Page 2 of 5 FirstFirst 12345 LastLast
Results 11 to 20 of 45
  1. #11
    Join Date
    May 2006
    Location
    Hull
    Posts
    7,701
    Tokens
    2,430
    Habbo
    Moh

    Latest Awards:

    Default

    Quote Originally Posted by Invent View Post
    But you wouldn't be able to get the password. That's what elliot means.
    Most of the news team are there just to post news, and may use dictionary words.

  2. #12
    Join Date
    May 2005
    Location
    San Francisco, CA
    Posts
    7,160
    Tokens
    2,331

    Latest Awards:

    Default

    Well it doesn't really matter. It takes 2minutes to get the password and then you can forge the Cutenews session and mess up their site.

  3. #13
    Join Date
    May 2006
    Location
    Hull
    Posts
    7,701
    Tokens
    2,430
    Habbo
    Moh

    Latest Awards:

    Default

    Quote Originally Posted by Invent View Post
    Well it doesn't really matter. It takes 2minutes to get the password and then you can forge the Cutenews session and mess up their site.
    Whos site?
    The person whos trying to get into the cutenews, or the targets?

  4. #14
    Join Date
    May 2005
    Location
    San Francisco, CA
    Posts
    7,160
    Tokens
    2,331

    Latest Awards:

    Default

    The person that's trying to get into the Cutenews.

    I've just tried the technique now and I'm in ClubHabbo's Cutenews panel
    I've logged out now though as I'm nice

    Good Evening SkaterChu

    Some stats
    System SelfCheck Active News 115
    Can write to news.txt Yes Postponed News 0
    Can write to postponed_news.txt Yes Unapproved News 0
    Can write to unapproved news Yes Active Comments 1098
    Can write to comments.txt Yes Archives 0
    Can write to users.db.php Yes Users 1
    Can write to archives dir Yes
    aha
    You are now logged out, login
    Last edited by Invent; 15-01-2008 at 07:02 PM.

  5. #15
    Join Date
    Dec 2006
    Posts
    3,970
    Tokens
    0

    Latest Awards:

    Default

    Quote Originally Posted by Elliott-1 View Post
    What if your pw was antiestablishmentarianism? :8
    Well then he wouldnt even need to hack it because you just posted the password.
    Lets set the stage on fire, and hollywood will be jealous.

  6. #16
    Join Date
    Jan 2007
    Posts
    16,195
    Tokens
    3,454

    Latest Awards:

    Default

    If uy have sence you would make you're pword summin like:
    0fe9654f


  7. #17
    Join Date
    Oct 2006
    Location
    United Kingdom
    Posts
    4,753
    Tokens
    1,860
    Habbo
    ,Alpha,

    Latest Awards:

    Default

    How Do You do It?

  8. #18
    Join Date
    May 2006
    Location
    Hull
    Posts
    7,701
    Tokens
    2,430
    Habbo
    Moh

    Latest Awards:

    Default

    To prevent people from using this script, remove search.php :p


    There may be another way though

  9. #19
    Join Date
    Sep 2006
    Posts
    2,114
    Tokens
    0

    Latest Awards:

    Default

    What is th point in this..

    If people want to use cutenews, let them.
    Looking for a good desiner to design a social networking template.

    PM me.

  10. #20
    Join Date
    May 2006
    Location
    Hull
    Posts
    7,701
    Tokens
    2,430
    Habbo
    Moh

    Latest Awards:

    Default

    Quote Originally Posted by Ini View Post
    What is th point in this..

    If people want to use cutenews, let them.
    Reason:
    http://habbcrazy.net/Demo/getusers.php

    Will display all the users, so you know the usernames.
    There should be 3 users listed. Use another code to get the md5 hash.

    -------
    Username: Test
    Hash: http://habbcrazy.net/Demo/test1.php
    -------
    Username: Test2
    Hash: :http://habbcrazy.net/Demo/test2.php
    -------
    Username: Test3
    Hash: http://habbcrazy.net/Demo/test3.php
    -------

    You can then use them md5 hashes and reverse them:
    http://gdataonline.com/seekhash.php

    If you reverse the md5, you should now be able to login with one of them user names here:
    http://habbcrazy.net/Demo

    Edit: May not work is some 1 changes passwords.
    Last edited by Moh; 15-01-2008 at 09:10 PM.

Page 2 of 5 FirstFirst 12345 LastLast

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •