Loading....
- Apocalipsa dupa Nemessis
- Cand dorinta de afirmare depaseste granitele bunului simt – PaxNwo un leecher ordinar
- Cum sa iti protejezi adresa e-mail si datele confidentiale din aceasta
- Mi s-a furat id-ul de messenger/adresa e-mail. Ce sa fac?
- Experiment social II – andimoisescu.ro
- Pentru posteritate
- In curand…
- “Hot” de id-uri messenger
- Chiar ca sunteti retardati
- Ce nu se invata la scoala – Vendetta (6)
Loading....
- Apocalipsa dupa Nemessis in (81 Visits)
- Ce servicii de mail folositi? in (27 Visits)
- This is the end in (23 Visits)
- Hackersblog.org is now blog.rstcenter.com in (17 Visits)
- Short news in (16 Visits)
- La multi ani România, la multi ani românilor in (15 Visits)
- Inca o pierdere de timp in (11 Visits)
- Azi este ziua userilor hackersblog.org in (10 Visits)
- Raportare vulnerabilitati in (8 Visits)
- Contact si vulns report in (7 Visits)
- Mi s-a furat id-ul de messenger/adresa e-mail. Ce sa fac? in (229 Visits)
- Hi5.com coders read this in (28 Visits)
- SMS scam (1) in (21 Visits)
- Phishing Bancpost in (8 Visits)
- Dezinformare sau proasta informare? in (7 Visits)
- Si tentativele de phishing pot fi amuzante in (5 Visits)
- Phishing Raiffeisen cu atasament html in (4 Visits)
- Cum sa iti protejezi adresa e-mail si datele confidentiale din aceasta in (76 Visits)
- [Utilitare] Suna gratis de pe internet sau de pe iPhone in (41 Visits)
- Despre CSRF, hi5.com, cum sa trisezi la concursuri s.a.m.d. in (30 Visits)
- Ce nu se invata la scoala - Tipuri si tehnici spam/Hi5 (4) in (29 Visits)
- Ce nu se invata la scoala - (D)DOS (5) in (24 Visits)
- Virusi in clipuri video [how to] in (23 Visits)
- Ce nu se invata la scoala - Tipuri si tehnici spam/mail (2) in (21 Visits)
- Ce nu se invata la scoala - Tipuri si tehnici spam (1) in (17 Visits)
- Yahoo! redirects - a big issue (with video) in (10 Visits)
- Ca musca in... in (9 Visits)
- usa.kaspersky.com hacked ... full database acces , sql injection in (123 Visits)
- Simpatie.ro, matrimoniale3x.ro, apetisant.ro, deliciu.ro , etc Sql injection in (72 Visits)
- Yahoo! epic fail - permanent xss unleashed in (70 Visits)
- Telegraph.co.uk hacked, sql injection in (52 Visits)
- RedTube.com ... The Free Sex Video Community in (42 Visits)
- Kaspersky Thailand hacked by TinKode in (37 Visits)
- Conquiztador Hacked Again in (32 Visits)
- Telegraph.co.uk hacked - when will they learn? in (29 Visits)
- F-Secure.com - SQL Injection + Cross Site Scripting in (27 Visits)
- In atentia BitDefender.com, SQL Injection in (26 Visits)
- Wannabe Hackers [2] - cum sa faci un virus by sppy_hacker in (24 Visits)
- Wannabe Hackers [1] - Cum sa hack-uiesti RapidShare-ul in (20 Visits)
- Digital Photocopiers Loaded With Secrets in (15 Visits)
- Hacker Uses XSS and Google Street View Data to Determine Physical Location in (12 Visits)
- OWASP Phishing demo in (7 Visits)
- Oldies but goodies - Freedom Downtime - The Story of Kevin Mitnick in (7 Visits)
- Hope 2603 – Kevin Mitnick - Life a Computer Hacker – Revealed in (6 Visits)
- Christopher "moot" Poole: The case for anonymity online in (6 Visits)
- Owasp5005 Part1 - New zero-day browser exploits - ClickJacking in (5 Visits)
- [Video] The History Of Hacking in (5 Visits)
- Se poate sparge parola de Yahoo? in (256 Visits)
- phpBB.ro hacked in (81 Visits)
- Cand dorinta de afirmare depaseste granitele bunului simt - PaxNwo un leecher ordinar in (47 Visits)
- Experiment social in (46 Visits)
- "Hot" de id-uri messenger in (39 Visits)
- Oare cum e pana la urma? in (39 Visits)
- Experiment social II - andimoisescu.ro in (37 Visits)
- Ce nu se invata la scoala – Vendetta (6) in (37 Visits)
- Concurs fara premii in (36 Visits)
- Forumul Andreei Balan spart in (32 Visits)
Posted on February 5th, 2009
Ca sa dormim linistiti:
http://www.bitdefender.ro/files/Main/file/home_ro_2.swf?linkbus=javascript:alert(%22XSS%22) (necesita click pe butonasul ala gri din stanga unde scrie business)
http://www.bitdefender.ro/files/Main/file/home_ro_2.swf?linkbus=http://hackersblog.org (necesita click pe butonasul ala gri din stanga unde scrie business)
Nu stiu daca folosesc la ceva “evilish” xss-ul si redirectul dar totusi e amuzant sa vezi site-ul unei companii de securitate cu bug-uri (minore in cazul de fata).
Mi-e somnic. Noapte buna.


February 5th, 2009 at 2:52 am
Truely jenibil. Ouch. So PHPish…
February 5th, 2009 at 8:53 am
http://www.bitdefender.ro/files/Main/file/home_ro_2.swf?linkbus=javascript:alert(%22pula%22)
February 5th, 2009 at 10:01 am
Bine v-am gasit, o sugestie mica daca imi este permisa:
Puteti sa faceti un post “cum sa iti securizezi input-urile/site-ul” sau asemanator ? Cred ca ar folosi multora.
February 5th, 2009 at 11:13 am
Ce relevanță are dacă ai apelat direct swf-ul? Ce utilizator normal face treaba asta vreodată?
February 5th, 2009 at 12:04 pm
subscriu si eu la cele spuse de Alin. si pe mine m-ar interesa un post de genul, explicat mai pe intelesul “incepatorilor” ca noi. Thanks.
February 5th, 2009 at 12:45 pm
chiar asta voiam sa propun si eu.. un tutorial despre cum credeti ca ar trebui facuta o securizare.
February 5th, 2009 at 12:47 pm
@Sorin – e o simpla faza amuzanta. Nu orice postam aici trebuie sa fie super vulnerabilitate.
February 5th, 2009 at 5:50 pm
nu mai face
February 5th, 2009 at 6:19 pm
Ah, ok..
February 5th, 2009 at 7:42 pm
Se mai intampla
February 5th, 2009 at 7:52 pm
Inca functioneaza redirectul
February 5th, 2009 at 11:01 pm
va trece ceva pana isi va da seama cineva
February 6th, 2009 at 8:49 am
Pai se pare ca cineva si-a dat seama cata vreme nu mai merge java-scriptul.
La redirect nu ai ce sa faci cata vreme este un parametru extern.