The hacker is technically correct that this is not a DDoS. DDoS stands for *Distributed* Denial of Service. If it's coming from a single source, it's not distributed, so it's only a DoS.
Also it specifically wasn't trying to shut down a service by spamming requests (Denial of Service), but was instead trying to brute force something, so it isn't even really a DoS. And it also doesn't look like it actually managed to take down the server or anything like that, with the "servers are being worked on" being something the dev did on their own.
He also said it wasn't a DoS though. I can understand why the spaghetti monster referred to it as a denial of service because the hacker was sending millions of API requests in a short period of time. Except the purpose of a DoS is to eat up bandwidth and overload the servers with a bunch of junk data. This instead blew up the database by creating a tonne of junk accounts which is arguably much worse than a DoS attack. The creation of all these accounts was also unintentional. The kid messed up with having the API that accessible to users without any limit. He's lucky that it only cost him ~$2000.
@@Dean..... Yeah, technically, it's not a DoS attack because that was not the intent, but it is a DoS result. DoS attacks are broader than just eating up bandwidth by spamming requests, though. Any attack aiming to make a service unavailable to legitimate users can be considered a DoS attack. For instance, the billion laughs attack is also considered a DoS attack.
Even if it only accidentally denies a service to users i would call it a dos. I definitely wouldnt call this a ddos though because its not multi-source
I love the energy you come at all of these with. Clearly you're very invested and enjoy p2w chess because you make so many videos about it, but you always have this amused tone when talking about this hacking stuff in much the same way you talked about unbalanced piece design
What a hilarious story xD It just so damn funny that all the hackers keep talking in the ceo's server openly. Your videos are incredibely funny, dying from laugh there from these voices, especially the ~russian~ german hacker one!
7:48 wow this is definitely not where i was expecting to see toki pona lol also i think it's sheer nonsense "time of moving things exists. (used as a context) you can move not things" it might be some insult lol "The time of a revolution is here, but you have no such ability" or it could could be referring to the old code / new code transfer stuff tbh this kinda makes me wanna get into the server and talk to the Chinese hacker in person lol amazing video as always CBA
Curse you, Icely, for what I must do. Because your videos have made me suffer irl, I'm gonna sue. And I don't care about your excuses, your videos are simply too funny and I burst out laughing whenever I recall them.
Tbh yeah, his ways of making money havent been necessarily moral but being a solo dev and being put into debt over your project is really shity. Also love how these people are committing crimes and then talking to the person they commited the crime against on discord, specifically the German guy, Germany extradites to the US
@@ivang3678 i mean technically it achieves kicking the dev in the ass to finally make his bad server config stop being bad even if he doesn't wanna do it. Like, I don't wanna wash my dishes, but I still wash them because I don't want mold and bugs all over my kitchen, even if it's cheap dollar store plates.
@@edward9487no the toki pona says a nonsensical mess, maybe it is meant to be "tenpo li tawa ona la ken sina li tawa lon ala" which translates to "when the time approaches it, your abilities vanish (go towards nothing)", I can speak toki pona
really? counting all printable ASCII characters by the power of 5, we get 95 ^ 5 which totals to WHOA WHAT THE HELL IS THAT?? 7,737,809,375!! Seven billion, seven hundred thirty-seven million, eight hundred nine thousand, three hundred seventy-five.
@@Sefcear So a brute force attack algorithm can crack an all-lowercase 8 characters password in 0.19 milliseconds. A blink takes around 100 to 150 milliseconds. Each uppercase and number adds about half an hour, and a special non-alphanumeric symbol adds roughly a full day before it can be cracked. If those 5 characters are only alphanumeric in nature, you're COOKED. (Also I don't know if the dev's changed it since Flash got deprecated, but back when I was poking around in Flash/Shockwave, special characters were a HUGE NO NO and I know some mySQL stuff craps its bed with them too.)
I smell an impending death of the game. I don't think spaghetti monster can keep up. Sooner or later he will throw in the towel and close it for good. I have mixed feelings about it, the game was actually fun.
As much as I want to make my own online game, it can never be competitive because of shit like this. (Forced to use P2P which probably doesn’t end well when hackers get involved
Actually, StratShotPlayer's captcha advice sounds like it would've helped, at least on paper. The rest of the ideas, though... I can see he's still Chess Evolved Online's dedicated lolcow.
I hate to admit it, but it cannot be a DDOS attack by definition. (Unless the Chinese hacker used multiple computers to spam requests). Also, it cannot be a DOS attack (unless they spammed requests really quickly, which should result in more than 25k requests). This means it was just some clown spamming requests, forgetting that actions have consequences.
Finally someone wise! (:walcomebuck:) Anyway, DoS attacks are usually spamming ICMP/TCP level packets too, and not meaningful server API invocations. There's also a factor of intention.
worst part is the "hackers" presented in this saga aren't even that malevolent since they mostly were messing around and joking with the dev so I imagine someone actually taking this seriously could've ruined the livelyhood of that dev instantly
well, on the positive side at least the hackers (not being intentionally malicious) are exposing insane exploits so they get fixed now instead of years into the future after being abused by someone more malicious
@@Sefcear this dev is not fixing it all anytime soon. My guess is everything needs to be remade from the ground up. He did not even understand the fact that once computation is done on the cloud you have to pay for it and deleting the tables would obviously not decrease his 2k$ bill.
Guess the game is doomed, which is unfortunate because I enjoyed chilling and abusing the AI in the daily "challenge" for a minute before going to bed. Not for actual balance obviously, but hard to have actual balance in a game like this anyway and I was never here for that.
1:07 In the immortal words of The Ancestor as portrayed by Wayne June "The Price of Preparedness, paid now in gold, and later in blood". Grand failed to do basic countermeasures, now he lost a year's profits. Classic. I'm saddened that I didn't screencap all my armies tho 5:23 Word. Always hit save, back up to an unplugged hard drive or two every week
Why does the hacker think he's cool for speaking in Toki Pona... That's a constructed language for communicating as simply as possible, not something that you can do with hacking and whatnot. What a personality that is...
At 7:49 i am very confused because the message the Chinese hacker sent doesn’t translate to anything, in any language? There also isn’t any Chinese character with the pinyin “i” meaning the Jo isn’t Chinese, which means either the hacker knows more languages that weren’t on google translate or it’s a cipher of some kind…
It's in toki pona, a conlang someone designed around the idea of making a very simple language. It has very few words - somewhere in the range of 200-400, iirc - which each have a very broad meaning (i.e. describe concepts that natural languages would split apart into several seperate words). I'm not terribly familiar with the language, so this could be completely wrong, but it looks like it says something to do with the spaghetti monster not being able to do much against the hackers.
The hacker is technically correct that this is not a DDoS. DDoS stands for *Distributed* Denial of Service. If it's coming from a single source, it's not distributed, so it's only a DoS.
Concentrated Denial of Service
Also it specifically wasn't trying to shut down a service by spamming requests (Denial of Service), but was instead trying to brute force something, so it isn't even really a DoS.
And it also doesn't look like it actually managed to take down the server or anything like that, with the "servers are being worked on" being something the dev did on their own.
He also said it wasn't a DoS though. I can understand why the spaghetti monster referred to it as a denial of service because the hacker was sending millions of API requests in a short period of time. Except the purpose of a DoS is to eat up bandwidth and overload the servers with a bunch of junk data. This instead blew up the database by creating a tonne of junk accounts which is arguably much worse than a DoS attack. The creation of all these accounts was also unintentional.
The kid messed up with having the API that accessible to users without any limit. He's lucky that it only cost him ~$2000.
@@Dean..... Yeah, technically, it's not a DoS attack because that was not the intent, but it is a DoS result.
DoS attacks are broader than just eating up bandwidth by spamming requests, though. Any attack aiming to make a service unavailable to legitimate users can be considered a DoS attack. For instance, the billion laughs attack is also considered a DoS attack.
Even if it only accidentally denies a service to users i would call it a dos. I definitely wouldnt call this a ddos though because its not multi-source
Complete Bankruptcy Announced
the havker agrued that the ddos shouldn't have costed $100"
correct!
$2151.29
I like how this person hacked the servers, and they are now having an average discord conversation about it instead of literally anything else
lol
"yeah i didnt ddos him i just increased his bill by $2000"
p2w chess has fallen. thousands must be paid
This guy read the dictionary and assumed that'd be a defense in the court of public opinion. Clown Bruteforcing APIs.
I love the energy you come at all of these with. Clearly you're very invested and enjoy p2w chess because you make so many videos about it, but you always have this amused tone when talking about this hacking stuff in much the same way you talked about unbalanced piece design
7:50 WHY IS THE CHINESE HACKER SPEAKING TOKI PONA?!
tan ni: toki pona li pona
What a hilarious story xD
It just so damn funny that all the hackers keep talking in the ceo's server openly.
Your videos are incredibely funny, dying from laugh there from these voices, especially the ~russian~ german hacker one!
Chinese Break Advanced
7:49 toki pona battle advanced
Conlang Blabbering Apprentice
Using AI art would be something spaghetti monster would do, especially after massive loss.
he already did for years now
What is this schizophrenia
And why does the game not have a server request limit
7:48
wow this is definitely not where i was expecting to see toki pona lol
also i think it's sheer nonsense
"time of moving things exists. (used as a context)
you can move not things"
it might be some insult lol
"The time of a revolution is here, but you have no such ability"
or it could could be referring to the old code / new code transfer stuff
tbh this kinda makes me wanna get into the server and talk to the Chinese hacker in person lol
amazing video as always
CBA
it's just referencing that you can pass your turn with hacking
[when the time to move a piece comes, it's possible to not move a piece]
4:20 damn that's... Actually bad, what the hell. The developer here was genuinely reasonable in his explanations and stuff.
truly a checkers bonus attack moment
Curse you, Icely, for what I must do.
Because your videos have made me suffer irl, I'm gonna sue.
And I don't care about your excuses, your videos are simply too funny and I burst out laughing whenever I recall them.
we have done it, we finally broke old old chess battle advanced
1:06 patience from chess battle advanced!?
i thought the thumbnail was AI and i was accepting of it but the end statement makes it way way funnier, gg
I like how the Chinese hacker called him the spaghetti monster
4:00 roblox battle advanced
Literally came into the comments to time stamp it lol
Oof
New New Hacking Battle Advanced
Honestly I kind of feel bad for him now, 2K is kinda a lot more substantial lmao.
Tbh yeah, his ways of making money havent been necessarily moral but being a solo dev and being put into debt over your project is really shity. Also love how these people are committing crimes and then talking to the person they commited the crime against on discord, specifically the German guy, Germany extradites to the US
Like yeah, what do you actually achieve by bringing the game servers down? If people like to play p2w trash let them have it
@@ivang3678 i mean technically it achieves kicking the dev in the ass to finally make his bad server config stop being bad even if he doesn't wanna do it. Like, I don't wanna wash my dishes, but I still wash them because I don't want mold and bugs all over my kitchen, even if it's cheap dollar store plates.
7:49 "toki pono or whatever it is show me the bibliography"
Is that what it actually said
@@edward9487no the toki pona says a nonsensical mess, maybe it is meant to be "tenpo li tawa ona la ken sina li tawa lon ala" which translates to "when the time approaches it, your abilities vanish (go towards nothing)", I can speak toki pona
TIL a lot of people made weird omni languages besides esperanto
vötgil, vötgil, vöt vöt gil
@@BottleWaterson Conlangs babyy
At least the hacker has some manners
4:04 Roblox jumpscare.
Should have shown back up when they mentioned CAPTCHA
5 unknown symbols does NOT sound secure, lmao!
Bro could've at least hashed the characters to make the discovery that its only 5 characters less likely
really? counting all printable ASCII characters by the power of 5, we get 95 ^ 5 which totals to WHOA WHAT THE HELL IS THAT?? 7,737,809,375!! Seven billion, seven hundred thirty-seven million, eight hundred nine thousand, three hundred seventy-five.
@@Sefcear 8 billions isn't a lot. Especially if you consider that 10 symbols isn't much more bandwidth and it gives 59873693923837890625 combinations
@@Sefcear So a brute force attack algorithm can crack an all-lowercase 8 characters password in 0.19 milliseconds. A blink takes around 100 to 150 milliseconds. Each uppercase and number adds about half an hour, and a special non-alphanumeric symbol adds roughly a full day before it can be cracked.
If those 5 characters are only alphanumeric in nature, you're COOKED. (Also I don't know if the dev's changed it since Flash got deprecated, but back when I was poking around in Flash/Shockwave, special characters were a HUGE NO NO and I know some mySQL stuff craps its bed with them too.)
I wonder if all of this is just an elaborate ARG by Icely
Ladies and gentlemen. Old Old Chess Battle Advanced.
It's not DDoS, it's denial of wallet!
Wait. After all the memes, youre telling me that original real (real) CBA has a developer even more unhinged than oocba?
whereve you been, the original inventor of CBA returning was introduced in part 3 of this :frog:
I smell an impending death of the game. I don't think spaghetti monster can keep up. Sooner or later he will throw in the towel and close it for good.
I have mixed feelings about it, the game was actually fun.
7:49 toki pona jumpscare
7:06 yeah, this monetization is cba
As much as I want to make my own online game, it can never be competitive because of shit like this. (Forced to use P2P which probably doesn’t end well when hackers get involved
Actually, StratShotPlayer's captcha advice sounds like it would've helped, at least on paper.
The rest of the ideas, though... I can see he's still Chess Evolved Online's dedicated lolcow.
4:05 what _IS_ that
Far less embarrassing than Chess Evolved Online at this rate.
the chess battle advanced lore goes so deep
The p2w chess situation is crazy
4:05 roblox puzzle games?
Actually theres like 7
4:05 Is that Roblox? Don’t tell me you’re one of them YBA players…
Oh my god, these voice impressions are so funny I laughed so hard my stomach aches.
I hate to admit it, but it cannot be a DDOS attack by definition. (Unless the Chinese hacker used multiple computers to spam requests).
Also, it cannot be a DOS attack (unless they spammed requests really quickly, which should result in more than 25k requests).
This means it was just some clown spamming requests, forgetting that actions have consequences.
Well apparently it was millions, so that's a DOS attack. Maybe not intentionally, but ...
Finally someone wise! (:walcomebuck:)
Anyway, DoS attacks are usually spamming ICMP/TCP level packets too, and not meaningful server API invocations. There's also a factor of intention.
unexpected toki pona
Oh i feel really bad for the dev of ceo now. This is awful
5:51 peak seen (Steins;gate)
it feels to me like icely puts more effort into each video than the dev of this game into making good code
worst part is the "hackers" presented in this saga aren't even that malevolent since they mostly were messing around and joking with the dev so I imagine someone actually taking this seriously could've ruined the livelyhood of that dev instantly
well, on the positive side at least the hackers (not being intentionally malicious) are exposing insane exploits so they get fixed now instead of years into the future after being abused by someone more malicious
@@Sefcear this dev is not fixing it all anytime soon. My guess is everything needs to be remade from the ground up. He did not even understand the fact that once computation is done on the cloud you have to pay for it and deleting the tables would obviously not decrease his 2k$ bill.
@@SuperRedstoneman its literally fixed wtf. the most devastating account hack has been completely ironed out.
@@Sefcear I did not mean this specific hack. The rest of the game seems riddled with weird behavior that permits this stuff from happening.
Old Old Chess Battle Advanced more like New New Drama Simulator Advanced
Now spaghetti monster is paying to lose by having oocba
This is almost as crazy as space game! icely pls
thanks spaghetti monster
this is like the opposite of p2w. justice
thats the point where the dev should threaten legal action against the hacker
let the courts decide if its a ddos attack :3
Guess the game is doomed, which is unfortunate because I enjoyed chilling and abusing the AI in the daily "challenge" for a minute before going to bed. Not for actual balance obviously, but hard to have actual balance in a game like this anyway and I was never here for that.
IT'S OVER!!!
Icely plays Roblox confirmed
German hacking advanced
Complete battalion annulment
Im starting to feel bad for the crypto lazy dev (its still too funny tho)
Chess rollBack Augh
1:07 In the immortal words of The Ancestor as portrayed by Wayne June "The Price of Preparedness, paid now in gold, and later in blood". Grand failed to do basic countermeasures, now he lost a year's profits. Classic. I'm saddened that I didn't screencap all my armies tho
5:23 Word. Always hit save, back up to an unplugged hard drive or two every week
this lore about some trash game is just mind boggling
BuT iTs Not A DdOs!!11!1!1
this is the most insane, but least consequential drama I've seen, and I love every second of it, how is it still going
Chess Battle Advanced
Why does the hacker think he's cool for speaking in Toki Pona... That's a constructed language for communicating as simply as possible, not something that you can do with hacking and whatnot. What a personality that is...
Well do you know toki pona if it's that easy?
7:48 Wait was that Toki Pona
At 7:49 i am very confused because the message the Chinese hacker sent doesn’t translate to anything, in any language? There also isn’t any Chinese character with the pinyin “i” meaning the Jo isn’t Chinese, which means either the hacker knows more languages that weren’t on google translate or it’s a cipher of some kind…
It's in toki pona, a conlang someone designed around the idea of making a very simple language. It has very few words - somewhere in the range of 200-400, iirc - which each have a very broad meaning (i.e. describe concepts that natural languages would split apart into several seperate words). I'm not terribly familiar with the language, so this could be completely wrong, but it looks like it says something to do with the spaghetti monster not being able to do much against the hackers.
@@delta3244 not 200 words! the most common nimi pu + nimi ku suli are 137 words, and some people use less.
8;14
1) Sure I guess.
2) I mean, he is not making you use the shitty ai image as the thumb and main background image, that was your choice.
Just cause you don't have a problem with it, doesn't mean that its okay to do it.
Cwhats Byour Aroblox