Silk Road forums

Market => Rumor mill => Topic started by: doobiebros on September 20, 2011, 05:33 am

Title: user truenull attempting to hack silk road
Post by: doobiebros on September 20, 2011, 05:33 am
Here is my screenshot..look at the last column.  Only part edited was to remove my personal information, screename and btc balance.

Title: Re: user truenull attempting to hack silk road
Post by: lookbehindyou on September 20, 2011, 05:45 am
I've already hacked it bro, SQL injection and XSS, plus two unfixed vulns, being nice and reporting these first.

--lookbehindyou/truenull
Title: Re: user truenull attempting to hack silk road
Post by: Mitanox on September 20, 2011, 09:59 am
Yeah, I found a few SQLi also, but I reported them to nomad bloodbath :D
Title: Re: user truenull attempting to hack silk road
Post by: Modoki on September 20, 2011, 11:00 am
wow really great. That's obviously not very great to see how the site's security is done Oo.
much love
Title: Re: user truenull attempting to hack silk road
Post by: btcfreedom on September 20, 2011, 12:03 pm
I've already hacked it bro, SQL injection and XSS, plus two unfixed vulns, being nice and reporting these first.

--lookbehindyou/truenull

thanks for the good eyes LBY. Always on point....

L
Title: Re: user truenull attempting to hack silk road
Post by: jsmith on September 20, 2011, 12:59 pm
This is a perfect example as to why people should use gpg -- assume at somepoint, sometime, all those messages and order entries will be read by someone.
Title: Re: user truenull attempting to hack silk road
Post by: nomad bloodbath on September 20, 2011, 05:57 pm
yes truenull has being helping with exploits.
:D
nomad bloodbath
Title: Re: user truenull attempting to hack silk road
Post by: streetpharmacy on September 20, 2011, 09:55 pm
I've got another one. Check the screenshot  :o

Now beat that! :D

Title: Re: user truenull attempting to hack silk road
Post by: mseller on September 20, 2011, 10:06 pm
Yeah, I had that too. Its was interesting though.