Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. The Lounge
  3. Wow

Wow

Scheduled Pinned Locked Moved The Lounge
33 Posts 15 Posters 0 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • M MatrixCoder

    The CodeProject forums were just hacked! :omg: I've never seen that happen before.


    Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

    C Offline
    C Offline
    Chris Maunder
    wrote on last edited by
    #4

    It's not a hack - it's an exploit of the fact that we don't fully tidy the HTML we allow you guys to post. We do still work on a trust basis here. Happens again and I just turn off HTML tags in the forums until I can get around to adding int HtmlTidy or something. But since it's the holidays that ain't going to happen till next week.

    cheers, Chris Maunder

    CodeProject.com : C++ MVP

    P B 2 Replies Last reply
    0
    • D Dave Kreskowiak

      Yeah, some idiot thought he was going to be cute and try to impress his friends. His "hack" was actually posted in about 20 articles and forums before he was banned and all his posts went "poof!" as they were deleted. Just another script kiddie who thinks he's better than the guy he lifted this idea from...

      Dave Kreskowiak Microsoft MVP - Visual Basic

      M Offline
      M Offline
      MatrixCoder
      wrote on last edited by
      #5

      Dave Kreskowiak wrote:

      Yeah, some idiot thought he was going to be cute and try to impress his friends.

      I guess some people just don't have anything better to do. And the Optional Answers of this weeks poll is still cluttered with HTML.


      Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

      1 Reply Last reply
      0
      • C Chris Maunder

        It's not a hack - it's an exploit of the fact that we don't fully tidy the HTML we allow you guys to post. We do still work on a trust basis here. Happens again and I just turn off HTML tags in the forums until I can get around to adding int HtmlTidy or something. But since it's the holidays that ain't going to happen till next week.

        cheers, Chris Maunder

        CodeProject.com : C++ MVP

        P Offline
        P Offline
        Paul Conrad
        wrote on last edited by
        #6

        Chris Maunder wrote:

        since it's the holidays that ain't going to happen till next week

        Enjoy the rest of your holiday, and Merry Christmas (it still is here in Southern Cal :) )


        If you try to write that in English, I might be able to understand more than a fraction of it. - Guffa

        1 Reply Last reply
        0
        • D Dave Kreskowiak

          Yeah, some idiot thought he was going to be cute and try to impress his friends. His "hack" was actually posted in about 20 articles and forums before he was banned and all his posts went "poof!" as they were deleted. Just another script kiddie who thinks he's better than the guy he lifted this idea from...

          Dave Kreskowiak Microsoft MVP - Visual Basic

          P Offline
          P Offline
          Paul Conrad
          wrote on last edited by
          #7

          Dave Kreskowiak wrote:

          some idiot thought he was going to be cute and try to impress his friends. His "hack" was actually posted in about 20 articles and forums before he was banned and all his posts went "poof!" as they were deleted. Just another script kiddie who thinks he's better than the guy he lifted this idea from...

          Probably Kyle....


          If you try to write that in English, I might be able to understand more than a fraction of it. - Guffa

          M 1 Reply Last reply
          0
          • P Paul Conrad

            Dave Kreskowiak wrote:

            some idiot thought he was going to be cute and try to impress his friends. His "hack" was actually posted in about 20 articles and forums before he was banned and all his posts went "poof!" as they were deleted. Just another script kiddie who thinks he's better than the guy he lifted this idea from...

            Probably Kyle....


            If you try to write that in English, I might be able to understand more than a fraction of it. - Guffa

            M Offline
            M Offline
            MatrixCoder
            wrote on last edited by
            #8

            PaulC1972 wrote:

            Probably Kyle....

            Who?


            Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

            P 1 Reply Last reply
            0
            • M MatrixCoder

              PaulC1972 wrote:

              Probably Kyle....

              Who?


              Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

              P Offline
              P Offline
              Paul Conrad
              wrote on last edited by
              #9

              A troll...


              If you try to write that in English, I might be able to understand more than a fraction of it. - Guffa

              1 Reply Last reply
              0
              • M MatrixCoder

                The CodeProject forums were just hacked! :omg: I've never seen that happen before.


                Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                M Offline
                M Offline
                Michael Dunn
                wrote on last edited by
                #10

                That was fun

                --Mike-- Visual C++ MVP :cool: LINKS~! Ericahist | PimpFish | CP SearchBar v3.0 | C++ Forum FAQ Ford, what's this fish doing in my ear?

                1 Reply Last reply
                0
                • M MatrixCoder

                  The CodeProject forums were just hacked! :omg: I've never seen that happen before.


                  Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                  T Offline
                  T Offline
                  THE_GUY_THAT_HACKED
                  wrote on last edited by
                  #11

                  I will tell you how i Exploited this forums! First of all its full of XSS holes, one can deface it with many script ... no that dosent make me a script kiddie .... Your regitration form is vul and so is everything else, and no its not fixed yet. Pic: http://img123.imageshack.us/img123/8677/pic1lj1.png :rose:

                  T M 2 Replies Last reply
                  0
                  • T Tarakeshwar Reddy

                    THE_GUY_THAT_HACKED wrote:

                    no that dosent make me a script kiddie

                    Yeah true, your a moron


                    Tarakeshwar Reddy MCP, CCIE Q(R&S)

                    T Offline
                    T Offline
                    THE_GUY_THAT_HACKED
                    wrote on last edited by
                    #12

                    Thats best u can say .. sounds like a noob

                    T 1 Reply Last reply
                    0
                    • T THE_GUY_THAT_HACKED

                      I will tell you how i Exploited this forums! First of all its full of XSS holes, one can deface it with many script ... no that dosent make me a script kiddie .... Your regitration form is vul and so is everything else, and no its not fixed yet. Pic: http://img123.imageshack.us/img123/8677/pic1lj1.png :rose:

                      T Offline
                      T Offline
                      Tarakeshwar Reddy
                      wrote on last edited by
                      #13

                      THE_GUY_THAT_HACKED wrote:

                      no that dosent make me a script kiddie

                      Yeah true, your a moron


                      Tarakeshwar Reddy MCP, CCIE Q(R&S)

                      T 1 Reply Last reply
                      0
                      • T THE_GUY_THAT_HACKED

                        Thats best u can say .. sounds like a noob

                        T Offline
                        T Offline
                        Tarakeshwar Reddy
                        wrote on last edited by
                        #14

                        Thats because I have better things in life to do than sitting and thinking about an idiot who lost his brain and thinks he is a super hero trying to exploit sites rather than inform the webmaster who is doing a great job in having this community running


                        Tarakeshwar Reddy MCP, CCIE Q(R&S)

                        1 Reply Last reply
                        0
                        • M MatrixCoder

                          The CodeProject forums were just hacked! :omg: I've never seen that happen before.


                          Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                          L Offline
                          L Offline
                          Lost User
                          wrote on last edited by
                          #15

                          What happened? What did it look like?

                          █▒▒▒▒▒██▒█▒██ █▒█████▒▒▒▒▒█ █▒██████▒█▒██ █▒█████▒▒▒▒▒█ █▒▒▒▒▒██▒█▒██

                          M 1 Reply Last reply
                          0
                          • T THE_GUY_THAT_HACKED

                            I will tell you how i Exploited this forums! First of all its full of XSS holes, one can deface it with many script ... no that dosent make me a script kiddie .... Your regitration form is vul and so is everything else, and no its not fixed yet. Pic: http://img123.imageshack.us/img123/8677/pic1lj1.png :rose:

                            M Offline
                            M Offline
                            MatrixCoder
                            wrote on last edited by
                            #16

                            Well thanks for the info on how to fix the forums. Now just give us your i.p. address for we can block you permanently.


                            Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                            B 1 Reply Last reply
                            0
                            • L Lost User

                              What happened? What did it look like?

                              █▒▒▒▒▒██▒█▒██ █▒█████▒▒▒▒▒█ █▒██████▒█▒██ █▒█████▒▒▒▒▒█ █▒▒▒▒▒██▒█▒██

                              M Offline
                              M Offline
                              MatrixCoder
                              wrote on last edited by
                              #17

                              Some guy named fbi123 hacked the Vista, Lounge, Poll, and Suggestions forum and posted the CP source code. Then he deleted everything below the message (rating, other posts and footer of the page). That's just what I saw, I'm sure he probably did more. It was mess.


                              Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                              C 1 Reply Last reply
                              0
                              • C Chris Maunder

                                It's not a hack - it's an exploit of the fact that we don't fully tidy the HTML we allow you guys to post. We do still work on a trust basis here. Happens again and I just turn off HTML tags in the forums until I can get around to adding int HtmlTidy or something. But since it's the holidays that ain't going to happen till next week.

                                cheers, Chris Maunder

                                CodeProject.com : C++ MVP

                                B Offline
                                B Offline
                                Bradml
                                wrote on last edited by
                                #18

                                I kind of think that it may have accidentally been me that inspired that ***hol* to hack the site. I'm sorry. Yesterday I noticed a whole lot of vulnerabilities and was going to email you about them as soon as a got a chance. I think he may have seen me testing one of the vulnerabilities in the design/architecture. I'm really sorry, I didn't realize anyone would see that. I'll send you an email this week with an idea on how to stop all the XSS etc. (PS. I have cleaned everything I did up and I realized I could use the "preview" option to test the problems after a while so I don't think he knows about some of the major vulnerabilities) Chris... Why do you have a knife in your hand??? AAAARRRGHHHHH!!!!


                                Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                                1 Reply Last reply
                                0
                                • M MatrixCoder

                                  Well thanks for the info on how to fix the forums. Now just give us your i.p. address for we can block you permanently.


                                  Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                                  B Offline
                                  B Offline
                                  Bradml
                                  wrote on last edited by
                                  #19

                                  Chris has his IP, maybe we could give the kid a little visit?


                                  Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                                  P 1 Reply Last reply
                                  0
                                  • B Bradml

                                    Chris has his IP, maybe we could give the kid a little visit?


                                    Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                                    P Offline
                                    P Offline
                                    peterchen
                                    wrote on last edited by
                                    #20

                                    Why would you want to visit this kid? grab a friend, have a beer He doesn't need to learn that there's always someone better than him, he needs to learn that his definition of 'better' is skewed


                                    Developers, Developers, Developers, Developers, Developers, Developers, Velopers, Develprs, Developers!
                                    We are a big screwed up dysfunctional psychotic happy family - some more screwed up, others more happy, but everybody's psychotic joint venture definition of CP
                                    Linkify!|Fold With Us!

                                    W 1 Reply Last reply
                                    0
                                    • M MatrixCoder

                                      The CodeProject forums were just hacked! :omg: I've never seen that happen before.


                                      Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                                      A Offline
                                      A Offline
                                      alex barylski
                                      wrote on last edited by
                                      #21

                                      I'll probably get voted down for this, but... The guy isn't exactly an idiot as he did successfully carry out a attack...immature...yes...inappropriate...absolutely (would have been nice of you to just inform Chris or someone - maybe ask for a free t-shirt or custom CP security guru status. Much better on a resume than village idiot) To call him an idiot, is just not fair or accurate I should say... In a way...it's nice to know it's over and done with and shouldn't happen again...kinda like getting the measels or chicken pocks...or ripping a bandaid off quickly as opposed to slowly... Cheers :)

                                      It's frustrating being a genius and living the life of a moron!!!

                                      B D A D 5 Replies Last reply
                                      0
                                      • P peterchen

                                        Why would you want to visit this kid? grab a friend, have a beer He doesn't need to learn that there's always someone better than him, he needs to learn that his definition of 'better' is skewed


                                        Developers, Developers, Developers, Developers, Developers, Developers, Velopers, Develprs, Developers!
                                        We are a big screwed up dysfunctional psychotic happy family - some more screwed up, others more happy, but everybody's psychotic joint venture definition of CP
                                        Linkify!|Fold With Us!

                                        W Offline
                                        W Offline
                                        WillemM
                                        wrote on last edited by
                                        #22

                                        Agreed. It's not worth the effort and I'm still recovering from my christmas dinner ;P

                                        WM. What about weapons of mass-construction? "You can always try to smash it with a wrench to fix that. It might actually work" - WillemM

                                        1 Reply Last reply
                                        0
                                        • A alex barylski

                                          I'll probably get voted down for this, but... The guy isn't exactly an idiot as he did successfully carry out a attack...immature...yes...inappropriate...absolutely (would have been nice of you to just inform Chris or someone - maybe ask for a free t-shirt or custom CP security guru status. Much better on a resume than village idiot) To call him an idiot, is just not fair or accurate I should say... In a way...it's nice to know it's over and done with and shouldn't happen again...kinda like getting the measels or chicken pocks...or ripping a bandaid off quickly as opposed to slowly... Cheers :)

                                          It's frustrating being a genius and living the life of a moron!!!

                                          B Offline
                                          B Offline
                                          Bradml
                                          wrote on last edited by
                                          #23

                                          I agreed with some of what you said, but I don't think this will be the last of it. One the little prat tells his "friends" how he hacked CP then they will be all over us. Not to mention (until yesterday) I never even bothered trying to find holes in CP because I believed that a site this size would have covered them a long time ago. I think this is going to be nothing more then an incentive for others to try and find holes.


                                          Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                                          A 1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Don't have an account? Register

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups