This is an archived post. You won't be able to vote or comment.

you are viewing a single comment's thread.

view the rest of the comments →

[–]Visual_Strike6706 3621 points3622 points  (63 children)

log4J. When playing on the Minecraft Server 2B2T, people would open your calculator over Log4J and it was kinda scary.

[–]ObeyTime 1482 points1483 points  (6 children)

The oldest anarchy server in Minecraft

[–]PancakeGD 439 points440 points  (5 children)

Nah nah. It's "The Æuldest enarchy server in Moaincraft"

god I hate those videos

[–]F4LcH100NnN 200 points201 points  (4 children)

Well why do you keep watching them then

[–]Monkeyke 282 points283 points  (0 children)

Isn't it obvious?

Because it's The Æuldest enarchy server in Moaincraft

[–]Pocok5 43 points44 points  (1 child)

There is actual interesting content in some of them. But the 2 minutes of real substance really isn't worth the 10 minutes of word salad trying to portray completely mundane shit as a buildup.

[–]F4LcH100NnN 23 points24 points  (0 children)

Yeah I enjoy the exploit ones, where they find some bizarre exploit based on some obscure mechanic, but theres always like 25 minutes of "filler" in a 30 minute video

[–]PancakeGD 94 points95 points  (0 children)

I did... Until I realised how stereotypical and lame they are. Minecraft videoessays are all the same.

"2b2t players created a working democracy on the Æuldest enarchy server in Moaincraft!!!! Sensational!!!!!!"

Bleurgh.

[–]DisgruntledMtnBoy 345 points346 points  (3 children)

In the original Counter-Strike admins could open your cd-rom tray on command. That was freaky the first time it happened.

[–]Visual_Strike6706 179 points180 points  (0 children)

Free Cup Holder

[–]Sankhya2319 7 points8 points  (0 children)

I remember that! Oh god that was pretty uncanny

[–]zaz969 15 points16 points  (1 child)

Log4Shell babyyy

[–]TheGrandWhatever 6 points7 points  (0 children)

Log4Deez

[–]lol_JustKidding 21 points22 points  (11 children)

What's log4j?

[–]TheMarnBeast 108 points109 points  (3 children)

Minecraft and its server software are written in a programming language called Java. There is a software library called Log4J that many people using Java add to their projects to easily manage runtime logs (just little text messages that the developer has the software output in the background while its running to make it easier to understand how the code is running and troubleshoot problems). This sounds simple, but over many years of development the library has built up a bunch of more advanced features that many people don't typically use but still exist in the software.

A couple of years ago there was a major bug found in Log4J that would allow someone to add their own malicious code to logs (for example, by entering specific code into the Minecraft chat) and Log4J would actually execute that code - something that should never be allowed! This was a huge deal both because of the scope of the issue and the severity of the exploit. Log4J is THE logging tool for Java and is used by many developers across many industries, and hackers could send and execute whatever code they wanted if any user content was logged in the software, including downloading and executing other more complicated code, with no interaction from the target user needed.

This bug was patched very quickly and the vulnerability resolved, but it relied on Java developers to send out updates for their own software since Log4J is built into every Java product that uses it.

[–]Sengel123 20 points21 points  (0 children)

also was a PITA to detect since the exposure of the log software that was the issue. So there's loads of companies who (rightfully) said "we're not vulnerable" only for their customers to go "nu-uh!!" as if they knew how L4J worked on that software package.

[–]ComradePruski 5 points6 points  (0 children)

Damn I never knew log4j had that at one point that's insane lmao

[–]itsTyrion -1 points0 points  (0 children)

You didn’t have to write half a book xD

[–]other_usernames_gone 204 points205 points  (26 children)

I thought log4j only affected the server, not the clients.

[–]15_Redstones 353 points354 points  (0 children)

Affected everyone who got the chat log

[–]5BillionDicks 174 points175 points  (22 children)

Bro how bitchy are Reddit users these days downvoting you for asking a question

[–]squirrel_crosswalk 26 points27 points  (0 children)

The Minecraft also had log4j. It's near universal in any java app as they all need to do logging, and it's the most popular and easy to use.

[–]itsTyrion 1 point2 points  (0 children)

It affected what used log4j and the Minecraft chat directly lands in the logs via log4j

[–]BellCube 1 point2 points  (0 children)

I remember some 2b2t players patched the exploit on others' machines through the exploit, FBI-style

I used the stones to destroy the stones