Bitcoin Forum
May 25, 2024, 08:22:09 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
  Home Help Search Login Register More  
  Show Posts
Pages: « 1 2 [3] 4 5 6 7 8 9 10 11 12 13 14 »
41  Economy / Currency exchange / Re: (MoneyPaks available) now buying BTC instant & automatic on: June 21, 2013, 07:34:08 PM
reloaded
42  Economy / Services / Re: Hack my site, receive bitcoins on: June 21, 2013, 03:56:37 AM
Gee if you see the problem why are you still allowing hackers full access to your buddies server?  nm, you clearly know what you are doing.   Roll Eyes
43  Economy / Services / Re: Hack my site, receive bitcoins on: June 21, 2013, 03:37:51 AM
lol, oh ok... so the 49 vulnerabilities including 25 serious ones mean nothing.
why are you asking for help if you obviously know it all and can't learn a thing?
my assessment of your high school coding is worth thousands.

jackass


here's the report I sent the idiot op, don't waste your time tryng to earn his pittance offer




I hit your server 25,000 times.  You have serious vulnerabilities as listed in this image:
http://postimg.org/image/rnegf0m6n/


06.20 20:04.24, Started scanning http://http:80//198.12.67.18/test:80/ ...
06.20 20:04.24, Start URL : http://http:80//198.12.67.18/test:80/
06.20 20:04.24, Scanning Mode : Heuristic
06.20 20:04.24, Server banner: Unknown
06.20 20:04.25, Crawling started, URL: http://http//198.12.67.18/test:80/
06.20 20:04.26, Unable to detect custom 404 pattern automatically.
06.20 20:04.26, Some crawling options will be automatically disabled.
06.20 20:04.26, Processing file /198.12.67.18/test:80
06.20 20:04.27, Analyzing client side JavaScripts
06.20 20:04.27, Analyzing file: http://http/198.12.67.18/test:80/
06.20 20:04.27, Script analysis done
06.20 20:04.27, Processing file /198.12.67.18/test:80 (variation 1)
06.20 20:04.27, Processing file /198.12.67.18/test:80 (variation 2)
06.20 20:04.27, Searching for possible site errors.
06.20 20:04.27, Searching for aspect alerts.
06.20 20:04.27, Crawling done.
06.20 20:04.27, Scanning started.
06.20 20:05.20, Finished scanning.
06.20 20:05.20, Flush file buffers.
06.20 20:05.41, Started scanning http://198.12.67.18:80/test:80/ ...
06.20 20:05.41, Start URL : http://198.12.67.18:80/test:80/
06.20 20:05.41, Scanning Mode : Heuristic
06.20 20:05.41, Server banner: Apache 2.x
06.20 20:05.41, Crawling started, URL: http://198.12.67.18/test:80/
06.20 20:05.42, Apache mod_negotiation filename bruteforcing
06.20 20:05.42, Error page Web Server version disclosure
06.20 20:05.43, Searching for possible site errors.
06.20 20:05.43, Searching for aspect alerts.
06.20 20:05.43, Crawling done.
06.20 20:05.43, Scanning started.
06.20 20:05.45, Apache httpd Remote Denial of Service
06.20 20:06.00, CSRF testing finished.
06.20 20:06.00, Finished scanning.
06.20 20:06.00, Flush file buffers.
06.20 20:06.47, Started scanning http://198.12.67.18:80/ ...
06.20 20:06.47, Start URL : http://198.12.67.18:80/
06.20 20:06.47, Scanning Mode : Heuristic
06.20 20:06.47, Server banner: Apache 2.x
06.20 20:06.47, Crawling started, URL: http://198.12.67.18/
06.20 20:06.49, Processing file /
06.20 20:06.49, Apache mod_negotiation filename bruteforcing
06.20 20:06.49, Error page Web Server version disclosure
06.20 20:06.51, Analyzing client side JavaScripts
06.20 20:06.51, Analyzing file: http://198.12.67.18/
06.20 20:06.51, Script analysis done
06.20 20:06.51, Processing file / (variation 1)
06.20 20:06.51, Processing file / (variation 2)
06.20 20:06.51, Searching for possible site errors.
06.20 20:06.51, Searching for aspect alerts.
06.20 20:06.51, Crawling done.
06.20 20:06.51, Scanning started.
06.20 20:06.51, Apache httpd Remote Denial of Service
06.20 20:07.08, Possible sensitive files
06.20 20:07.12, Possible sensitive directories
06.20 20:07.15, Possible sensitive directories
06.20 20:07.53, Restart crawling
06.20 20:07.53, Processing file /test.php
06.20 20:07.53, Processing file /phpmyadmin
06.20 20:07.53, Processing file /test
06.20 20:07.53, Processing file /index.php
06.20 20:07.54, Processing file /test
06.20 20:07.54, Processing file /phpmyadmin
06.20 20:07.54, Password type input with auto-complete enabled
06.20 20:07.54, User credentials are sent in clear text
06.20 20:07.54, Processing file /test/basic.css
06.20 20:07.54, Processing file /test/login.php
06.20 20:07.54, Password type input with auto-complete enabled
06.20 20:07.54, User credentials are sent in clear text
06.20 20:07.54, Processing file /phpmyadmin/index.php
06.20 20:07.54, Password type input with auto-complete enabled
06.20 20:07.54, User credentials are sent in clear text
06.20 20:07.54, Processing file /phpmyadmin/index.php (variation 1)
06.20 20:07.54, Processing file /phpmyadmin/themes
06.20 20:07.54, Processing file /phpmyadmin/index.php (variation 2)
06.20 20:07.54, Password type input with auto-complete enabled
06.20 20:07.54, User credentials are sent in clear text
06.20 20:07.54, Processing file /phpmyadmin/index.php (variation 4)
06.20 20:07.54, Processing file /phpmyadmin/themes/original
06.20 20:07.54, Processing file /phpmyadmin/themes/original/img
06.20 20:07.54, Processing file /phpmyadmin/phpmyadmin.css.php
06.20 20:07.54, Processing file /phpmyadmin/Documentation.html
06.20 20:07.55, Processing file /phpmyadmin/Documentation.html (variation 1)
06.20 20:07.56, Processing file /phpmyadmin/print.css
06.20 20:07.56, Processing file /phpmyadmin/phpmyadmin.css.php (variation 1)
06.20 20:07.56, Session token in URL
06.20 20:07.56, Processing file /phpmyadmin/index.php (variation 3)
06.20 20:07.56, Password type input with auto-complete enabled
06.20 20:07.56, User credentials are sent in clear text
06.20 20:07.56, Processing file /test/style/fg_membersite.css
06.20 20:07.56, Broken links
06.20 20:07.56, Processing file /test/scripts/gen_validatorv31.js
06.20 20:07.56, Processing file /test/style
06.20 20:07.56, Processing file /test/login.php (variation 1)
06.20 20:07.56, Password type input with auto-complete enabled
06.20 20:07.56, Processing file /test/UPC.ttf
06.20 20:07.56, Processing file /phpmyadmin/themes
06.20 20:07.56, Processing file /phpmyadmin/themes/original
06.20 20:07.56, Processing file /phpmyadmin/phpmyadmin.css.php (variation 2)
06.20 20:07.56, Session token in URL
06.20 20:07.56, Processing file /phpmyadmin/themes/original/img
06.20 20:07.56, Processing file /phpmyadmin/index.php (variation 7)
06.20 20:07.56, Password type input with auto-complete enabled
06.20 20:07.56, User credentials are sent in clear text
06.20 20:07.56, Broken links
06.20 20:07.56, Processing file /phpmyadmin/index.php (variation 5)
06.20 20:07.56, Password type input with auto-complete enabled
06.20 20:07.56, Processing file /phpmyadmin/index.php (variation 9)
06.20 20:07.56, Password type input with auto-complete enabled
06.20 20:07.56, Session token in URL
06.20 20:07.56, Processing file /phpmyadmin/changelog.php
06.20 20:07.57, Processing file /phpmyadmin/docs.css
06.20 20:07.57, Processing file /phpmyadmin/index.php (variation 6)
06.20 20:07.57, Processing file /phpmyadmin/index.php (variation Cool
06.20 20:07.57, Processing file /phpmyadmin/translators.html
06.20 20:07.57, Broken links
06.20 20:07.57, Processing file /phpmyadmin/license.php
06.20 20:07.57, Processing file /test/scripts
06.20 20:08.06, Processing file /test/style
06.20 20:08.06, Processing file /test/scripts
06.20 20:08.08, Processing file /phpmyadmin/setup
06.20 20:08.08, Analyzing client side JavaScripts
06.20 20:08.08, Analyzing file: http://198.12.67.18/phpmyadmin/
06.20 20:08.08, Analyzing file: http://198.12.67.18/test/login.php
06.20 20:08.08, Script analysis done
06.20 20:08.08, Processing file /phpmyadmin/index.php (variation 11)
06.20 20:08.08, Password type input with auto-complete enabled
06.20 20:08.08, Processing file /phpmyadmin/index.php (variation 10)
06.20 20:08.08, Password type input with auto-complete enabled
06.20 20:08.08, Processing file /phpmyadmin/index.php (variation 12)
06.20 20:08.08, Password type input with auto-complete enabled
06.20 20:08.08, Searching for possible site errors.
06.20 20:08.08, Searching for aspect alerts.
06.20 20:08.08, Session Cookie without HttpOnly flag set
06.20 20:08.08, Session Cookie without Secure flag set
06.20 20:08.08, Crawling done.
06.20 20:08.08, Scanning started.
06.20 20:08.18, Cross Site Scripting (verified)
06.20 20:35.33, Cross Site Scripting (verified)
06.20 20:35.33, Possible username or password disclosure
06.20 20:35.37, Possible server path disclosure (Unix)
06.20 20:35.37, Possible username or password disclosure
06.20 20:35.38, Error message on page
06.20 20:35.39, Email address found
06.20 20:35.40, Email address found
06.20 20:35.40, Possible server path disclosure (Unix)
06.20 20:36.09, Possible sensitive directories



44  Economy / Services / Re: Hack my site, receive bitcoins on: June 21, 2013, 02:06:55 AM
dear OP.  turn off your website.  it's bad.

back in a couple.

short version:
You have more than 30 vulnerabilities including a severe one that you need to address immediately.  I've only completed 5% of my scan.

I think I found your problem.


sending report via PM

45  Economy / Services / Re: Hack my site, receive bitcoins on: June 21, 2013, 01:52:45 AM
I'll check both your sites, but your bounty is low...  checking now....
46  Economy / Currency exchange / Re: [WTB] 1000 btc on: June 21, 2013, 01:39:37 AM
I'm at mtgox minus ten with you paying escrow.  Can do gift cards fastest. 
47  Other / Beginners & Help / Re: Trusted p2p venture capital investing protocol using BTC on: June 20, 2013, 09:26:07 PM
...investing and trading in various securities is not regulated.

Actually this is my point, just becuase it's bitcoin doesn't mean the other laws don't apply. 
48  Economy / Currency exchange / Re: [ANN] New BTC -> moneyPak site on: June 20, 2013, 08:15:41 PM
Restocked with MoneyPak Gift Cards!
49  Economy / Currency exchange / Re: (MoneyPaks available) now buying BTC instant & automatic on: June 20, 2013, 08:15:08 PM
Restocked.  Please try the $0 test inventory to make sure you understand how the system works before you go through and make an actual purchase.  Testing the system costs less than a penny.
50  Other / Beginners & Help / Re: Trusted p2p venture capital investing protocol using BTC on: June 20, 2013, 07:53:39 PM
first Nobody wants or needs your penny

Second just because it has a new name doesn't mean securities regulations do not apply.  What you are proposing is regulated.
51  Economy / Currency exchange / BTC -> moneyPak website (out of stock) on: June 20, 2013, 03:48:13 PM
After major design changes the owner has loaded some moneypaks on the site to sell.  If you'd like to test the service please do so with the test ($0) inventory.  It costs less than one penny to test the system and the test demonstrates how the system works.

Now loaded with moneypak giftcards.

Registered with FinCEN as an MSB
Run by a tax paying American.
SSL Secured


https://www.sellbitcoinforcash.com

52  Economy / Currency exchange / Re: (MP STOCK available) buying BTC instant, automatic, provable (beta testing) on: June 20, 2013, 01:16:12 PM
We have a few hundred in moneypaks in hand.  anyone need?
53  Economy / Currency exchange / Re: [WTB] 1000 btc on: June 20, 2013, 03:08:31 AM
bump
54  Economy / Games and rounds / Re: Bitcoin <=> Moneypak | Exchange service going strong on: June 20, 2013, 02:59:58 AM
don't troll his thread, that's bs.
55  Economy / Currency exchange / Re: Buying Bitcoins - Can pay with PayPal/Bank Wire/Amazon gift card/Moneypak on: June 18, 2013, 10:08:46 PM
that's confusing, a site called "paktocoin" buys bitcoins?  It would seem with a name like that they would buy moneypaks and sell bitcoin.

Did you author the site you pointed us to?

56  Other / Meta / Re: Where's the new forum Theymos? on: June 18, 2013, 01:33:02 PM
There are a bunch of reasons for a legal attack on the forums.

1. running unregistered securities exchanges involving Americans
2. promoting illegal activities like online gambling to Americans
3. encouraging trading in amounts larger than $10,000 USD without SAR filings w Americans
4. promoting illegal banking activities like trade fortress offerings
5. promoting a possible mail fraud scheme like the one operated by BFL

it seems almost likely that some government agent would subpoena the operators/mods and records and database to determine who the specific players are in these illegal activities.

57  Economy / Auctions / Re: CoinGator Complete BTC to PayPal Business | Includes Everthing! on: June 18, 2013, 01:09:36 PM
There is something else that hat come with the offer, liability.  When buying a company you take on any and all liability.  I recently read a paper presented by the American Bar Association that said something really suprising to me.

If I move into a location where a somekindofcompany was and even if I have no relationship with somekindofcompany and that firm had, let's say, a tax burden.  Well guess who becomes liable for that tax burden?  Unbelievable that it's the new company?  It may seem crazy but it is true. 

As an unlicensed MSB selling or buying bitcoin is illegal.  Sorry, MicroGuy, but taking on this company exposes the buyer to potential criminal liability.

You could not pay me $50,000 to take the company off your hands now that you have apparently broken federal law. 

58  Economy / Currency exchange / Re: Bitcoins (BTC) to 15 fiat currencies Cash in Unregistered Mail (CiUM) on: June 17, 2013, 04:12:03 PM
So you are unlicensed, uninsured, not registered as a company anywhere, live in a worn torn country that you think is terrorist and we should do business with you?

That's quite a compelling argument you make there...  Roll Eyes
59  Bitcoin / Legal / Re: FinCEN's definition of a Money Exchanger on: June 16, 2013, 11:11:27 PM
not for profit

I do not believe "not for profit" is the same as (not "engaged in business").  There are plenty of non-profit and not-for-profit entities who are "engaged in business".  There are also many for-profit companies who are losing money and not "profitting" but again they are "engaged in business".

I wonder if there may be some exception for "sole proprietors" but you are probably right that the Department of Treasury has only begun to consider bitcoin at all.
60  Alternate cryptocurrencies / Altcoin Discussion / Re: [ANN]Help me make a new coin, and get rich in the process! THE GOAT-COIN on: June 16, 2013, 03:51:16 PM
R U 4 REAL?

Yes, I actually am!  I'm looking for a talented developer, I already have an acronym (GOAT) and a logo (my picture but cropped into a circle)



ROFL
Pages: « 1 2 [3] 4 5 6 7 8 9 10 11 12 13 14 »
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!