Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. The Lounge
  3. Wow

Wow

Scheduled Pinned Locked Moved The Lounge
33 Posts 15 Posters 0 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • P Paul Conrad

    Dave Kreskowiak wrote:

    some idiot thought he was going to be cute and try to impress his friends. His "hack" was actually posted in about 20 articles and forums before he was banned and all his posts went "poof!" as they were deleted. Just another script kiddie who thinks he's better than the guy he lifted this idea from...

    Probably Kyle....


    If you try to write that in English, I might be able to understand more than a fraction of it. - Guffa

    M Offline
    M Offline
    MatrixCoder
    wrote on last edited by
    #8

    PaulC1972 wrote:

    Probably Kyle....

    Who?


    Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

    P 1 Reply Last reply
    0
    • M MatrixCoder

      PaulC1972 wrote:

      Probably Kyle....

      Who?


      Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

      P Offline
      P Offline
      Paul Conrad
      wrote on last edited by
      #9

      A troll...


      If you try to write that in English, I might be able to understand more than a fraction of it. - Guffa

      1 Reply Last reply
      0
      • M MatrixCoder

        The CodeProject forums were just hacked! :omg: I've never seen that happen before.


        Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

        M Offline
        M Offline
        Michael Dunn
        wrote on last edited by
        #10

        That was fun

        --Mike-- Visual C++ MVP :cool: LINKS~! Ericahist | PimpFish | CP SearchBar v3.0 | C++ Forum FAQ Ford, what's this fish doing in my ear?

        1 Reply Last reply
        0
        • M MatrixCoder

          The CodeProject forums were just hacked! :omg: I've never seen that happen before.


          Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

          T Offline
          T Offline
          THE_GUY_THAT_HACKED
          wrote on last edited by
          #11

          I will tell you how i Exploited this forums! First of all its full of XSS holes, one can deface it with many script ... no that dosent make me a script kiddie .... Your regitration form is vul and so is everything else, and no its not fixed yet. Pic: http://img123.imageshack.us/img123/8677/pic1lj1.png :rose:

          T M 2 Replies Last reply
          0
          • T Tarakeshwar Reddy

            THE_GUY_THAT_HACKED wrote:

            no that dosent make me a script kiddie

            Yeah true, your a moron


            Tarakeshwar Reddy MCP, CCIE Q(R&S)

            T Offline
            T Offline
            THE_GUY_THAT_HACKED
            wrote on last edited by
            #12

            Thats best u can say .. sounds like a noob

            T 1 Reply Last reply
            0
            • T THE_GUY_THAT_HACKED

              I will tell you how i Exploited this forums! First of all its full of XSS holes, one can deface it with many script ... no that dosent make me a script kiddie .... Your regitration form is vul and so is everything else, and no its not fixed yet. Pic: http://img123.imageshack.us/img123/8677/pic1lj1.png :rose:

              T Offline
              T Offline
              Tarakeshwar Reddy
              wrote on last edited by
              #13

              THE_GUY_THAT_HACKED wrote:

              no that dosent make me a script kiddie

              Yeah true, your a moron


              Tarakeshwar Reddy MCP, CCIE Q(R&S)

              T 1 Reply Last reply
              0
              • T THE_GUY_THAT_HACKED

                Thats best u can say .. sounds like a noob

                T Offline
                T Offline
                Tarakeshwar Reddy
                wrote on last edited by
                #14

                Thats because I have better things in life to do than sitting and thinking about an idiot who lost his brain and thinks he is a super hero trying to exploit sites rather than inform the webmaster who is doing a great job in having this community running


                Tarakeshwar Reddy MCP, CCIE Q(R&S)

                1 Reply Last reply
                0
                • M MatrixCoder

                  The CodeProject forums were just hacked! :omg: I've never seen that happen before.


                  Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                  L Offline
                  L Offline
                  Lost User
                  wrote on last edited by
                  #15

                  What happened? What did it look like?

                  █▒▒▒▒▒██▒█▒██ █▒█████▒▒▒▒▒█ █▒██████▒█▒██ █▒█████▒▒▒▒▒█ █▒▒▒▒▒██▒█▒██

                  M 1 Reply Last reply
                  0
                  • T THE_GUY_THAT_HACKED

                    I will tell you how i Exploited this forums! First of all its full of XSS holes, one can deface it with many script ... no that dosent make me a script kiddie .... Your regitration form is vul and so is everything else, and no its not fixed yet. Pic: http://img123.imageshack.us/img123/8677/pic1lj1.png :rose:

                    M Offline
                    M Offline
                    MatrixCoder
                    wrote on last edited by
                    #16

                    Well thanks for the info on how to fix the forums. Now just give us your i.p. address for we can block you permanently.


                    Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                    B 1 Reply Last reply
                    0
                    • L Lost User

                      What happened? What did it look like?

                      █▒▒▒▒▒██▒█▒██ █▒█████▒▒▒▒▒█ █▒██████▒█▒██ █▒█████▒▒▒▒▒█ █▒▒▒▒▒██▒█▒██

                      M Offline
                      M Offline
                      MatrixCoder
                      wrote on last edited by
                      #17

                      Some guy named fbi123 hacked the Vista, Lounge, Poll, and Suggestions forum and posted the CP source code. Then he deleted everything below the message (rating, other posts and footer of the page). That's just what I saw, I'm sure he probably did more. It was mess.


                      Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                      C 1 Reply Last reply
                      0
                      • C Chris Maunder

                        It's not a hack - it's an exploit of the fact that we don't fully tidy the HTML we allow you guys to post. We do still work on a trust basis here. Happens again and I just turn off HTML tags in the forums until I can get around to adding int HtmlTidy or something. But since it's the holidays that ain't going to happen till next week.

                        cheers, Chris Maunder

                        CodeProject.com : C++ MVP

                        B Offline
                        B Offline
                        Bradml
                        wrote on last edited by
                        #18

                        I kind of think that it may have accidentally been me that inspired that ***hol* to hack the site. I'm sorry. Yesterday I noticed a whole lot of vulnerabilities and was going to email you about them as soon as a got a chance. I think he may have seen me testing one of the vulnerabilities in the design/architecture. I'm really sorry, I didn't realize anyone would see that. I'll send you an email this week with an idea on how to stop all the XSS etc. (PS. I have cleaned everything I did up and I realized I could use the "preview" option to test the problems after a while so I don't think he knows about some of the major vulnerabilities) Chris... Why do you have a knife in your hand??? AAAARRRGHHHHH!!!!


                        Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                        1 Reply Last reply
                        0
                        • M MatrixCoder

                          Well thanks for the info on how to fix the forums. Now just give us your i.p. address for we can block you permanently.


                          Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                          B Offline
                          B Offline
                          Bradml
                          wrote on last edited by
                          #19

                          Chris has his IP, maybe we could give the kid a little visit?


                          Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                          P 1 Reply Last reply
                          0
                          • B Bradml

                            Chris has his IP, maybe we could give the kid a little visit?


                            Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                            P Offline
                            P Offline
                            peterchen
                            wrote on last edited by
                            #20

                            Why would you want to visit this kid? grab a friend, have a beer He doesn't need to learn that there's always someone better than him, he needs to learn that his definition of 'better' is skewed


                            Developers, Developers, Developers, Developers, Developers, Developers, Velopers, Develprs, Developers!
                            We are a big screwed up dysfunctional psychotic happy family - some more screwed up, others more happy, but everybody's psychotic joint venture definition of CP
                            Linkify!|Fold With Us!

                            W 1 Reply Last reply
                            0
                            • M MatrixCoder

                              The CodeProject forums were just hacked! :omg: I've never seen that happen before.


                              Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                              A Offline
                              A Offline
                              alex barylski
                              wrote on last edited by
                              #21

                              I'll probably get voted down for this, but... The guy isn't exactly an idiot as he did successfully carry out a attack...immature...yes...inappropriate...absolutely (would have been nice of you to just inform Chris or someone - maybe ask for a free t-shirt or custom CP security guru status. Much better on a resume than village idiot) To call him an idiot, is just not fair or accurate I should say... In a way...it's nice to know it's over and done with and shouldn't happen again...kinda like getting the measels or chicken pocks...or ripping a bandaid off quickly as opposed to slowly... Cheers :)

                              It's frustrating being a genius and living the life of a moron!!!

                              B D A D 5 Replies Last reply
                              0
                              • P peterchen

                                Why would you want to visit this kid? grab a friend, have a beer He doesn't need to learn that there's always someone better than him, he needs to learn that his definition of 'better' is skewed


                                Developers, Developers, Developers, Developers, Developers, Developers, Velopers, Develprs, Developers!
                                We are a big screwed up dysfunctional psychotic happy family - some more screwed up, others more happy, but everybody's psychotic joint venture definition of CP
                                Linkify!|Fold With Us!

                                W Offline
                                W Offline
                                WillemM
                                wrote on last edited by
                                #22

                                Agreed. It's not worth the effort and I'm still recovering from my christmas dinner ;P

                                WM. What about weapons of mass-construction? "You can always try to smash it with a wrench to fix that. It might actually work" - WillemM

                                1 Reply Last reply
                                0
                                • A alex barylski

                                  I'll probably get voted down for this, but... The guy isn't exactly an idiot as he did successfully carry out a attack...immature...yes...inappropriate...absolutely (would have been nice of you to just inform Chris or someone - maybe ask for a free t-shirt or custom CP security guru status. Much better on a resume than village idiot) To call him an idiot, is just not fair or accurate I should say... In a way...it's nice to know it's over and done with and shouldn't happen again...kinda like getting the measels or chicken pocks...or ripping a bandaid off quickly as opposed to slowly... Cheers :)

                                  It's frustrating being a genius and living the life of a moron!!!

                                  B Offline
                                  B Offline
                                  Bradml
                                  wrote on last edited by
                                  #23

                                  I agreed with some of what you said, but I don't think this will be the last of it. One the little prat tells his "friends" how he hacked CP then they will be all over us. Not to mention (until yesterday) I never even bothered trying to find holes in CP because I believed that a site this size would have covered them a long time ago. I think this is going to be nothing more then an incentive for others to try and find holes.


                                  Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                                  A 1 Reply Last reply
                                  0
                                  • M MatrixCoder

                                    Some guy named fbi123 hacked the Vista, Lounge, Poll, and Suggestions forum and posted the CP source code. Then he deleted everything below the message (rating, other posts and footer of the page). That's just what I saw, I'm sure he probably did more. It was mess.


                                    Trinity: Neo... nobody has ever done this before. Neo: That's why it's going to work.

                                    C Offline
                                    C Offline
                                    Chris Maunder
                                    wrote on last edited by
                                    #24

                                    MatrixCoder wrote:

                                    posted the CP source code

                                    He posted HTML, not the source code. Do a "View Source" and you'll see a resemblence.

                                    cheers, Chris Maunder

                                    CodeProject.com : C++ MVP

                                    1 Reply Last reply
                                    0
                                    • A alex barylski

                                      I'll probably get voted down for this, but... The guy isn't exactly an idiot as he did successfully carry out a attack...immature...yes...inappropriate...absolutely (would have been nice of you to just inform Chris or someone - maybe ask for a free t-shirt or custom CP security guru status. Much better on a resume than village idiot) To call him an idiot, is just not fair or accurate I should say... In a way...it's nice to know it's over and done with and shouldn't happen again...kinda like getting the measels or chicken pocks...or ripping a bandaid off quickly as opposed to slowly... Cheers :)

                                      It's frustrating being a genius and living the life of a moron!!!

                                      D Offline
                                      D Offline
                                      David Wulff
                                      wrote on last edited by
                                      #25

                                      I disagree with you. It is not particularly hard to find holes in many big web sites, especially those that can be exploited remotely by script. If every little dick who found one started to exploit it rather than have the good sense and manners to report it then the world wide web would be one big locked down uninteresting place. To me an idiot is someone who demonstrates a lack of good intelligence, and the trouble maker in this case fits that definition perfectly. That fact that it is illegal, and he has just broken a law which carries a prison term, only makes him more of an idiot.


                                      Ðavid Wulff What kind of music should programmers listen to?
                                      Join the Code Project Last.fm group | dwulff
                                      I'm so gangsta I eat cereal without the milk

                                      1 Reply Last reply
                                      0
                                      • A alex barylski

                                        I'll probably get voted down for this, but... The guy isn't exactly an idiot as he did successfully carry out a attack...immature...yes...inappropriate...absolutely (would have been nice of you to just inform Chris or someone - maybe ask for a free t-shirt or custom CP security guru status. Much better on a resume than village idiot) To call him an idiot, is just not fair or accurate I should say... In a way...it's nice to know it's over and done with and shouldn't happen again...kinda like getting the measels or chicken pocks...or ripping a bandaid off quickly as opposed to slowly... Cheers :)

                                        It's frustrating being a genius and living the life of a moron!!!

                                        D Offline
                                        D Offline
                                        David Wulff
                                        wrote on last edited by
                                        #26

                                        I can't modify my original post, but wanted to add that my vote just pulled your message out of the red and into the grey. I guess your fives must have been from bronze members - I'm sorry I only meant to take you to a 3.5 to 4ish. :doh:


                                        Ðavid Wulff What kind of music should programmers listen to?
                                        Join the Code Project Last.fm group | dwulff
                                        I'm so gangsta I eat cereal without the milk

                                        1 Reply Last reply
                                        0
                                        • A alex barylski

                                          I'll probably get voted down for this, but... The guy isn't exactly an idiot as he did successfully carry out a attack...immature...yes...inappropriate...absolutely (would have been nice of you to just inform Chris or someone - maybe ask for a free t-shirt or custom CP security guru status. Much better on a resume than village idiot) To call him an idiot, is just not fair or accurate I should say... In a way...it's nice to know it's over and done with and shouldn't happen again...kinda like getting the measels or chicken pocks...or ripping a bandaid off quickly as opposed to slowly... Cheers :)

                                          It's frustrating being a genius and living the life of a moron!!!

                                          A Offline
                                          A Offline
                                          Ashley van Gerven
                                          wrote on last edited by
                                          #27

                                          Finding another tag that does the same thing as PRE? Yeah real clever! At least that's what he's doing with the new exploits. This whining baby has less intelligence than a fly who's landed on a horse's arse and got squashed between it's butt cheeks. ;P

                                          "For fifty bucks I'd put my face in their soup and blow." - George Costanza

                                          CP article: SmartPager - a Flickr-style pager control with go-to-page popup layer.

                                          D 1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Don't have an account? Register

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups