|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
I Know Nothing About Hacking, So I Could Use Some Help |
|
Posted: Sat Jul 26, 2008 11:25 am |
|
|
OneBigDummy |
Regular user |
|
|
Joined: Jul 26, 2008 |
Posts: 6 |
|
|
|
|
|
|
|
I want to hack a PhpBB board. I think it's a very old board, as the latest copyright date is 2002.
These guys are the ultimate trolls. Heck, that's the whole premise of the board. Then they run back to the board I want to hack and yuck it up.
I tried this thread, but no luck: http://www.waraxe.us/ftopict-1594.html
I'll give you any details you need. I'll will even pay to get the job done right and without detection. Just let me know. |
|
|
|
|
Posted: Sat Jul 26, 2008 11:37 am |
|
|
lenny |
Valuable expert |
|
|
Joined: May 15, 2008 |
Posts: 275 |
|
|
|
|
|
|
|
Find the version number - the specific version number. You can generally do this by going to the target url folowed by "/docs/CHANGELOG.html" and finding the last entry and work out the current version
Once you have this, come back and we can talk a little more. |
|
|
|
|
Posted: Sat Jul 26, 2008 11:42 am |
|
|
OneBigDummy |
Regular user |
|
|
Joined: Jul 26, 2008 |
Posts: 6 |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Posted: Sat Jul 26, 2008 11:49 am |
|
|
lenny |
Valuable expert |
|
|
Joined: May 15, 2008 |
Posts: 275 |
|
|
|
|
|
|
|
Hmmm... well revenge hacking dosen't really meet with my moral standings, nor should I really be helping you hack for pure revenge... but I will continue.
Firstly, Waraxe won't like you posting vulnerable URLs, so you better get rid of it (which I doubt).
Firstly, the community is a large one. Large communities generally will take care to protect themselves, and the admin obviously has some sense otherwise the Docs directory would still be there.
I found this:
Quote: | This is unrelated to your current problem but it looks like you've missed some phpBB updates, or at least your FI Black 3D template hasn't been updated. The following:
Quote: | Powered by phpBB © 2001, 2002 phpBB Group |
Should look more like this:
Quote: | Powered by phpBB © 2001, 2005 phpBB Group |
That change occurred in the 2.0.11 to 2.0.12 phpBB update...
|
Now that implies to me that the version must be around 2.0.11 or so. Hopefully. Maybe look around for exploits for those versions (I know there are a few) and try some of them out?
Edit: Hang on, Just doing some research into exploits... It seems you already tried a 2.0.11 exploit to no result... |
|
|
|
|
|
|
|
|
Posted: Sat Jul 26, 2008 11:55 am |
|
|
OneBigDummy |
Regular user |
|
|
Joined: Jul 26, 2008 |
Posts: 6 |
|
|
|
|
|
|
|
When I used the link I put in my original post (http://www.waraxe.us/ftopict-1594.html), I could get to step seven before the page I was trying to hack just kept refreshing itself. Although it wasn't in the instructions, I'd have to hit the "Replay" button before I could edit.
I edited the URL out of the other post. If you read some of the posts on that board, however, you'll see that they are pretty deserving of whatever comes to them. |
|
|
|
|
Posted: Sat Jul 26, 2008 12:01 pm |
|
|
OneBigDummy |
Regular user |
|
|
Joined: Jul 26, 2008 |
Posts: 6 |
|
|
|
|
|
|
|
I apologize for the double post, but I found it!!!
2.0.5 |
|
|
|
|
Posted: Sat Jul 26, 2008 12:07 pm |
|
|
lenny |
Valuable expert |
|
|
Joined: May 15, 2008 |
Posts: 275 |
|
|
|
|
|
|
|
Brilliant! Now set about finding exploits |
|
|
|
|
Posted: Sat Jul 26, 2008 12:13 pm |
|
|
OneBigDummy |
Regular user |
|
|
Joined: Jul 26, 2008 |
Posts: 6 |
|
|
|
|
|
|
|
Would I have to use exploits specifically for 2.0.5? I did a search and only found one link with "2.0.5" in the title.
If I can use others, would I use earlier or later versions? |
|
|
|
|
Posted: Sat Jul 26, 2008 12:23 pm |
|
|
lenny |
Valuable expert |
|
|
Joined: May 15, 2008 |
Posts: 275 |
|
|
|
|
|
|
|
Try and find exploits specific for 2.0.5... however some exploits from a few builds beforehand may also work. Just try Googling "phpbb 2.0.5 exploits" and do some research |
|
|
|
|
Posted: Sat Jul 26, 2008 12:31 pm |
|
|
OneBigDummy |
Regular user |
|
|
Joined: Jul 26, 2008 |
Posts: 6 |
|
|
|
|
|
|
|
I read the documentation for the 2.0.5 exploits, but honestly it's all jibberish to me. I really don't understand it. Sorry for being such a pain, but I'm going to keep trying, even if it takes me months with this little topic. Please be patient. |
|
|
|
|
www.waraxe.us Forum Index -> PhpBB
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|