|
|
|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 70
Members: 0
Total: 70
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
|
Ok. So basically, you are logged in as the admin but you cannot reauth.
Realize now that you can still access the user CP...but in a weird way.
Every command must be issued via POST arguements thr ... |
|
|
|
|
Download the Windows MSI installer and run it. |
|
|
|
|
\"205340551044400583937258.37903461\"
I think this is supposed to by the hash, but why is it a floating point number?
There is a way to get around relogging in admin CP you know with just the SI ... |
|
|
|
|
basic perl script for injection
#!/etc/bin/perl
# replace this line with #!C:\Perl\bin\perl on a Windows system
# provided AS-IS, no warranty, expressed or implied
# this program is comple ... |
|
|
|
|
lol.
So basically when you submit a form, thats where an SQL injection goes. If index.php accepts an unsanatized arguement sid, then you type in
http://victim.haxme.com/directory/index.php?sid=U ... |
|
|
|
|
Backup and store the database. It will probably be useful later.
Look for bugs in mods too, like EasyMOD which will let you write a modification and pretty much will let you, with a well written PH ... |
|
|
|
|
There are a lot of exploits for that version. Search on the web for some. |
|
|
|
|
I would recommend reading up on SQL injection;
http://www.google.com/search?q=SQL+injection
As well as learn some PHP;
http://www.google.com/search?q=PHP+tutorial
And some Perl;
http:// ... |
|
|
|
|
Yes, you can crack salted hashes but its much harder.
First you must cryptanalyze the MD5 hash and determine its reverse. Now bear in mind that a salted md5 function is as follows:
md5(x ? c)
... |
|
|
|
|
Basically if there is a salt, you cannot remove it at the MD5 step.
First you will have to know what the salt is. If the salt is say md(x+5), then you must first reverse the hash through bruteforci ... |
|
|
|
|
I've been working on EasyMOD for phpBB, but I have'nt been able to reverse the blowfish encrypted FTP password. When I try it on a localhost setup, the password
"?‹rb%þ?Šy`4NUTTICK?&# ... |
|
|
Page 1 of 1 |
All times are GMT |
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|