Welcome to HBH! If you have tried to register and didn't get a verification email, please using the following link to resend the verification email.

pen testing help


ghost's Avatar
0 0

i'm confused about that… i found the secret directory… and i think , imust find the admin panel… i must inject the S*****N but how? i read the forums( there are 5 common exploits… from the other challenges??? 0 any help??:(


ghost's Avatar
0 0

try Xss in the members tools section. i havn't gotten around to this yet but i think theres something there


ghost's Avatar
0 0

web dev toolbar extension for firefox is quite helpful.


ghost's Avatar
0 0

omg you can do alot witht that. thnx for the tip.


ghost's Avatar
0 0

yep i was right about the XSS


ghost's Avatar
0 0

i used simple xss injection in members.php site but it can't work <s*****>a****(*)</s*****>….. any help or hint????:(


ghost's Avatar
0 0

you have fire fox get an add-on called firebug. Then try changing one of the POST vars. You know in the drop down list where it says c*****y. That's how I got it. Maybe there is another way.


ghost's Avatar
0 0

i found the third exploit… ( thanks fallingbudget..) for the other i think , i must create a session with the a**** to t*** who found in secret directory , but it can't works… i'm in the right way????:(

any help???


ghost's Avatar
0 0

i think you should pm some ppl and dont give so damn many spoilers.