fucking search the answer to them
Brainded
i bet your mom thought she was having a real big shit when she had you
Because that show was the weirdest fucking thing to ever exist at the time
But then ded was born

Ocelot this is normal discussion
We aren't actually being hostile
I have powers
i dont respect the authority of an upside down person
That’s rude
RESPECT MAH AUTHORITEEEE
@ mods !!!?????
Haha cat
when yeetus ded
Actual hostility between the regulars is different than normal day to day meme hostility

i just like to see the world burn
if i was a witch i wouldnt burn
ok let’s put that to the test
Hello dap.
I’m really trying to think of insults but my brain is either not working or it feels some sort of compassion for human shits like you
Hello Owen.
ded is the reason i hide the fact that my great great grandfather is belgian
bed time naomi
i just went to lie down in bed tf
we are watching you naomi
no, only simple is because he is in my walls
dap [The Watcher]
a shitty knockoff of The Witcher
anyway im gonna sleep
shut up cat
good night
now im staying 10 mins extra
look what you did
my bed is so low to the floor it's hard to fall out of it lmao
but yeah the neighbours invited us over for dinner tonight
poked fun at spanish people
Imagine that
also poked fun at irish people
people who think "You know what, it's so fucking hot, we should all just go chill inside and maybe have a nap"
Excuse me you bitch
meanwhile as brits we just complain that we're sweatin our asses off
NL complains regardless
needs more fluffy
nah
can someone help me
no
i can be rude!
oh well he took that quite seriously
oh no
anyway
sliced beef, mashed potatoes, ratattouille like in the movie
with way too much pepper, good stuff
oh god
I ordered my first cavery thing yesterday
My belly almost popped
but, ddaaamn
Ooo
idk what was I expecting but not that
how do i add the fix to my 1.16.5 server im new to being a server owner and im worried
just update.
Looks splendid
it was
Read paper help pins
thinking you actually get help in paper general
Mashed potatoes is just 💯
A bit raw there brother.
way better than my mom makes it
its RAW
How are you speaking through a bot?
i am an advanced AI
Webhook*
Yes
i blame the lighting for the meat looking as pink as it did
It’s an AI made to make our lives worse
Naomi do the beep boop bop thing again x)
Naomi serve me a cup of coffee please
what an awful robot
shut your spanish manwhore mouth
Reminds me of this
you probably live in north-west spain.
No
Wait
Where’s that
Um
It’s actually central Spain more or less
It might actually be north west fuck
too tired for this shit
Wow…
naiom out
Turn her off please
There must be some malfunction… perhaps they forgot to update their log4j….
lmao my reddit recap special power http://paper.owo.foundation/3zL1Fnj.png
i may be wearing a maid outfit but that doesnt make me your maid 
is it fixed for ALL clients including all optifine versions and if so do i need to reinstall
yes it does
now dust
monka papermc rp
I swear haven’t viewed programming humor in months
But ok
i hate dusting
@void void show us your Reddit recap
reddit users 😔
javascript is a language maid of pure pain and suffering
made*
i blame simple
anyone know if advancedban works on velocity?
Does anyone know if they already fixed the papermc exploit in 1.12.2?
no
#paper-help pins
:c
the fix will go back to 1.16.5 only
I have no idea but I love it
How to patch the exploit
1.18: Upgrade to 1.18.1, if possible. If not, use the same approach as for 1.17.x:
1.17: Add the following JVM arguments to your startup command line:
-Dlog4j2.formatMsgNoLookups=true
1.12-1.16.5: Download this file (https://launcher.mojang.com/v1/objects/02937d122c86ce73319ef9975b58896fc1b491d1/log4j2_112-116.xml) to the working directory where your server runs. Then add the following JVM arguments to your startup command line:
-Dlog4j.configurationFile=log4j2_112-116.xml
1.7-1.11.2: Download this file (https://launcher.mojang.com/v1/objects/dd2b723346a8dcd48e7f4d245f6bf09e98db9696/log4j2_17-111.xml) to the working directory where your server runs. Then add the following JVM arguments to your startup command line:
-Dlog4j.configurationFile=log4j2_17-111.xml
Versions below 1.7 are not affected

Me waiting for 1.16.5 fix
i had an acc to lurk for a while and deleted it
The 1.16?
Ok wait
it was out yesterday
Last time I made a Reddit account I ended up with gay recommendations on my email
LOL
Wait where?
read the damned announcements
Can you send me the discord link channel?
Reddit based? 👀👀
The 1.16.5 build on the website is patched.
Not the good kind of gay recommendations either
reddit commenters when gay people on front page
Read is fun
This?
🤔
LOL
[REDACTED]
or Community Discovery
I don’t remember what I did but I thankfully don’t receive any more emails
Yeah I turned off all emails
its ok, you cant help it that no one wants to hook up with you
😔
<@&748618676189528155>
!warn 777643768266489906 Don't post exploit links or content please.
:raised_hands: Warned Upioti#4878 (Don't post exploit links or content please.) [2 total infractions] -- ocelotpotpie#5943.
very cool
Why have I been warned for not respecting sexual orientations when I’m literally gay
😭
i can rce in 1.8 👀
posting anything about it whatsoever is clearly homophobia @plucky sparrow
seems like it
You said RCE in 1.8 didnt work but it does 😉
welcome to paper lul
RCE in 1.8 does work.

But don't post any exploit or RCE content.
it's against discord tos to talk about this so can we stop
discord gonna nuke us
mf using Share X 😭
You've already been warned - stop talking about it.
thats why i play dota, its so complex its literally impossible to write hacks that are useful at all 
skids be like
this server is filled with skids, but perhaps not as filled as spigot is

can’t believe this is my first warn
wait you got warned for that post?
Happens to the best of us.
literal children buying $30 minecraft client (which probably mines crypto) and copypasting exploits from github gist
the reddit one


Just check your dms with @thorny flicker
wow ur smart
He brought me bad news 😔
i have that bot blocked 
😔
Although my first warning is from before Eraser existed
this Upioti person left their unprotected VPS ip in the explloit video 😭
Hi there. I bring bad news.
😩😩
Hey guys, does the core team knows about the CVE exploit of log4j?
so this means i have no warnings right 
I should’ve just blocked him as well
No
i would never do anything illegal

on the internet
!inf search @potent fossil
Core team is oblivious yes
[1 total infractions] -- Prof_Bloodstone#0123
--------------------------------------------------------------------------------------------------------------------------
| 14251 | Oct 16 2021 | mute | simple#5957 | Warship#5966 | | Spam Detected - max message limit reached (10 / 0.293… |
| 5750 | Sep 06 2020 | warn | simple#5957 | Me4502#4502 | | aggressiveness/“bad words” in chat (example: https://… |```
Like, how would we know anything

BAD words
ignoring the several dozen announcements we've posted
the link got cut off 😢
aggressiveness/"bad words"
that one was actually deserved
Reading is impossible!!
do me next 
Wow simple being mean…?
okay DED
me next
back at your place?
I can be worse. You poop head!! 😠
the spam was when i accidentally sent my entire notability notebook to #general
like 400 pages
Don't know anyone who'd want to do you, sorry.
Skill issue.
Simples fave trick used to be sending images to IRC
thats not very nice
Cancelled.
Well, actually i didn't thought before saying that, so he's right 
@plucky sparrow while I can't say I'm the one who warned you, I can say that your joke at simple about 'finding gay men' may have seemed innocent to you, and I'm sure it was entirely unintentional, but joking with someone as if 'haha you being gay!! funny' sets a pretty bad example. Just wanted to give a little outsider context on that warn
being gay is incredibly comedic what do u mean
yes accuse the gay guy from being homophobe 
1984 1984 1984 1984 1984 1984 1984 1984
I really am homophonic
Regardless, Reddits email thing is curated to one’s liking isn’t it
you make one and the same sound?
i hate hearing sounds

I'm saying precisely the opposite, DED - I know he's not a homophobe for sure. I also see what really looks like a u gay=funny joke, even though that wasn't the intent
isn't it a fun world
yo who tryna room together at homo secks school 😳 
o.O
no homo tho
I really don’t remember joking about it though? I just replied to Simple’s message showing what my Reddit recommendations actually were
i see, i see
unfortunate
Wtf no
i collect warns like currency
I don’t mind the warn but imo it was pretty unneeded
What about a middle ground? Not remove the dap's warning, and give you a free warning instead? /s
simple
Yoo warning party!
overall, agreed - it's been removed
Best I can offer you is a ban and I let dap go
We are friends?!
larry, no

sorry cant hear u im going to unload christmas decor
I coulda 2 birds 1 stoned this
i am going to say it
Appreciate it, sorry if it seemed like my intentions with it were bad
bad dap
No worries. Also FWIW it was me who issued the warning. I was doing a bunch at once and didn't catch the context.
Dearest fair gents, ladies, and non conforming pals, what would be a most reasonable expectation for the estimated time of arrival for the newest paperspigot minecraft server release? I would be most appreciative to hear it, as those who frequent my minecraft server network are growing most impatient by the day.
But realized it was an error - so I apologize.
eta trolls will be fed to goblins
hot
!warn 892852765875900486 ETA trolling HAS GOTTEN OLD
:raised_hands: Warned chingona#4245 (ETA trolling HAS GOTTEN OLD) [3 total infractions] -- Larry#6086.
there is the goblin

we do a little trolling
It’s fine don’t worry
try now
I apologize as well if I hurt his feelings
Thanks ❤️
that was ur second ETA troll warn, I wouldn't want to do it again
we don't get those replies lol
i just love ETAs
I’m aware, that’s why I did it
im people
Always have been
i have a statistics midterm to take
Warship probably doesn't have feelings.
yet here i am
But I guess we'll find out if it eventually murders us all.
i'd play some dota but ive been rekking noobs too hard, no fun
life is ruff for a god gamer
that'll be 3.50
I have a 3 mbps internet and paying 22 USD am I been scammed?
Yea likely
yes
yes
depends where you live lol
Someone is watching 4k among us again.
Btw cat, you shall not worry anymore
i pay like 70usd and get 500/30mbps and tv
It’s safe now
Omw to break some cords
😆
do you get TV?
what's TV?
You mean ads?
You might also get a few subscriptions to media streaming services for cheaper than usual or free
free
pays for it
i'm paying disnet+, i don't watch tv, it sucks
😎
I'm your neighbor 😎
I speak Spanish
dap send me jamon iberico
does anyone know how to add the
1.17: Add the following JVM arguments to your startup command line:
-Dlog4j2.formatMsgNoLookups=true
Thing that mojang posted on their wbesite? cuz uh im confused-
How do you start the server?
Reading is fun
Oh, yeah. That too 🙂
no
yes
i went to spain in highschool and ate jamon iberico and i've never tasted ham that good again in my life
Spain and Portugal have the best types of ham tbh
That sounds pretty good.
and chorizos and all that
I had some of that ham. It was pretty good.
The good chorizo
English doesn't even have words to subdivide the ham, it's all just ham 
i stopped in a small town and went to a restaurant with a few peeps and ordered food but we didnt know how big the servings were or how to ask that so we ordered way too much food and then we didnt know how to ask for takeout
don't forget Germany
was a good time
chances are that the servings will be big if you go to any restaurant in a town
Yeah we ordered a few things a few times
the waiter really tried to understand us but he had no fucking clue what we wanted
And they were like "Are you sure?"
Then food shows up and it was like "Well that was too much food"
yea pretty sure the waiter brought our food and we looked at him and he looked at us and we had a moment of mutual understanding that transcended language barriers
the moment could probably be translated in english as "lol"
But Mallorca was pretty awesome.
ah yea the town i went was zaragoza
is that a town
That’s a whole province
Probably just a town in Zaragoza
I was mostly in Barcelona and around Mallorca.
I’ve only been to Zaragoza once and it was to visit the cathedral
Which I barely remember tbh
thats where we went 
yea
as far as i can tell it's in a city called zaragoza in the province of zaragoza????
idk
u tell me
I really don’t remember because I couldn’t give a fuck about the cathedral
we didnt even go in the cathedral afaik, we went around the back to some courtyard and they were having a party and thats where we found the restaurant that we ordered too much food, we ate, and then we got back on the bus and left
Right so Zaragoza itself is a city but it also is a province lol
There’s just other towns and smaller cities under the Zaragoza province
ah ok
does pterodactyl require a domain ?
you wont be able to use SSL without one, but no it doesn't require one
you should have one though
if you want it through the internet you need a domain to have security.
I am using an oracle vm for now, I will definitely need one. Do you recommend any site? I was thinking of getting some .99 .xyz domain from porkbun
i mean, use whatever you want but that .xyz is probably only 0.99 for the first year
you can also get an SSL cert for a DDNS provider's subdomain
can't say I'd recommend it, but you could do it for free
-
No hacking, griefing, trolling, etc...
-
Respect your fellow players this also includes staff.
-
No mods other then the ones that are allowed. If you are unsure if a mod is allowed or not please reach out to staff.
-
No lag machines.
-
No duping exploits if you find one report it please so we can tell paper about it.
-
We are not therapists but if you need help reach out and we can help by directing you to the appropriate resource.
So I'm trying to start a small minecraft server and need some help thinking up some rules.
rip
There is a bypass
ya that's why I don't click on anything from emails, download things from websites I don't 100% trust etc... (unless your talking about your server then that's a different story)
What I got ratted from the exploit
ah ya patch, patch, patch
I was on 2b
There’s a bypass of the patch
oh that's a different story lol
It’s what happened to me
Ahahahaha they actually did it, they brought back yt rewind
that's why I don't play on servers like 2b2t or other anarchy servers
but anyone want to help me think up rules? that's what I need help with the most right now
<@&748618676189528155>
Most important video in YouTube history: https://www.youtube.com/watch?v=DRnMwtdegII
They did?
!warn 511949330328977424 Don't post exploit info or videos please.
:raised_hands: Warned Rick Astley#0001 (Don't post exploit info or videos please.) [2 total infractions] -- ocelotpotpie#5943.
has anyone used an image on map plugin that doesn't break the maps once the plugin is removed?
custom maps depend on a custom MapRenderer, since the custom renderer is defined in the plugin code when you reload the renderer will not be found and the map will break
@sand mesa Were you using ImageOnMap before you uninstalled?
the command would've been /tomap link
That video didn't even have what they said in it
It was just skids pretending they were the first ones to find this vulnerability and how to exploit it when they're all just copying tutorials from 2019 😛
Should I be safe if I run java 8 latest version from this new exploit?
Java 8 doesn't have an exploit, log4j does.
If you're using the latest log4j you're fine.
Or Java 8 without log4j.
you should run the latest version of whatever java you have anyways
why would you uninstall the custom image map plugin
and not expect the custom image maps to break
so I just had a scary thought
to what an extend is jenkins vulnerable to this log4j thing?
its all java in there. Im atm just scouring the system details to see if log4j shows up as a dep anywhere in there
if its being used to log web traffic then Im kind of in danger there
oh yikes. It does log all web traffic
if anyone can confirm whether or not log4j is used in there, @ me. Ive shut down our jenkins for now until I can properly scan the system for where its being used
lmao
people are like, port scanning everywhere, it doesnt even have to be a targeted attack
oh damn
its shown up on my mainstream vulnerability tracking sites now, on the scale of potentially infecting billions of iot devices
including apple, microsoft and android
Only now I realize Im running jenkins lmao
what are the odds of that not using a vulnerable version or having lookups enabled. Sigh.
how many more days can we discuss this like it just happened
I just got a video on it in my goddamn youtube recommendations... I don't exactly look up CVEs on the daily. who knows how many poeple have exploited this since it went public? I only run a small SMP for me and a few dozen friends, and I patched it within an hour of the announcement in this server, but there's bound to be thousands of significantly larger servers already feeling the effects of the exploit
as long as you are updated and inform your player to update client
there is zero issue
does warns get reset at some point?
Don't think so.
I got alarmed about the minecraft side of things but got completely sidelined by all the java servers out there that arent minecraft
My (possibly wrong, don't rely on me) understanding is jenkins might have 1.x which ... isn't a problem? I think?, and here's a fun thing to even help further potentially https://github.com/jenkinsci/plugin-pom/pull/465
Yeah it should be log4j 2.0-2.14 that's impacted.
At least in the current CVE/understanding.
fun
so warns are't a counter, just track history
they serve to help staff identify problematic past behavior and nothing more
im reading this linear algebra book and it's using terms that my linear algebra class did not cover and i feel like i got scammed
I think this is the most useful info - https://issues.jenkins.io/browse/JENKINS-67353
I was thinking in baseball, 3 strikes, OUT!!
i cant speak for staff but im pretty sure punishment here is case by case and dependent on severity
it's pretty fair
Yeah I think some people have more than 3 strikes. I think it depends on the strikes.
thank you!
just putting it in a url didnt trigger anything so its probably fine, but Ill track that issue ticket and decide later when to turn it back on
I have a new idea for a logging library but I think for the implementation I need to run eval() on everything that's logged is this a good idea thanks for your feedbacks 🙏
ironic it happens after the crackdown on using println in plugins 🤣
?warn @trim steeple for being nshire
omg no experimentle 1.18 yes sir
I haven't found any 1.18 deserts that aren't also part mesa biome
@marsh charm does this count?
I've found a few. they do cluster around mesas though
yall know any performance plugin updated to 1.18?
simple one that just unloads chunks and items etc
Your best bet is to look through the documentation for paper.yml
No such plugin exists without major drawbacks
alrighty thanks
#waterfall-help please
every yatopia server runs outdated log4j
oh my god its paul rgb
what the FUCK
Good god every single one of these servers is fucked
for the scrapbook
you don't understand
i'm one of the few people in the world who understands why broccolai bought a scarf
that's a connection that can't just form overnight
kinda disappointed in apache tbh; things being actively exploited changes your disclosure timeline
hi
ngl that actually looks really cool
looks like a small tropical island or something
Is 1.18 paper no langer a Beta?
I Need paper 😦
Looks like libera chat started filtering the log4j exploi
I wonder if Twitter et al.are doing the same
is there a sane way to download the vanilla server? clicking the button on the launcher shows a url with random digits, i don't want to go through each version to get the respective vanilla server
if you want to do it programmatically you can pull the launcher json and parse that
but I'd argue it's just easier to figure out all the links
pull the launcher json? i found the link in the versions/{version}/{version}.json but i only have 1.17.1 and 1.18 on my computer atm
Why does my game crash whenever I try to join any server?
When I look into the logs of my server, all it says, is that I disconnected.
Singleplayer doesn't seem to work either. I can start the game just fine but whenever it needs to render some gameplay, it just crashes.
Are you on Vanilla?
no
Fabric 1.18.1
Iris, Sodium, ShulkerBoxTooltip, Okzoomer, Modmenu, Dynamicfps, SodiumExtra and Chunkpregen.
I don't know where to ask #velocity-help or #waterfall-help . But what's the difference between both of em? Both are proxies right?
Alright so, why should i use velocity, or why i should use waterfall? Is there any upside or downside?
velocity is newer but better and more compatible; waterfall has a lot more compatible plugins and an established plugin ecosystem for it
It's probably gonna be something really pathetic, ViaVersion and Chunkpregen don't seem to be causing any issues.
Which one use less resource? I just need geyser, viabackward & ViaVersion.
Does a gb ram vps enough for this?
Never
I obviously know less than you, dear gecko. I thought 4 wasn't enough.
Just found out that Iris was causing problems, makes sense because it messes with the game renderer.
Imagine using a bot to talk
imagine using discord to talk
it's an IRC bridge
bots?!
Imagine u cant join discord servers
Imagine having a anime pfp
all i do is troll in paper general anyway

