Loading....
- Hacker Uses XSS and Google Street View Data to Determine Physical Location
- CAnCAn te iubim, CA CA tine nu gasim. Superfete.cancan.ro e de rahat
- Deface (?!?) pe Cotidianul.ro
- Virusi in clipuri video [how to]
- Cyber-Bullying – palma parinteasca a noului mileniu
- Christopher “moot” Poole: The case for anonymity online
- Wtf Avira?
- Some old story about tagged.com
- Pwning cam girls for fun
- Tabloshit
Loading....
- Yahoo! again - XSS in Uncategorized (357 Visits)
- Yahoo! again - bad settings? in Uncategorized (252 Visits)
- Fanii nostri in Uncategorized (183 Visits)
- Frustrant in Uncategorized (146 Visits)
- La multi ani România, la multi ani românilor in Uncategorized (137 Visits)
- Weblog.ro - Shell via Local File Inclusion in Uncategorized (119 Visits)
- Yahoo! epic fail - permanent xss unleashed in Uncategorized (50 Visits)
- ... in Uncategorized (38 Visits)
- XSS Ownage - hi5 vs. Yahoo! + video in Uncategorized (2 Visits)
- Ce nu se invata la scoala - Tipuri si tehnici spam/Hi5 (4) in Uncategorized (2 Visits)
- Hackersblog.org is now blog.rstcenter.com in (1800 Visits)
- O mica dar importanta precizare in (1402 Visits)
- Twitter in (846 Visits)
- This is the end in (834 Visits)
- Ce servicii de mail folositi? in (826 Visits)
- Un nou membru in (771 Visits)
- La multi ani România, la multi ani românilor in (762 Visits)
- Inca o pierdere de timp in (709 Visits)
- De reţinut in (670 Visits)
- Azi este ziua userilor hackersblog.org in (644 Visits)
- Hi5.com coders read this in (621 Visits)
- SMS scam (1) in (611 Visits)
- Dezinformare sau proasta informare? in (597 Visits)
- Phishing Raiffeisen cu atasament html in (557 Visits)
- Phishing Bancpost in (524 Visits)
- Si tentativele de phishing pot fi amuzante in (456 Visits)
- Ce nu se invata la scoala - Tipuri si tehnici spam/mail (2) in (2870 Visits)
- Ce nu se invata la scoala - Tipuri si tehnici spam/Hi5 (4) in (2833 Visits)
- Despre CSRF, hi5.com, cum sa trisezi la concursuri s.a.m.d. in (1207 Visits)
- [Utilitare] Suna gratis de pe internet sau de pe iPhone in (1187 Visits)
- Ce nu se invata la scoala - (D)DOS (5) in (1007 Visits)
- Virusi in clipuri video [how to] in (969 Visits)
- Ce nu se invata la scoala - Tipuri si tehnici spam (1) in (763 Visits)
- Yahoo! redirects - a big issue (with video) in (609 Visits)
- Internet vs. privacy (1) in (503 Visits)
- Ca musca in... in (462 Visits)
- RedTube.com ... The Free Sex Video Community in (13517 Visits)
- usa.kaspersky.com hacked ... full database acces , sql injection in (5415 Visits)
- libertatea.ro vulnerabil la (blind) sql injection in (3080 Visits)
- Telegraph.co.uk hacked, sql injection in (2700 Visits)
- Pwning cam girls for fun in (2694 Visits)
- Facebook hacked - sql injection in (2579 Visits)
- Simpatie.ro, matrimoniale3x.ro, apetisant.ro, deliciu.ro , etc Sql injection in (2553 Visits)
- F-Secure.com - SQL Injection + Cross Site Scripting in (1858 Visits)
- [Hacked]Bitdefender (Portugal) exposes sensitive customer data in (1854 Visits)
- Wtf Avira? in (1803 Visits)
- Christopher "moot" Poole: The case for anonymity online in (1580 Visits)
- Digital Photocopiers Loaded With Secrets in (1491 Visits)
- Hacker Uses XSS and Google Street View Data to Determine Physical Location in (895 Visits)
- Wannabe Hackers [1] - Cum sa hack-uiesti RapidShare-ul in (648 Visits)
- Wannabe Hackers [2] - cum sa faci un virus by sppy_hacker in (631 Visits)
- Hope 2603 – Kevin Mitnick - Life a Computer Hacker – Revealed in (487 Visits)
- PRIVACY IS DEAD - GET OVER IT, Pt 01-34 (Recommended by Hackersblog ) in (419 Visits)
- Oldies but goodies - Freedom Downtime - The Story of Kevin Mitnick in (416 Visits)
- [Video] The History Of Hacking in (395 Visits)
- Email Security - Why You Should Encrypt Your Email - Part One in (389 Visits)
- Deface - tuttoaffari.lastampa.it si citymusiclab.city.corriere.it in (3545 Visits)
- RNS vs. RAI - citizenreport.rai.it hacked. in (3360 Visits)
- Hi5 email finder si sfarsitul a tot ceea ce inseamna privacy in social networking in (3282 Visits)
- Se poate sparge parola de Yahoo? in (2735 Visits)
- Planete-plus-intelligente.lemonde.fr defaced by R.N.S. in (2561 Visits)
- Free SMS time, TrimiteSMS.ro in (2532 Visits)
- Gmail uber hacking in (2474 Visits)
- Cancan.ro spart pentru a doua oara intr-o zi in (2345 Visits)
- Camera de supraveghere a universitatii Alexandru Ioan Cuza din Iasi in (2322 Visits)
- Stiri cu antena3 in (2241 Visits)
Posted on February 5th, 2009
Ca sa dormim linistiti:
http://www.bitdefender.ro/files/Main/file/home_ro_2.swf?linkbus=javascript:alert(%22XSS%22) (necesita click pe butonasul ala gri din stanga unde scrie business)
http://www.bitdefender.ro/files/Main/file/home_ro_2.swf?linkbus=http://hackersblog.org (necesita click pe butonasul ala gri din stanga unde scrie business)
Nu stiu daca folosesc la ceva “evilish” xss-ul si redirectul dar totusi e amuzant sa vezi site-ul unei companii de securitate cu bug-uri (minore in cazul de fata).
Mi-e somnic. Noapte buna.


February 5th, 2009 at 2:52 am
Truely jenibil. Ouch. So PHPish…
February 5th, 2009 at 8:53 am
http://www.bitdefender.ro/files/Main/file/home_ro_2.swf?linkbus=javascript:alert(%22pula%22)
February 5th, 2009 at 10:01 am
Bine v-am gasit, o sugestie mica daca imi este permisa:
Puteti sa faceti un post “cum sa iti securizezi input-urile/site-ul” sau asemanator ? Cred ca ar folosi multora.
February 5th, 2009 at 11:13 am
Ce relevanță are dacă ai apelat direct swf-ul? Ce utilizator normal face treaba asta vreodată?
February 5th, 2009 at 12:04 pm
subscriu si eu la cele spuse de Alin. si pe mine m-ar interesa un post de genul, explicat mai pe intelesul “incepatorilor” ca noi. Thanks.
February 5th, 2009 at 12:45 pm
chiar asta voiam sa propun si eu.. un tutorial despre cum credeti ca ar trebui facuta o securizare.
February 5th, 2009 at 12:47 pm
@Sorin – e o simpla faza amuzanta. Nu orice postam aici trebuie sa fie super vulnerabilitate.
February 5th, 2009 at 5:50 pm
nu mai face
February 5th, 2009 at 6:19 pm
Ah, ok..
February 5th, 2009 at 7:42 pm
Se mai intampla
February 5th, 2009 at 7:52 pm
Inca functioneaza redirectul
February 5th, 2009 at 11:01 pm
va trece ceva pana isi va da seama cineva
February 6th, 2009 at 8:49 am
Pai se pare ca cineva si-a dat seama cata vreme nu mai merge java-scriptul.
La redirect nu ai ce sa faci cata vreme este un parametru extern.