SolidNode.com got HAXORED!

Status
Not open for further replies.

JakeM21

Member
10
2009
0
0
First I want to say I'm not hacker or something like that, I'm just a newbie programmer who is still learning. If I managed to get access there, could you imagine what the real hackers/crackers could do? After they were down 2 days, I went to check are they up. I saw this(LOL):
25u2xl0.jpg
Basicly, I was able to download ANY .php file on the server(including conf files), I already downloaded every single file of SN(Including conf files) and some other sites on their server. EVERY SITE HOSTED BY THEM HAD THIS BUG(including r00tsecurity.org and h4cky0u.org). You wonder why, aren't you? Security expert(read: retarded skid) Truvis Thornton decided to migrate the server from litespeed to apache web-server. After he installed apache he didn't know how to compile/configure php with apache. While he was thinking how to do it(around 8 hours) I was downloading all files from all sites hosted there. Great job Truvis, you are really an expert(read: retarded skid) PLEASE NOTE, I WON'T BE POSTING ALL FILES OF SITES HOSTED AT SN IN PUBLIC, I WON'T EVEN POST SN DB SOMEWHERE PROBABLY. Proof: SN index.PHP - http://pastebin.com/f2baf8ee
 
6 comments
lol why? I just come to see is SN up and then I got some download manager which is offering me to download all files. Since it's supposed to be FULLY SECURE SERVER as truvis thornton claims I decided to show everyone how secure it actually is. If I wanted, I could post the DB as some guys before did. I was fair enough.
 
cool, if he decided to take me to the court I'm sure he will be glad to say what he is doing on the web(exploiting random sites) and what hes hosting(Money fraud sites, child porn etc). I could be so bad as guys who which owned him before, and post the DB in public, his fail company would be totally RUINED then.
 
Status
Not open for further replies.
Back
Top