Hack the hackers (muhahaha)
December 18th, 2005 by SecuriTeam, Filed under: Commentary, Funny, OT, Web
it is a rare occasion indeed when there is some fun to be had with your own web page being scanned.
i *heard* (heard!) of some occasions (a few years back) where bad people wanted to attack a website and as an example, had people go to their own page to participate in the attack. the attackers’ page in turn activated javascript code that would open several browsers going to the attacked page, thus achieving a primitive yet effective ddos.
in one such a case (youse got nothing on me!) javascript code was added to the page being attacked, which would in turn would open countless windows going to the attackers’ page from which they directed the attack [muhahahahaha].
that is indeed ddos and therefore bad, period, but there are subtler approaches yet… and morality is something yet to be decided. after all, neutralizing your attacker or someone about to attack you is pure self-defense.. ain’t it?
at least as long as you don’t hurt others while you’re at it.
well, today i saw this:
http://www.securiteam.com/windowsntfocus/6r00b2aeuk.html
appscan has a remote exploitable vulnerability. you can create a special “present” on your page, and when it is being scanned uninvited, you can get appscan to do something naughty.
as an example, email the fbi with an automatically created self-confession to scanning your site aggressively for vulnerabilities (casing your store!). you can do a lot worse but this sounds to me like so much fun i actually am considering coding it!
any takers???
(this idea comes from a somewhat deranged conversation between noam, aviram, ido and me)
gadi evron,
ge@beyondsecurity.com.
-
NoPh0BiA
-
http://orkut.com KISHORE
-
Tuttu
-
http://www.orkut.com Nagen
-
Sam
-
http://www.orkut.com karthi
-
sonu
-
http://dipeshjkjainrediffmail.com dipesh
-
praveen
-
Deepika
-
http://JINDAL0200 MOHIT
-
http://www.orkut.com sundaram
-
http://www.orkut.com sundaram
-
http://www.orkut.com sundaram
-
http://orkut sunny
-
Paul J Alengadan
-
http://www.skjay.info/ Jayachandra
-
http://cse_012yahoo.co.in savleen kaur
-
ANSHUMAN KANUNGO
-
http://s.anjelogmail.com anjelo sherin
-
http://s.anjelogmail.com anjelo sherin
-
http://s.anjelogmail.com anjelo sherin
-
happy
-
Heman
-
MAYANK
-
Prathiba
-
praveen
-
gurveer singh
-
http://www.orkut.com SUNNY
-
http://www.orkut.com SUNNY
-
mukul the genius
-
Karthick
-
http://www.orkut.com poornima
-
http://orkut Anurag
-
http://www.orkut.com Harsha
-
shruti
-
http://www.orkut.com sunny
-
gurveer singh
-
Goutham
-
Goutham
-
manoj
-
http://orkut kashior
-
http://orkut swaminath
-
http://orkut swaminath
-
Saraswathi
-
Samuel
-
Sunboy
-
Prakash
-
anshu
-
Mujeeb
-
http://orkut rushikesh nisal
-
sam
-
sam
-
http://orkut,youtupe uma
-
http://nil afzal
-
http://orkut&youtube hemanth
-
http://orkut Aniket
-
arijit
-
farooq
-
saj
-
VAISHAKH
-
Nandana
-
ranabs
-
http://yahoo nancy merriman
-
anand
-
Shyamji
-
http://orkut yakshit
-
prasad
-
http://resawalyahoo.co.in satish
-
http://hi satish
-
http://orkut.com,youtube.com Bharat
-
Anup Kumar Shah
-
Kalpan
-
http://orkutandyoutube devesh bhardwaj
-
Imran
-
Imran
-
dev
-
Ashima
-
VIVEK
-
Rush
-
midhun
-
sajal mukherje
-
Mohamid rahman
-
http://orkut tarun
-
Rahul
-
http://orkut hari
-
http://orkut hari
-
http://www.orcut.com Deepak Kumar
-
sharan
-
http://orkut narwadeshwar
-
http://orkut appu sinha
-
http://orkut appu sinha
-
http://gmail ANOOP SADASIVAN
-
http://orkut divi
-
http://orkut divi
-
http://bannedthisorkut umesh
-
http://sanjithtdyahoo.com sanjithtd
-
tina
-
http://ORKUT SAHIL
-
http://ORKUT SAHIL
-
sri
-
pat
-
shravan
-
Ashfaaq
-
sujan
-
kidu
-
Maran
-
http://ORKUT NAZNEEN
-
SIBIN
-
http://subhasisdasguptagmail.com subhasis
-
http://subhasisdasguptagmail.com subhasis
-
shinjan
-
prem
-
http://www.emphazer.com Santhosh
-
bithika
-
Ajay
-
Padmachandran
-
http://www.orkut.com ankit
-
ssg
-
http:///www.lern2hack.blogspot.com Sriki
-
http://www.lern2hack.blogspot.com Sriki
-
alvin noypi
-
jaipal
-
http://zubair same problem whn im open orkut there is banned muhahaha help me
-
http://orkut arun
-
kmv
-
jibin
-
SHARADHA
-
i use orkut account by gmail id but now gmail id was disabled so i cant sign in what can ido draju@in.com
-
muhahaha
-
Joshy Basil
-
sanjith123
-
vidhu
-
Pinaki



