Skip to main content

http://search.usa.gov how funny is the title!

http://search.usa.gov/search?query=funny%3C/title%3E%3C/head%3E%3Cbody%3E%3Cvideo%20src=1%20onerror=alert(document.cookie)%3E%3C/body%3E%3C/html%3E%3C!--


http://search.usa.gov/search?query=funny</title></head><body><video src=1 onerror=alert(document.cookie)></body></html><!--


So the search is adding without problems anything in the title.
I've just added the remaining opening tags (</title></head><body>)of the page, the script that i want, the closing tags (</body></html>) and an opening  comment in the end ( <!-- ).
Quite funny anybody can create a phishing page on usa .gov or get the sessions of the users (If I've time I will explain it in a simulation with a video - don't fear the fact that you cannot have an account).

-----------------------------------------------------
If I have a bit of time I will finish and publish my thoughts about social engineering with a real example (this one?) and other methods to get more privileges.

Hints -
The usa.gov url shortner with drupal
http://go.usa.gov/shorturl/user/1  <- All the accounts are acconected and the usernames can be retrieved easily (this is normal ... by design)
http://go.usa.gov/robots.txt <- drupal with all the installation files. Only some folders and files are forbidden.
PHP  5.2.12 (read write on
They use the same methods as on drupa.ly.
-----------------------------------------------------

They don't reply to my emails ... and the problems of a previous post have never been patched expecially the remote code execution. Maybe if I post a tutorial a swarm of kids will start to play on their site.
The governments are slow as hell and never patch until someone try deface them (not me for sure) or someone else is asking them money for their "security" (not me also in this case ...).

What a mad world.



----------------------------------------------------------------
Blarg!!!!
Let me add a song to this boring and useless post that I'm forced to truncate.
Those words are explainig what I think right now.

****
...
And I find it kinda funny I find it kinda sad
The dreams in which I'm dying
Are the best I've ever had
I find it hard to tell you
I find it hard to take
When people run in circles
It's a very, very mad world mad world
...


Comments

Popular posts from this blog

Moodle 3.8.1+ - path leak via errors in several files

Moodle 3.8.1+ ----------------------------------------------- File: admin/mailout-debugger.php #!/usr/bin/php Notice : Disabled. in \admin\mailout-debugger.php on line 73 File: admin/settings/appearance.php Notice : Undefined variable: hassiteconfig in \admin\settings\appearance.php on line 10 Fatal error : Uncaught Error: Call to undefined function has_any_capability() in \admin\settings\appearance.php:10 Stack trace: #0 {main} thrown in \admin\settings\appearance.php on line 10 File: admin/settings/badges.php Notice : Undefined variable: hassiteconfig in \admin\settings\badges.php on line 30 Fatal error : Uncaught Error: Call to undefined function has_any_capability() in \admin\settings\badges.php:30 Stack trace: #0 {main} thrown in \admin\settings\badges.php on line 30 File: admin/settings/courses.php Notice : Undefined variable: hassiteconfig in \admin\settings\courses.php on line 32 Fatal error : Uncaught Error: Call to undefined function

2022 - Remove (the too many) Ads from Memu launcher

Simple method Download from pureapk "MEmu Launcher2" ex: MEmu Launcher2_v6.0.9_apkpure.com Install "System app remover" (root) remove from system apps the "memu launcher 2" import the "purified" MEmu Launcher2 apk with the Memu utility ("apk" on the right toolbar) Longer method Install "Export Apk" Export the memu launcher2  Install purify https://github.com/echo-devim/purify/raw/master/Purify.apk use purify with the exported memu launcher 2 Install "System app remover" (root) remove from system apps the "memu launcher 2" import the "purified" MEmu Launcher2 apk with the Memu utility ("apk" on the right toolbar)