LOLOL
Ya know, I get half of my business this way... they think they don't want
me to fix there site... until I send them their database dump and passwords
retrieved from invalid form checks or unsecured image directories...
Jonathan actually did this guy a favor, an embarrassing favor, but it
wouldn't have been if he had gone the right path with his complaint.
Wait, isn't that 2 lessons?
-----Original Message-----
From: Jonathan Sharp [mailto:[EMAIL PROTECTED]]
Sent: Thursday, February 08, 2001 7:15 PM
To: Philip Olson; James, Yz
Cc: [EMAIL PROTECTED]
Subject: RE: [PHP] To The Hacker: CodeBoy
Ok, I just checked my mail and found this thread... to clear this up...
In one of your posts you posed a url to a script you were working on...and I
backed up a directory and it gave me a directory listing...one folder was
/admin/ it gave another listing...then showed phpMyAdmin and then it gave
your full db schema...no passwords or anything...i was able to insert a
record...and a user to your mysql server... password is (abc123) that's all
i did...nothing else...and i'd hardly consider that a hack...more of a
"browse"
Cheers,
-Jonathan
aka: "Codeboy the *dangerous* hacker"
> -----Original Message-----
> From: Philip Olson [mailto:[EMAIL PROTECTED]]
> Sent: Thursday, February 08, 2001 4:24 PM
> To: James, Yz
> Cc: [EMAIL PROTECTED]
> Subject: Re: [PHP] To The Hacker: CodeBoy
>
>
> > True, but none of which are applicable to me, as I've not
> slandered, defamed
> > or spoofed anything or anyone. As far as hacking is concerned,
> I wouldn't
> > know my arse from my elbow :)
>
> just a fyi, my post had nothing to do with you. or the other james (which
> that line you're referring too had to do with) but rather, that of the
> person in question ("hacker"). but anyway, let's let this thread die.
> it's time.
>
> Philip
>
>
> --
> PHP General Mailing List (http://www.php.net/)
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> For additional commands, e-mail: [EMAIL PROTECTED]
> To contact the list administrators, e-mail: [EMAIL PROTECTED]
>
>
>
--
PHP General Mailing List (http://www.php.net/)
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
To contact the list administrators, e-mail: [EMAIL PROTECTED]
--
PHP General Mailing List (http://www.php.net/)
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
To contact the list administrators, e-mail: [EMAIL PROTECTED]