Is HackThis Hackable?!?!?!


0

So, I’ve been studying SQLi Injections and I noticed that you inject it into a url, though if you simply find a website with something like this at the end or the url > “?id=” then type in a ‘ , like this “ ?id=’ ” and it comes back nothing, it’s SQL insecure, but if it shows an error then it can be hacked… Though, in all kinds of stuff on Hackthis i’ve seen things like
[quote=hackthis]You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near ‘\’‘ at line 1[/quote]
around on HackThis… Does this show a vulnerability in HackThis.co.uk?

P.S. Because I love HackThis too much, I don’t want anyone to… dispose real secrets… If you know what I mean…

25replies
10voices
343views
1image

-2

Plus, Real Level 4… The Beta Email signin thing isn’t right… The password is supposed to be the one found on the Planet Bid database… I decoded the password but can’t login to the f-ing email system… Any help please? PM me please :D

? [bolofecal]
8 years ago

0

You view this in @Mugiwara27 signature? If you view in contributors page have some errors solved.

Mugi [Mugiwara27]
8 years ago

0

Your post made me laugh !
You’re the second or third person who thinks that my signature is a Hackthis’s vulnerability lol

For you Real 4 problem, you should check the forum, I’m starting to be annoyed to repeat myself every time :p


-2

Can you give me a link to a good forum page for real 4? Please @Mugiwara27

? [bolofecal]
8 years ago

0

@Mugiwara27 is a most complete hacker in the world and can hack any website including hackthis.

https://www.hackthis.co.uk/forum/

f0rk [HackingGuy]
8 years ago

0

Ahhhh, that explains why my account has been fucking up. ;)

Mugi [Mugiwara27]
8 years ago

0

Schhhh bolofecal, don’t tell them!

f0rk [HackingGuy]
8 years ago

0

Your secrets out now. Guess your gonna have to spill the beans.

Mugi [Mugiwara27]
8 years ago

0

If you beat me on Hackthis, I’ll tell you everything I know !

f0rk [HackingGuy]
8 years ago

0

Know of any CTFs?

f0rk [HackingGuy]
8 years ago | edited 8 years ago

0

Sadly Im not that good at coding, especially when it comes to ORC’s…
Which is why I’m not gonna challenge you on your own turf ?

Mugi [Mugiwara27]
8 years ago

0

Hehe my secrets are gonna be kept secret

dloser
8 years ago

0

Not much coding is effective against orcs. Once one of them destroyed my computer with his fists. :(

But it is nice to see that Black00Viking13 still manages to show his ignorance with every word he writes.

f0rk [HackingGuy]
8 years ago

0

You got me dloser. ? But know that I sent that orc. ;)

Mugi [Mugiwara27]
8 years ago

0

lol I read it as OCR

DOSmaster
8 years ago

1

@Mugiwara27 Have you been toying with OCR again? tsk tsk tsk.

bkth
8 years ago

0

shoot I thought I was doing a SQLi on @Mugiwara27 signature all along, was that close to gain complete access…

cn9 [1337boy]
8 years ago | edited 8 years ago

0

@Mugiwara27 ’s signature is magic.
when he goes to the bank and has to sign some documents he steals a lot of money injecting the bank database with the signature

Mugi [Mugiwara27]
8 years ago

0

lol that could be great though

cn9 [1337boy]
8 years ago

0

Image

Mugi [Mugiwara27]
8 years ago

0

Yay! I was waiting for this one !

Nastyblood
8 years ago

0

HAHAHAHA i can imagine this happening in the future :P

Mugi [Mugiwara27]
8 years ago

0

In the futur, I hope, people will know what’s ‘Security’ :D

Nastyblood
8 years ago

0

Many people these days are totally ignorant about technology , like even at my home and my surroundings.
Even at school I keep doing so many pranks to my teachers and they wouldn’t have a clue . They think I’m the one fixing them but I’d be the one who made them.
But now schools started introducing online security and people later will be more aware of those stuff.

Numlock90
8 years ago | edited 8 years ago

0

Nasty.

My IT teachers in high school were completely useless.

I once got access to everybody’s account via some disk I burnt from some website somewhere sorry for the vagueness, it was years ago. I was young and stupid and gave the disk to someone who then installed in their directory and then gave my name in.

(I’m pretty sure that I installed some rats for some lucky person on their why else would they have made this exploit otherwise)

So I agreed from that point onwards I would help them instead.

I remember getting into the email server and the admin being like,
“How did you do that?!”
So I showed them.

I then realised that all the public school’s in my area had the same vuln.

A number of years later it was shut off but at least my school didn’t have that vuln.

I really hope what you suggest is true

But now schools started introducing online security and people later will be more aware of those stuff.

I studied further and the only security lesson I’d come into contact with gave a brief explanation of basic SQL injection,
didn’t give any real life examples, and didn’t explain why or what caused them to occur, or in what scenario you would find them it was appalling.

(Also watching the people who were in that lesson they didn’t have any clue what they were doing.)

I don’t feel sorry for people who use really weak passwords. (I have seen people in industry use awful passwords)

It does however bother me that we still have some many developers who think not setting a password policy is ok, or to have hard coded passwords in for convenience that they forget to take out.
Cough’s SoHopless routers

Anyway I’m starting to digress so I’ll leave it there :)

You must be logged in to reply to this discussion. Login
1 of 26

This site only uses cookies that are essential for the functionality of this website. Cookies are not used for tracking or marketing purposes.

By using our site, you acknowledge that you have read and understand our Privacy Policy, and Terms of Service.

Dismiss