MR CHEESE READ THIS PLEASE
Since cheese isn't responding to my mails (not his fault, probably) I will post my msg in here.
"In the mean time, please view our second podcast. As you know, HBH is pro full disclosure, which means we want to help others secure their websites. So in this podcast, we've done a really quick, simple penetration test of Project HAM, and we'll be showing you it from start -> finish. The exploits found etc, have already been patched, which means its now safe to release this podcast."
These lines, are a bit dodgy imo.
if one reads it now, it looks like 1) Zi (not HAM :X) is 100% finished (that includes security) at the time of writing and 2) that we asked them you guys to "pen test" our cms. And that is not true.
Can you please add something in the lines of "When we hacked Zi, the website was in still in development. The creators didn't test their security yet, and that is probably why this vurn. was there. Also, we didn't ask the owners of the website to "pen test" it, so that would be no pen test but a (imo lame) hack. This is of course not really ethical from us."
~spyware
you people please keep talking in this thread so it stays on the frontpage.
HEY CHEESE i pmed u about advertising on my site and now i got a popup to one of the links to the ads-.php page heres the website http://www.arabian-outlaw.com hope u reply
I agree with you Spyware. Especially since they released the current area of where ZI is being held. In the first podcast, Only_Samurai states this exactly:
"Obviously we dont advise that you go out and deface other websites and hack other websites and other networks because that would be unethical."
Releasing the second podcast of HBH showing what the ZI CMS looks like, and WHERE it is, is unethical because to my knowledge and what Ive read from hack4u, and Spyware, -The_Flash- wasnt given permission to do so. At the end of podcast #2, they give out the url of the still under construction, Zero Identity. Hows that ethical? Now it gives alot of people a fair chance to try and find an exploit and possibly leak the website to the public.
Thats just my views on this whole issue.
@the flash:
that's sad to hear :( people with an attitude like that,don't have a real place in the world, no one can benefit from people like you… and there are a lot like that out there :S :happy:
Just because I like to do what I want to do and don't give a fuck about inadequate opinions, why should that mean I don't have a real place in the world. If your going to make a statement as rash as that you surely need to elaborate on it and back it up with FACTS not OPINIONS. I put those in caps so you can try and pull the difference between each word. You can't deny a fact, but an opinion is never right.
So people don't benefit from me? Well lets look at this one logically. I'll use the 'knock on effect' as an example here.
I piss about with Project Meat or whatever pussy name they called it. I enjoy myself, I find it funny thus leaving me in a good mood allowing others to benefit from me being cheerful. Why should people benefit directly from something if it doesn't make me smile eh?
I'm fucked to ass of people like you who think that you shouldn't hack. You shouldn't do this and do that because of ethics. Just because I don't give two fucks about hacking a site which, although in development, was almost finished; doesn't mean I'm going to stick on my KKK costume and go hang a black person when it gets dark.
Fix up your idea's and get your own opinion and goals in life. Stop living in other peoples shadows.
actually, scankyfrank and frozen flame both said podcast was ok to release. so get your facts straight. it was made in good intentions, so quit your bitching fucktard and get over yourself. big deal it had exploits in it, they're fixed now, who gives a crap, every webstie has exploits in it.
so stop your crying and accept we made the podcast. do you even know what full disclosure is?
pfft. idiot.
thread locked.