This forum is in archive mode. You will not be able to post new content.

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - .goethe

Pages: [1]
1
Sorry I'm not familiar, what do you mean by "perm"?

he means permission.

2
Beginner's Corner / Re: Best Way To Hack HTTP Auth?
« on: September 22, 2015, 05:36:54 PM »
there are no vulnerablities in HTTP auth bcause it requests a client-based (browser) connection to the server.

all you can do is to try a bruteforce attack (mostly easy bcause you have infinite trials; hydra in combination with rockyou.txt may help) or fetch the header of a logged in user (username and password is base64 encoded).

3
use * to mark the vulnerable parameter. f.e.:
Code: [Select]
python sqlmap.py -u "http://www.vuln.com/page.php?id=1&param=test&vuln=*


4
Found it on the Webs / Re: North Korean IP addresses and ports found
« on: September 22, 2015, 05:25:49 PM »
https://en.wikipedia.org/wiki/Internet_in_North_Korea
wow dude.. you successfully used google!

Quote
North Korea has one known block of 1,024 IPv4 addresses:

    175.45.176.0 – 175.45.179.255 [31]

Despite North Korea's limited Internet access, the small pool of IP addresses has led to very conservative allocations. The Pyongyang University of Science and Technology, for example, has just one IP address on the global Internet.[32]

North Korea's telecommunications ministry is also the registered user of 256 China Unicom addresses. This pre-dates the activation of North Korea's own block, but as of 2014 it is still current:

    210.52.109.0 – 210.52.109.255 [31]


5
Beginner's Corner / Re: Is there a way to access hidden webpages on a site?
« on: September 05, 2015, 08:19:56 PM »
use a spider (burpsuite) or dir-based bruteforce (dirbuster).

6
Beginner's Corner / Re: My webshell is not up-loadable (0_-) PLZ help
« on: September 04, 2015, 02:57:34 AM »
directory need to be writeable (not the file..)

7
ahm yeah "those hackers" made a great job with hacking AM.
no need to give out information (fun fact: there is no information)  :-\

Pages: [1]


Want to be here? Contact Ande, Factionwars or Kulverstukas on the forum or at IRC.