Follow us on Twitter!
Society leans ever heavily on computers, if you have the power to take out computers you can take out society. - cubeman372
Friday, April 18, 2014
Navigation
Home
HellBoundHackers Main:
HellBoundHackers Find:
HellBoundHackers Information:
Learn
Communicate
Submit
Shop
Challenges
HellBoundHackers Exploit:
HellBoundHackers Programming:
HellBoundHackers Think:
HellBoundHackers Track:
HellBoundHackers Patch:
HellBoundHackers Other:
HellBoundHackers Need Help?
Other
Members Online
Total Online: 18
Guests Online: 18
Members Online: 0

Registered Members: 82822
Newest Member: TheBunter
Latest Articles
View Thread

HellBound Hackers | Challenges | Timed Challenges

Author

curl login


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 24-03-09 23:12
I'm trying to login through the command line with curl. It acts like the command runs fine but then doesn't log me in. I'm thinking it's cause it's not remembering me so i tried to pass y in for the checkbox but its still not working. here's what i have. can someone tell me what im doing wrong?

Code
curl -d user_name=styloverte116 -d user_pass=<mypasshere:P> -d remember_me=y www.hellboundhackers.org


Author

RE: curl login

spyware
Member



Posts: 4192
Location: The Netherlands
Joined: 14.04.07
Rank:
God
Warn Level: 90
Posted on 24-03-09 23:16
Cookies.



img507.imageshack.us/img507/3580/spynewsig3il1.png
"The chowner of property." - Zeph
[small]
Widespread intellectual and moral docility may be convenient for leaders in the short term,
but it is suicidal for nations in the long term.
- Carl Sagan
“Since the grid is inescapable, what were the earlier lasers about? Does the corridor have a sense of humor?” - Ebert
[/s
http://bitsofspy.net
Author

RE: curl login


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 24-03-09 23:50
hmmm.. can you elaborate a little. it makes sense but not enough to do anything
Author

RE: curl login

spyware
Member



Posts: 4192
Location: The Netherlands
Joined: 14.04.07
Rank:
God
Warn Level: 90
Posted on 24-03-09 23:57
You need to use --dump-header and use the http headers. Basically, type javascript:alert(document.cookie) in a browser, this is the stuff you'll be needing. You need to use the cookies that are sent by HBH.



img507.imageshack.us/img507/3580/spynewsig3il1.png
"The chowner of property." - Zeph
[small]
Widespread intellectual and moral docility may be convenient for leaders in the short term,
but it is suicidal for nations in the long term.
- Carl Sagan
“Since the grid is inescapable, what were the earlier lasers about? Does the corridor have a sense of humor?” - Ebert
[/s
http://bitsofspy.net
Author

RE: curl login


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 24-03-09 23:59
Without the cookies that contain the session id and some other stuff, the server won't know who you are.


Author

RE: curl login


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 25-03-09 01:11
ok it still doesn't work..
heres what i have now.

Code
curl -d user_name=styloverte116 -d user_pass=<mypass> -D headers.txt -c cookies.txt www.hellboundhackers.org




and while i'm having problems with this.. does anyone know how i can get unlimited buffering in the command prompt on windows?

*EDIT* -- i found the buffering. its not unlimited but i changed it from 50 to 999

Edited by on 25-03-09 01:20
Author

RE: curl login

spyware
Member



Posts: 4192
Location: The Netherlands
Joined: 14.04.07
Rank:
God
Warn Level: 90
Posted on 25-03-09 01:38
I think you're only storing the cookies, not using them.

You're sure that the cookie jar is being created right? Try adding a -v and see if it isn't failing.



img507.imageshack.us/img507/3580/spynewsig3il1.png
"The chowner of property." - Zeph
[small]
Widespread intellectual and moral docility may be convenient for leaders in the short term,
but it is suicidal for nations in the long term.
- Carl Sagan
“Since the grid is inescapable, what were the earlier lasers about? Does the corridor have a sense of humor?” - Ebert
[/s
http://bitsofspy.net
Author

RE: curl login


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 25-03-09 01:44
I thought about that but i can't find any information on how to use them. -v doesn't give me any warning so it should be working.

**EDIT** -- i found an option -b to read in cookies from a text file and used curl -b cookies.txt www.hellboundhackers.org after my first command but it still doesn't work

Edited by on 25-03-09 02:06
Author

RE: curl login

yours31f
Member



Posts: 1678
Location: Dallas Texas
Joined: 27.04.07
Rank:
Elite
Posted on 25-03-09 14:04
It's also possible (with firefox for sure) to use the browsers cookies. This may be of use to you in the future.


Debugging is what programmers do to beta software to make it take up more room on your hard drive if it is running too efficiently.


img259.imageshack.us/img259/3713/sigr.png

yours31f@live.com yours31f@yahoo.com rpwd.info
Author

RE: curl login

spyware
Member



Posts: 4192
Location: The Netherlands
Joined: 14.04.07
Rank:
God
Warn Level: 90
Posted on 25-03-09 14:51
MoshBat wrote:
Rather than trying to log in, why don't you just run the script from your local machine, using the cookies you have right now?


Cause he wants to login from the command-line, and from then on use those cookies.



img507.imageshack.us/img507/3580/spynewsig3il1.png
"The chowner of property." - Zeph
[small]
Widespread intellectual and moral docility may be convenient for leaders in the short term,
but it is suicidal for nations in the long term.
- Carl Sagan
“Since the grid is inescapable, what were the earlier lasers about? Does the corridor have a sense of humor?” - Ebert
[/s
http://bitsofspy.net
Author

RE: curl login

spyware
Member



Posts: 4192
Location: The Netherlands
Joined: 14.04.07
Rank:
God
Warn Level: 90
Posted on 25-03-09 15:03
MoshBat wrote:
I can't seem to get my head around why someone would do that...
Really, the method most people use would be much simpler, no?


Yeah, but... HBH displays like shit in Lynx.



img507.imageshack.us/img507/3580/spynewsig3il1.png
"The chowner of property." - Zeph
[small]
Widespread intellectual and moral docility may be convenient for leaders in the short term,
but it is suicidal for nations in the long term.
- Carl Sagan
“Since the grid is inescapable, what were the earlier lasers about? Does the corridor have a sense of humor?” - Ebert
[/s
http://bitsofspy.net
Author

RE: curl login

yours31f
Member



Posts: 1678
Location: Dallas Texas
Joined: 27.04.07
Rank:
Elite
Posted on 25-03-09 15:04
What I meant by that is, he would have all his previous cookies and then he wouldn't have to worry about saving them this time.

While on the subject, does anyone have a copy of the libcurl library? My firewall is being a douche and I can't get* to any download pages for it. Thanks.

edit *



Debugging is what programmers do to beta software to make it take up more room on your hard drive if it is running too efficiently.


img259.imageshack.us/img259/3713/sigr.png



Edited by yours31f on 25-03-09 15:21
yours31f@live.com yours31f@yahoo.com rpwd.info
Author

RE: curl login

spyware
Member



Posts: 4192
Location: The Netherlands
Joined: 14.04.07
Rank:
God
Warn Level: 90
Posted on 25-03-09 15:07
yours31f wrote:
What I meant by that is, he would have all his previous cookies and then he wouldn't have to worry about saving them this time.

While on the subject, does anyone have a copy of the libcurl library? My firewall is being a douche and I can't to any download pages for it. Thanks.


Which bind do you need? (What language are you programming in?)

Edit: Oh, just actually read your post.

http://curl.haxx.se/libcurl/bindings.html

Fucking idiot.



img507.imageshack.us/img507/3580/spynewsig3il1.png
"The chowner of property." - Zeph
[small]
Widespread intellectual and moral docility may be convenient for leaders in the short term,
but it is suicidal for nations in the long term.
- Carl Sagan
“Since the grid is inescapable, what were the earlier lasers about? Does the corridor have a sense of humor?” - Ebert
[/s

Edited by spyware on 25-03-09 15:13
http://bitsofspy.net
Author

RE: curl login

yours31f
Member



Posts: 1678
Location: Dallas Texas
Joined: 27.04.07
Rank:
Elite
Posted on 25-03-09 15:16
Thanks for your help. I am learning http sockets in dev-cpp on windows and I actually came across one. nexttag or something of the like. Thanks again.


Debugging is what programmers do to beta software to make it take up more room on your hard drive if it is running too efficiently.


img259.imageshack.us/img259/3713/sigr.png



Edited by yours31f on 25-03-09 15:20
yours31f@live.com yours31f@yahoo.com rpwd.info
Author

RE: curl login


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 25-03-09 21:14
MoshBat wrote:
I can't seem to get my head around why someone would do that...
Really, the method most people use would be much simpler, no?


Yes, the method most people would use is much simpler. Just to clear any questions up, I'm running windows. I don't do a lot of cmd stuff, and have never used curl, and i wanted to get an idea on how to use the command line. i was going to try to do timed 1 from the command prompt. Also, my computer is going too slow. Greasemonkey takes too long with all images disabled, among other things, and hbh in the hosts file and no other programs running and no additional tabs open. I still can't get it to log me in. I couldn't find anything since my last post, so I'm still using the same lines.
Author

RE: curl login


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 31-03-09 00:20
i finally figured it out.

i opened livehttpheaders in firefox and checked what was getting posted and there was a login parameter...

so i used

Code
curl -c cookies.txt -D headers.txt -d "user_name=styloverte116&user_pass=<mypasshere>&login=Login" www.hellboundhackers.org




and then i just used the following to access the page:

Code
curl -b cookies.txt www.hellboundhackers.org




Thanks to everyone who helped.
Author

RE: curl login


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 12-05-09 12:22
I think the '--cookie' is competent, you should paste the cookies from your browser to here.

Code
curl --cookie "COOKIE1=VALUE1; COOKIE2=VALUE2"



But try out 'man curl' anytime. :happy:




Edited by on 12-05-09 12:25