Full Disclosure mailing list archives

Re: jaillords.com hacked, login/password/email list


From: ghost <ghosts () gmail com>
Date: Tue, 8 Feb 2011 15:31:24 -0800

I don't know who is a more worthless idiot, the people posting things
that will (without question) flood into oblivion because no one gives
a shit... or the town idiot who always feels the need to chime in to
prolong it. You'd think on a list this size, there would be tons of
town idiots...

But no, 99% of the time it's always that same idiot.




On Tue, Feb 8, 2011 at 7:46 AM, Paul Schmehl <pschmehl_lists () tx rr com> wrote:
--On February 7, 2011 11:58:50 PM +0000 Bob Smith
<bobbyhadababyitsaboy () googlemail com> wrote:

Weak passwords, no brute force protection,  lots of sql injections,
was easy to take full control of site

Heres the password files
[snipped]
admins fix ur shit or we will be back


Do you seriously believe that admins for a site like this would be reading
FD?

--
Paul Schmehl, Senior Infosec Analyst
As if it wasn't already obvious, my opinions
are my own and not those of my employer.
*******************************************
"It is as useless to argue with those who have
renounced the use of reason as to administer
medication to the dead." Thomas Jefferson
"There are some ideas so wrong that only a very
intelligent person could believe in them." George Orwell

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: