| 
  
    | 
	|  | Menu |  |  
     
     | 
      
       | 
        
         | 
          
           | 
						|  |  |  Home |  |  |  |  |  |  |  |  Discussions |  |  |  |  |  |  |  |  Tools |  |  |  |  |  |  |  |  Affiliates |  |  |  |  |  |  |  |  Content |  |  |  |  |  |  |  |  Info |  |  |  |  |  |  |  |  |  |  
  
    | 
	|  | User Info |  |  
     
     | 
      
       | 
        
         | 
          
           |  Membership: 
  Latest: MichaelSnaRe 
  New Today: 0 
  New Yesterday: 0 
  Overall: 9144 
 
  People Online: 
  Visitors: 238 
  Members: 0 
  Total: 238 
 |  |  |  |  |  
  
    | 
	|  | Full disclosure |  |  |  | 
  
    | 
	|  |  |  |  
        
          | 
              
                | 
                    
                      | 
                          
                            | 
	| 
	
		|  |  |  
		|  | IT Security and Insecurity Portal |  |  
 
	|  |  
	| 
	
		| 
 
 | 
		
			| How can I generate a rainbow table or word list like this: 
 C(harset) = ABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789
 
 CCCCC-CCCCC-CCCCC-CCCCC (Example: AGSD3-DF42D-786FG-FHRSF)
 
 
 But I think it takes t ...
 |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| First try to read 'C:\boot.ini' (or 'C:\autoexec.bat' for Windows 9x) and look if it really works. Then search for interesting files. (FTP logins, SQL logins, the registry on Windows 9x) |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| You can crack MD5 hashes and many other algorithms with "Cain & Abel": 
 http://www.oxid.it/cain.html
 
 8b20777e6d3a825462fb54c9d689234d = amadeo00
 25f9e794323b453885f5181f1b624d0b = 123456789
 ...
 |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| CashCrusader-by-nexus.rar 
 ed2k://|file|cgi_php_collection.zip|65458987|3D65E6DAC29326AA489FE5DF0267F4E9|/
 
 affa_ffa_linklist_script.zip
 bookmark_counter.zip
 bmachine2.7.zip
 cjpro21.zip
 cj ...
 |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| Look here: 
 http://www.hotscripts.com/PHP/Scripts_and_Programs/File_Manipulation/Upload_Systems/
 |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| If the download limit for your IP adress is exceeded, then try it with some proxy or socks servers. |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| Here is an old advisory for BXCP, a small CMS for clans. I know my fix is scrap, so please update to a higher version and don't use my source code! There are also a few undiscovered SQL injections, fu ... |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| You can download the wordlist here: #!perl 
 $from = 0;
 $to   = 999999;
 
 open(FILE, ">numbers.txt") || die "$!";
 
 for($i = $from; $i <= $to; $i++)
  ...
 |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| OK, Sir! ;-) I will generate your wordlist after school. But you've to wait some hours (11-12). Don't worry, but I'm currently busy, because I must bust some OfB-Clan kiddies from their internet servi ... |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| Crazy! o.O Which browser do you use? I can download from RapidShare with cookies disabled and enabled. Probably your browser establishes multiple connections for one download and that isn't allowed fo ... |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| Yeah, we will see. But I think no one will use my advisory, because of the new phpBB 2.0.14 exploit. Therefore I released it today. |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| "Don't worry, be happy!" ;-) 
 Yes, I've already said: I will release my LAME advisory. You're a much better PHP coder as me and now release your leet NukeSentinel advisory. :-D
 |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| I couldn't send it to Full-Disclosure or Bugtraq. So I release it here. Have fun! 
 
 Title:   NukeSentinel and PHP-Nuke security filters bypass
 Author:  FistFucker
 Contact: FistFuXXer@ ...
 |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| F00k! I can't mail to full-disclosure@lists.grok.org.uk since months. And Bugtraq filters my nickname. 
 Hi. This is the qmail-send program at mail.gmx.net.
 I'm afraid I wasn't able to deliver your  ...
 |  |  |  
	|  |  
	| 
	
		| 
 
 | 
		
			| Hmm... Are you behind a proxy server? There is a download limit per IP address. Or establishes your browser multiple connections to the server? Download accelerators are not allowed for free accounts. |  |  |  
  
	| Page 1 of 2 | Goto page 1, 2Next All times are GMT
 |  
 Powered by phpBB © 2001-2008 phpBB Group
 
 
 
 
 |  |  |  |  |  |