Cenzic 232 Patent
Paid Advertising
sla.ckers.org is
ha.ckers sla.cking
Sla.ckers.org
The ha.ckers.org and sla.ckers.org web application security lab house rules and a place for you to introduce yourself if you like. 

Current Page: 1 of 1
Results 1 - 10 of 10
4 years ago
divine
kinda advanced i see.. :s
Forum: Projects
4 years ago
divine
you the man! ;) gonna check it right now!thanks
Forum: Projects
4 years ago
divine
hello people.. i ve been looking around this community, and i can see so many different ways of exploiting web applications.. but what about making a secure one..? my self i am quite a beginner in php and i ve been looking around the web for a nice user authentication tutorial, i found many, but no one is taking into consideration xss or sql injections.. so i dont know if its too much too ask,
Forum: Projects
5 years ago
divine
yeah i mean why not load the logging site inside the iframe instead of google.
Forum: XSS Info
5 years ago
divine
hi. i dont get the reason why you have as src in your iframe "www.google.com" and not the logging site instead..
Forum: XSS Info
5 years ago
divine
sorry to get offtopic.. im new here.. but the difficult part of XSS isn't also to inject the script tag?? i mean all these vectors are amazing, but whats the use case? (attaching them only to onLoad events, javascript:, etc??)
Forum: XSS Info
5 years ago
divine
Guys, beware.. i just registered to your forums :p
Forum: Intro
5 years ago
divine
Osirus-tiLung Wrote: ------------------------------------------------------- > yea, but I have usernames-- trying to get > passwords-- how would you do it? I guess what you are trying to do, is login as another user so why trying to get the passwords.. i would try to login as another user, trying to skip the password check.. My injection point would always be the username field.. So ei
Forum: SQL and Code Injection
5 years ago
divine
newbie here, but shouldn't you try to inject the username field, rather than the password field that propably gets encoded?
Forum: SQL and Code Injection
5 years ago
divine
great! can you tell me how :p
Forum: Privacy
Current Page: 1 of 1