Bitcoin Forum
May 05, 2024, 09:01:16 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: [1 FREE Vouch Copy Left! Hurry!] Website Vulnerablity Scanning  (Read 82500 times)
ASICPool (OP)
Member
**
Offline Offline

Activity: 80
Merit: 10



View Profile
June 03, 2013, 09:01:02 PM
Last edit: June 04, 2013, 07:45:26 PM by ASICPool
 #1

Hey guys, Matt here, just wanted to offer some unique services.
After participating in several bug bounties on the forum, I decided I would extend my hobby and start offering my scanning as a service.

So to kick off this new business, I will offer 3 Vouch Copies.
There is 1 vouch service left.

After these vouches are gone, I will charge for my services according to the severity of the issues.
All my prices will be reasonable, and I can adjust to your budget.

Please post here with your website URL. I will PM you once I am done.


Code:
Sites Scanned: 2
Files Scannned: 559
Directories Found: 140
Data Used: 781.2 MB

Disclaimer:
If you use my service, you hereby agree that you have written permission from both the website owner and the hosting provider to conduct such tests on said website.
"With e-currency based on cryptographic proof, without the need to trust a third party middleman, money can be secure and transactions effortless." -- Satoshi
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714899676
Hero Member
*
Offline Offline

Posts: 1714899676

View Profile Personal Message (Offline)

Ignore
1714899676
Reply with quote  #2

1714899676
Report to moderator
1714899676
Hero Member
*
Offline Offline

Posts: 1714899676

View Profile Personal Message (Offline)

Ignore
1714899676
Reply with quote  #2

1714899676
Report to moderator
raze
Full Member
***
Offline Offline

Activity: 182
Merit: 100



View Profile
June 03, 2013, 10:42:42 PM
 #2

When you say vulnerability scanning, what exactly do you mean? What tool/s are you using? Are you going to get permission  from the server owner if you start port scanning? Be a little more specific Smiley

BTC --16FPbgyUZdTm1voAfi26VZ3RH7apTFGaPm
LTC -- Lhd3gmj84BWqx7kQgqUA7gyoogsLeJbCXb
PPC -- PRpKGjgjNLFv8eR7VVv7jBaP8aexDFqk4C
ASICPool (OP)
Member
**
Offline Offline

Activity: 80
Merit: 10



View Profile
June 03, 2013, 11:26:16 PM
 #3

When you say vulnerability scanning, what exactly do you mean? What tool/s are you using? Are you going to get permission  from the server owner if you start port scanning? Be a little more specific Smiley

Sorry I should have been more clear.
Web Application Scanning.
I have a tool that will look for many errors in application including serious things like
XSS
CSRF Vulnerablities
SQli
 and many other common errors.
jaywaka2713
Sr. Member
****
Offline Offline

Activity: 266
Merit: 250


aka 7Strykes


View Profile
June 04, 2013, 12:22:57 AM
 #4

http://myownaddress.openbtcshop.com

Admin Login: http://myownaddress.openbtcshop.com/wp-admin

ASICPool (OP)
Member
**
Offline Offline

Activity: 80
Merit: 10



View Profile
June 04, 2013, 01:03:09 AM
 #5


514 Files
129 Directories
scanned.

Apache/2.2.22 (Ubuntu)

No vulnerablities found
dscotese
Sr. Member
****
Offline Offline

Activity: 444
Merit: 250


I prefer evolution to revolution.


View Profile WWW
June 04, 2013, 02:44:40 AM
 #6

memeracing.net

Thanks!

I like to provide some work at no charge to prove my valueAvoid supporting terrorism!
Satoshi Nakamoto: "He ought to find it more profitable to play by the rules."
jaywaka2713
Sr. Member
****
Offline Offline

Activity: 266
Merit: 250


aka 7Strykes


View Profile
June 04, 2013, 04:40:43 AM
 #7


514 Files
129 Directories
scanned.

Apache/2.2.22 (Ubuntu)

No vulnerablities found

Can you vouch for that here: https://bitcointalk.org/index.php?topic=202266.0

ASICPool (OP)
Member
**
Offline Offline

Activity: 80
Merit: 10



View Profile
June 04, 2013, 06:24:13 PM
 #8

memeracing.net

Thanks!

Site scanned, severe issue found, pm'ing you.
ASICPool (OP)
Member
**
Offline Offline

Activity: 80
Merit: 10



View Profile
June 04, 2013, 06:30:21 PM
 #9


Your site is not loading.
Sorry. 1 Vouch Copy is still available!
dscotese
Sr. Member
****
Offline Offline

Activity: 444
Merit: 250


I prefer evolution to revolution.


View Profile WWW
June 04, 2013, 07:22:18 PM
 #10

memeracing.net

Thanks!

Site scanned, severe issue found, pm'ing you.
Fixed.  Thanks!

I like to provide some work at no charge to prove my valueAvoid supporting terrorism!
Satoshi Nakamoto: "He ought to find it more profitable to play by the rules."
ASICPool (OP)
Member
**
Offline Offline

Activity: 80
Merit: 10



View Profile
June 04, 2013, 07:25:26 PM
 #11

memeracing.net

Thanks!

Site scanned, severe issue found, pm'ing you.
Fixed.  Thanks!
No problem!
Tell your friends!
americandesi
Hero Member
*****
Offline Offline

Activity: 518
Merit: 500


BTC < > INR & USD


View Profile
June 04, 2013, 07:32:19 PM
 #12


514 Files
129 Directories
scanned.

Apache/2.2.22 (Ubuntu)

No vulnerablities found

Seriously guys..? You are willing to post your site address and admin login URL publicly on a forum like these.?
Added to that you are posting the scan details here after the scans..! Scan reports should be treated as CONFIDENTIAL and PRIVILEGED.

Secondly, ASICPool : wherever you are offering your services from.. If you scan any server hosted in USA. The hosting companies have the right to get back at you through your ISP. Even the site owner donot have the permissions to run Vulnerability scans without the written permission from the hosting companies / network providers.! Always, save your a** legally in a written format.!

Just my 2 cents!

P.S : Am a cyber security and digital forensics specialist myself and work with a security company and carryout pentesting projects for Fortune 500 companies day in and day out...!

Always buying and selling btc in bulk.!
Have I helped you out?  Send a donation! : 1ADesitf6McNmFw5wAN1y86bvyHLB5gR6P
My Reputation Thread : https://bitcointalk.org/index.php?topic=252042.0
ASICPool (OP)
Member
**
Offline Offline

Activity: 80
Merit: 10



View Profile
June 04, 2013, 07:43:21 PM
 #13


514 Files
129 Directories
scanned.

Apache/2.2.22 (Ubuntu)

No vulnerablities found

Seriously guys..? You are willing to post your site address and admin login URL publicly on a forum like these.?
Added to that you are posting the scan details here after the scans..! Scan reports should be treated as CONFIDENTIAL and PRIVILEGED.

Secondly, ASICPool : wherever you are offering your services from.. If you scan any server hosted in USA. The hosting companies have the right to get back at you through your ISP. Even the site owner donot have the permissions to run Vulnerability scans without the written permission from the hosting companies / network providers.! Always, save your a** legally in a written format.!

Just my 2 cents!

P.S : Am a cyber security and digital forensics specialist myself and work with a security company and carryout pentesting projects for Fortune 500 companies day in and day out...!


It was a wordpress login, which is always the same address, so not a big deal there.
I am not pentesting, just doing web testing.
It is completely legal, thank you for your concer though.
jaywaka2713
Sr. Member
****
Offline Offline

Activity: 266
Merit: 250


aka 7Strykes


View Profile
June 05, 2013, 01:11:26 AM
 #14


514 Files
129 Directories
scanned.

Apache/2.2.22 (Ubuntu)

No vulnerablities found

Seriously guys..? You are willing to post your site address and admin login URL publicly on a forum like these.?
Added to that you are posting the scan details here after the scans..! Scan reports should be treated as CONFIDENTIAL and PRIVILEGED.

Secondly, ASICPool : wherever you are offering your services from.. If you scan any server hosted in USA. The hosting companies have the right to get back at you through your ISP. Even the site owner donot have the permissions to run Vulnerability scans without the written permission from the hosting companies / network providers.! Always, save your a** legally in a written format.!

Just my 2 cents!

P.S : Am a cyber security and digital forensics specialist myself and work with a security company and carryout pentesting projects for Fortune 500 companies day in and day out...!


It was a wordpress login, which is always the same address, so not a big deal there.
I am not pentesting, just doing web testing.
It is completely legal, thank you for your concer though.

One, there are no exploits, so I'm not worried. Also, if anyone knows anything about wordpress, the admin login isn't hard to find. Also, even if he did get in trouble I would vouch for him as I requested his service.

Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!