Waraxe IT Security Portal
Login or Register
June 16, 2025
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 40
Members: 0
Total: 40
Full disclosure
SEC Consult SA-20250604-0 :: Local Privilege Escalation and Default Credentials in INDAMED - MEDICAL OFFICE (Medical practice management) Demo version
Full Disclosure: CVE-2025-31200 & CVE-2025-31201 – 0-Click iMessage Chain ? Secure Enclave Key Theft, Wormable RCE, Crypto Theft
Defense in depth -- the Microsoft way (part 89): user grouppolicies don't deserve tamper protection
CVE-2025-45542: Time-Based Blind SQL Injection in CloudClassroom PHP Project v1.0
ERPNext v15.53.1 Stored XSS in bio Field Allows Arbitrary Script Execution in Profile Page
ERPNext v15.53.1 Stored XSS in user_image Field Allows Script Execution via Injected Image Path
Local information disclosure in apport and systemd-coredump
Stored XSS via File Upload - adaptcmsv3.0.3
IDOR "Change Password" Functionality - adaptcmsv3.0.3
Stored XSS "Send Message" Functionality - adaptcmsv3.0.3
Authenticated File Upload to RCE - adaptcmsv3.0.3
Stored XSS in "Description" Functionality - cubecartv6.5.9
Multiple Vulnerabilities in SAP GuiXT Scripting
CVE-2024-47081: Netrc credential leak in PSF requests library
Exploit CVE-2019-9978: Remote Code Execution in Social Warfare WordPress Plugin (<= 3.5.2)
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index
Search found 27 matches
My Wordlists
PostForum:Wordlists Posted: Tue Oct 13, 2009 6:56 am Subject: My Wordlists
renaker
Replies: 4
Views: 15282




Thank you for sharing! So far all I've been using are the lists on http://www.insidepro.com/eng/download.shtml

This will definitely add to my success rate. :D
[PHP] Finding Decent Proxies
PostForum:Php Posted: Thu Oct 08, 2009 10:16 pm Subject: [PHP] Finding Decent Proxies
renaker
Replies: 0
Views: 6367




Hi,

For the past few days I've been looking for good proxy lists. Unfortunately, I couldn't find any that I didn't have to pay for. Maybe I just don't know where to look. While I'm sure there are ...
1 MD5 from IPB
PostForum:MD5 hashes Posted: Wed Jul 15, 2009 1:32 pm Subject: 1 MD5 from IPB
renaker
Replies: 3
Views: 6640




In "Invision Power Board <= 2.3.5 Remote SQL Injection Exploit" by waraxe, the hash and salt are retrieved like this:
(php snippets)


hash:

$pattern = 'UNION SELECT 1,1 FROM ' . $prefix . " ...
Is it possible to get the ACP path?
PostForum:Invision Power Board Posted: Tue Jul 14, 2009 4:58 am Subject: Is it possible to get the ACP path?
renaker
Replies: 3
Views: 8799




I'm aware of what the defaults are. I'm just wondering if there is a way to manually get the acp path if the default path has been changed by the Web master.
[help] Cracking this IPB Hash? (I tried)
PostForum:All other hashes Posted: Mon Jul 13, 2009 7:45 pm Subject: [help] Cracking this IPB Hash? (I tried)
renaker
Replies: 0
Views: 4588




I couldn't get any of these, I only need one. If someone has a free moment I'd appreciate it. <3

md5(md5($salt).md5($pass)) [PHP]

e.g:
Hash
salt

ae56539b048f0eb9f75db3afd352896a
X"KPk
...
Is it possible to get the ACP path?
PostForum:Invision Power Board Posted: Mon Jul 13, 2009 5:35 pm Subject: Is it possible to get the ACP path?
renaker
Replies: 3
Views: 8799




While most are left "domain.com/forums/admin" by default, is there a way to manually get the acp login URL?
A few IPB hashes
PostForum:All other hashes Posted: Sun Jul 12, 2009 10:29 pm Subject: A few IPB hashes
renaker
Replies: 2
Views: 6119




82cb4669408c43d9bc4e73761513ddcf DH4V$
Plain text: wallace

8f91b796a8d34a0bb22eb0181633675b p[]#T
plain text: zmalqp10



"Hooray, I'm useful!"
-Dr. Zoidberg
Bizarre Output? (IPB <= 2.3.5 by waraxe)
PostForum:Invision Power Board Posted: Sun Jul 12, 2009 6:56 pm Subject: Bizarre Output? (IPB <= 2.3.5 by waraxe)
renaker
Replies: 0
Views: 6593




I've been using the script for a while now, and it still rocks. However, I've come across a site that appears to be vuln, but the info it retrieves is not accurate. Mind you, it's an IPB 2.1.7 board, ...
IPB <= 2.3.5 injeciton - Get table prefix and usernames?
PostForum:Invision Power Board Posted: Sun Jul 12, 2009 5:55 pm Subject: IPB <= 2.3.5 injeciton - Get table prefix and usernames?
renaker
Replies: 4
Views: 9895




thanks agian. Smile
IPB <= 2.3.5 injeciton - Get table prefix and usernames?
PostForum:Invision Power Board Posted: Sat Jul 11, 2009 8:53 pm Subject: IPB <= 2.3.5 injeciton - Get table prefix and usernames?
renaker
Replies: 4
Views: 9895




very cool, thanks a lot waraxe Very Happy



edit: any chance you could include the get_num function as well, it calls it, i don't have it? It would save me a lot of time <3
IPB <= 2.3.5 injeciton - Get table prefix and usernames?
PostForum:Invision Power Board Posted: Sat Jul 11, 2009 6:00 pm Subject: IPB <= 2.3.5 injeciton - Get table prefix and usernames?
renaker
Replies: 4
Views: 9895




Hi everyone,

I've been using waraxe's IPB <= 2.3.5 (version 1.2). I've come across what would be a vulnerable site, but the table prefix isn't ibf_. Another issue is getting the username, since ...
Google Dorking Help?
PostForum:Newbies corner Posted: Fri Jul 10, 2009 3:36 am Subject: Google Dorking Help?
renaker
Replies: 0
Views: 6000




Does anyone know how to effectively google search for Invision Power Boards that are versions <= 2.3.5 (that preferably have a lot of members)?

I'd love to employ the same sort of search query f ...
Brute Forcing AIM Accounts?
PostForum:General discussion Posted: Tue Jul 07, 2009 11:45 pm Subject: Brute Forcing AIM Accounts?
renaker
Replies: 5
Views: 9993




Have any recommendations? (besides contacting the person lol)
Brute Forcing AIM Accounts?
PostForum:General discussion Posted: Tue Jul 07, 2009 5:04 pm Subject: Brute Forcing AIM Accounts?
renaker
Replies: 5
Views: 9993




Hello,

It's been a while, I've just been collecting words, and writing dumb php scripts. Recently I had the urge to get a new AIM screen name, and I really wanted swanson. However, some bloke out t ...
Get all PhpBB usernames to help with Dictionary Attacks.
PostForum:PhpBB Posted: Thu Nov 20, 2008 9:33 pm Subject: Get all PhpBB usernames to help with Dictionary Attacks.
renaker
Replies: 4
Views: 9991




Well, I was going to write a script that gets Phpbb url's (like you mentioned^) and then get all the usernames - loop, but it seems google expects this sort of behavior. Maybe I should try a less popu ...
Page 1 of 2 Goto page 1, 2Next
All times are GMT


Powered by phpBB © 2001-2008 phpBB Group



PCWizardHub - Helping you fix, build, and optimize your PC life
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.098 Seconds