Jump to content
Nytro

Facebook Blind Sql Injection

Recommended Posts

Posted

Facebook Blind Sql Injection

facebook.com account settings update a postdata _user not filtered have sql injection vulnerabilities.Using a Tamper data and watch post and get request server and update request have vulnerable.

"Jester, GHoST61, MadHunTeR,

SuSKuN, LifeSteaLeR, Prens, Vp"

Email: turksistemguvenligi@gmail.com

Twitter : @TurkAslanlari

Facebook: Türk Aslanlar

Friendfeed: Türk Aslanlar

Friendfeed: SQL Injection - FriendFeed[Close]

Video:

http://www.securitytube.net/video/2204

Da...

Posted

Se mai intimpla si la case mari :))

Intrase la "Set?ri de confiden?ialitate" daca nu ma gresesc.FB-ul insa deja a facut ceva schimbari si acele setari acuma arata altfel deci nu cred sa mai persiste vulnerabilitatea.

Posted (edited)

Poate pe asta se bazau Anonymous aia.

EDIT : Comment-ul uploader-ului pe youtube :

Not anonymous ;) We are Turkish Hackers: "Jester, GHoST61, MadHunTeR, SuSKuN, LifeSteaLeR, Prens, Vp" u search google "anonymous hacked? jester the_bekir" Hacked Anonymous ;)

OFF : Cum se numeste melodia din fundal ?

Edited by Wav3
Posted

Pacat ca a fost facut public, dar era multa bataie de cap ca era blind dar cred ca se putea folosi o tehnica de optimizare pentru blind sqli ca sa se reduca numarul de requesturi sis a se scrie un tool pentru a face dump dar era un pic de bataie de cap.

@Wav3Evanescence-Bring Me To Life

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...