Waraxe IT Security Portal
Login or Register
August 31, 2026
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 577
Members: 0
Total: 577
Full disclosure
CyberDanube Security Research 20260611-0 | Multiple Denial of Service Vulnerabilities in Dahua IPC/SD/NVR/XVR/EVS/VTO/VT H/ASI/TPC Camera Series
Multiple Integer Overflows in U-Boot Filesystem Parsing(CVE-2025-70290 through CVE-2025-70293)
[ADVISORY] Multiple Integer Overflows in U-Boot FilesystemParsing (CVE-2025-70290 through CVE-2025-70293)
JSON Deserialiser Unconstrained Resource Consumption Proof ofConcept
Dovecot Security Advisory 3/2026
FD - Half-click unauthenticated remote code execution on Horde Groupware IMP (from a stored XSS)
[NotCVE-2026-0013] CHIRP Kenwood ITM Driver Eval Injection Allows Arbitrary Code Execution via Crafted Radio File
[NotCVE-2026-0012] EmpManageX Hardcoded Administrative Credentials in Login API Allow Full Access to Employee Records
[NotCVE-2026-0011] Nmap 7.99 and Earlier nselib/packet.lua Zero-Length TCP Option Infinite Loop Allows Remote Denial of Service
[NotCVE-2026-0010] Barrier 2.4.0 for Windows Unauthenticated IPC Command Execution Allows Local Privilege Escalation to SYSTEM
[NotCVE-2026-0009] NitroShare Desktop 0.3.4 Path Traversal Allows LAN-Adjacent Arbitrary File Write
Escargot v4.3.0-214-gfaee4437 Unauthenticated Remote Debugger Allows Arbitrary JavaScript Evaluation and Local File Disclosure
Escargot v4.3.0-214-gfaee4437 OS Command Injection in Crash Handler via Unsanitized Executable Path
Escargot v4.3.0-214-gfaee4437 Debugger WebSocket Off-by-One Stack Buffer Overflow
UltraJSON v5.13.0-6-g733f9e1 Length-Boundary Violation Causes Out-of-Bounds Read During Incomplete JSON Parsing
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index
Search found 27 matches
My Wordlists
PostForum:Wordlists Posted: Tue Oct 13, 2009 6:56 am Subject: My Wordlists
renaker
Replies: 4
Views: 16767




Thank you for sharing! So far all I've been using are the lists on http://www.insidepro.com/eng/download.shtml

This will definitely add to my success rate. :D
[PHP] Finding Decent Proxies
PostForum:Php Posted: Thu Oct 08, 2009 10:16 pm Subject: [PHP] Finding Decent Proxies
renaker
Replies: 0
Views: 7218




Hi,

For the past few days I've been looking for good proxy lists. Unfortunately, I couldn't find any that I didn't have to pay for. Maybe I just don't know where to look. While I'm sure there are ...
1 MD5 from IPB
PostForum:MD5 hashes Posted: Wed Jul 15, 2009 1:32 pm Subject: 1 MD5 from IPB
renaker
Replies: 3
Views: 7692




In "Invision Power Board <= 2.3.5 Remote SQL Injection Exploit" by waraxe, the hash and salt are retrieved like this:
(php snippets)


hash:

$pattern = 'UNION SELECT 1,1 FROM ' . $prefix . " ...
Is it possible to get the ACP path?
PostForum:Invision Power Board Posted: Tue Jul 14, 2009 4:58 am Subject: Is it possible to get the ACP path?
renaker
Replies: 3
Views: 9929




I'm aware of what the defaults are. I'm just wondering if there is a way to manually get the acp path if the default path has been changed by the Web master.
[help] Cracking this IPB Hash? (I tried)
PostForum:All other hashes Posted: Mon Jul 13, 2009 7:45 pm Subject: [help] Cracking this IPB Hash? (I tried)
renaker
Replies: 0
Views: 5281




I couldn't get any of these, I only need one. If someone has a free moment I'd appreciate it. <3

md5(md5($salt).md5($pass)) [PHP]

e.g:
Hash
salt

ae56539b048f0eb9f75db3afd352896a
X"KPk
...
Is it possible to get the ACP path?
PostForum:Invision Power Board Posted: Mon Jul 13, 2009 5:35 pm Subject: Is it possible to get the ACP path?
renaker
Replies: 3
Views: 9929




While most are left "domain.com/forums/admin" by default, is there a way to manually get the acp login URL?
A few IPB hashes
PostForum:All other hashes Posted: Sun Jul 12, 2009 10:29 pm Subject: A few IPB hashes
renaker
Replies: 2
Views: 7028




82cb4669408c43d9bc4e73761513ddcf DH4V$
Plain text: wallace

8f91b796a8d34a0bb22eb0181633675b p[]#T
plain text: zmalqp10



"Hooray, I'm useful!"
-Dr. Zoidberg
Bizarre Output? (IPB <= 2.3.5 by waraxe)
PostForum:Invision Power Board Posted: Sun Jul 12, 2009 6:56 pm Subject: Bizarre Output? (IPB <= 2.3.5 by waraxe)
renaker
Replies: 0
Views: 7551




I've been using the script for a while now, and it still rocks. However, I've come across a site that appears to be vuln, but the info it retrieves is not accurate. Mind you, it's an IPB 2.1.7 board, ...
IPB <= 2.3.5 injeciton - Get table prefix and usernames?
PostForum:Invision Power Board Posted: Sun Jul 12, 2009 5:55 pm Subject: IPB <= 2.3.5 injeciton - Get table prefix and usernames?
renaker
Replies: 4
Views: 11221




thanks agian. Smile
IPB <= 2.3.5 injeciton - Get table prefix and usernames?
PostForum:Invision Power Board Posted: Sat Jul 11, 2009 8:53 pm Subject: IPB <= 2.3.5 injeciton - Get table prefix and usernames?
renaker
Replies: 4
Views: 11221




very cool, thanks a lot waraxe Very Happy



edit: any chance you could include the get_num function as well, it calls it, i don't have it? It would save me a lot of time <3
IPB <= 2.3.5 injeciton - Get table prefix and usernames?
PostForum:Invision Power Board Posted: Sat Jul 11, 2009 6:00 pm Subject: IPB <= 2.3.5 injeciton - Get table prefix and usernames?
renaker
Replies: 4
Views: 11221




Hi everyone,

I've been using waraxe's IPB <= 2.3.5 (version 1.2). I've come across what would be a vulnerable site, but the table prefix isn't ibf_. Another issue is getting the username, since ...
Google Dorking Help?
PostForum:Newbies corner Posted: Fri Jul 10, 2009 3:36 am Subject: Google Dorking Help?
renaker
Replies: 0
Views: 6877




Does anyone know how to effectively google search for Invision Power Boards that are versions <= 2.3.5 (that preferably have a lot of members)?

I'd love to employ the same sort of search query f ...
Brute Forcing AIM Accounts?
PostForum:General discussion Posted: Tue Jul 07, 2009 11:45 pm Subject: Brute Forcing AIM Accounts?
renaker
Replies: 5
Views: 11239




Have any recommendations? (besides contacting the person lol)
Brute Forcing AIM Accounts?
PostForum:General discussion Posted: Tue Jul 07, 2009 5:04 pm Subject: Brute Forcing AIM Accounts?
renaker
Replies: 5
Views: 11239




Hello,

It's been a while, I've just been collecting words, and writing dumb php scripts. Recently I had the urge to get a new AIM screen name, and I really wanted swanson. However, some bloke out t ...
Get all PhpBB usernames to help with Dictionary Attacks.
PostForum:PhpBB Posted: Thu Nov 20, 2008 9:33 pm Subject: Get all PhpBB usernames to help with Dictionary Attacks.
renaker
Replies: 4
Views: 11646




Well, I was going to write a script that gets Phpbb url's (like you mentioned^) and then get all the usernames - loop, but it seems google expects this sort of behavior. Maybe I should try a less popu ...
Page 1 of 2 Goto page 1, 2Next
All times are GMT


Powered by phpBB © 2001-2008 phpBB Group



PCWizardHub - Helping you fix, build, and optimize your PC life
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.056 Seconds