ITsTanked (OP)
Newbie
Offline
Activity: 54
Merit: 0
|
|
September 08, 2013, 10:18:50 PM Last edit: September 11, 2013, 11:37:04 PM by ITsTanked |
|
Admin not respond so I sell to high bidder.
|
|
|
|
og kush420
|
|
September 09, 2013, 12:17:04 AM |
|
are passwords in plaintext is what i want to know. not going to buy it, but just curious
|
|
|
|
ITsTanked (OP)
Newbie
Offline
Activity: 54
Merit: 0
|
|
September 09, 2013, 01:43:00 AM |
|
all are in md5. I add this to listing
|
|
|
|
ITsTanked (OP)
Newbie
Offline
Activity: 54
Merit: 0
|
|
September 09, 2013, 04:54:47 PM |
|
5 hour left
|
|
|
|
ITsTanked (OP)
Newbie
Offline
Activity: 54
Merit: 0
|
|
September 10, 2013, 03:10:04 PM |
|
buyer not pay yet so relist
|
|
|
|
vesperwillow
|
|
September 10, 2013, 06:42:19 PM |
|
So.. has this been proven or is it just using classic sql injection hoping it'll work?
And..... yeah. Quite an interesting thread you have here..
|
|
|
|
ITsTanked (OP)
Newbie
Offline
Activity: 54
Merit: 0
|
|
September 10, 2013, 07:07:41 PM |
|
So.. has this been proven or is it just using classic sql injection hoping it'll work?
And..... yeah. Quite an interesting thread you have here..
Hope? I get in and read all 104 tables and see 15k users so it work.
|
|
|
|
hamburger
|
|
September 10, 2013, 11:29:30 PM |
|
Hi,
Bull Sh..
This is my username Hamburger
You have my permission to publish my registered Full name, LTC balance, email address and password here as prove that it work.
Hamburger
|
Datacoin : DHZ6H91fsDoBHbdqED3ysCJJ2TUh3zRMZD Krugercoin : Yz3A9sTMp2yh5QLuAL8YQyvS5PdjHRHkkf
|
|
|
uoyeparannog
Member
Offline
Activity: 72
Merit: 10
Drunk Lunatic
|
|
September 11, 2013, 01:52:39 AM |
|
Note somewhere that I owe You beer, Hamburger.
|
|
|
|
ITsTanked (OP)
Newbie
Offline
Activity: 54
Merit: 0
|
|
September 11, 2013, 06:05:17 PM |
|
Admin reply me now finally. I tell him the flaw for free because it is his site.
|
|
|
|
vesperwillow
|
|
September 11, 2013, 06:36:28 PM |
|
Hamburger: 1 ITsTanked: 0
|
|
|
|
uoyeparannog
Member
Offline
Activity: 72
Merit: 10
Drunk Lunatic
|
|
September 11, 2013, 09:15:30 PM |
|
Of course, vesperwillow. Anyway, that site is full of shit - FPD, some leaks, index of's and other non-critical issues. I didn't made deep test (I didn't create account even, just 5-minutes browse) so there's small chance for blind sqli, but I REALLY doubt it.
|
|
|
|
ITsTanked (OP)
Newbie
Offline
Activity: 54
Merit: 0
|
|
September 11, 2013, 11:47:24 PM |
|
I remove link in 1st post now that I am talking to admin. There is a job put on freelancer.com about this now.
admin contact me and then my conciseness get to me and I realize I should tried harder to get this to admin so I apologize to him and tell him the exact sqli point and how to temporary fix it until the code for this section is fixed.
|
|
|
|
joesmoe2012
|
|
September 12, 2013, 04:12:16 PM |
|
What site was it?
|
|
|
|
uoyeparannog
Member
Offline
Activity: 72
Merit: 10
Drunk Lunatic
|
|
September 12, 2013, 08:54:18 PM |
|
goldux.com
|
|
|
|
|