Help - Search - Members - Calendar
Full Version: Defacing A Page In 10 Mins Flat !
Forums > General GSO > GSO Tutorials
chills
!! WARNING ONLY FOR INFORMATION PURPOSES PLZ DONT USE TO DEFACE ANYWEBSITE !! OR UR ASS WILL BE HUNTED BY FED AND THROWNNTO PRISON !!

so you want to impress you friends so they fear you.. and think that you are an uber l33t h4ck0r .. well then you have come to the right place. i will teach you how to deface a website in 10 mins flat.. smile.gif


this i a public exploit and most of the websites you find will already be defaced.. smile.gif just change it to deaface it ur self .. hehe ..

this deface using a Simple to exploit : UPB Version : Public Beta 1.0b this is a form.. so here are the simple steps to PWNing it


1. finding your target goto www.google.com and search for ====>Powered by UPB" (b 1.0)|(1.0 final)|(Public Beta 1.0b)

2. after you have found your target register on that form. then on the url do this


http://[target]/[path_to_upb]/admin_members.php

after you see this edit your number to 3 and the admins number to 1. and volia you are admin

3. log off and login and you will become admin.


4: now goto the admin panel and look at the configurations. Manage Categories
Manage Forums
Config Settings
Manage Members

5. goto the config settings page .. scroll to the bottom

you shall have CSS styles
css, if you don't want it or don't know what it is make this field blank

in this just add your HTML that you want to be showed on the defaced page. make the rest of the colours black click edit

6.log off

7. Refresh and Volia you have defaced the PAGe

CHILLS

MADBUDDY@HOTMAIL.COM

PEACE
Se7eN
w00t, will do.

nerd..why am i reading this..
SyS49152
mm quite good ..
netranger
Why don't you post a way to fix that rather than defaceing it... Script kiddies sux smile.gif No offence!
kEnBy
QUOTE(chills @ Apr 7 2006, 05:10 PM) *
http://[target]/[path_to_upb]/admin_members.php

after you see this edit your number to 3 and the admins number to 1. and volia you are admin


but let me know what is "your number" and also "admins number"??
aelphaeis_mangarae
I don't think that this tutorial should be allowed on GSO.

No offence to the author at all.

But seriosly, defacing is so lame. I as many of you know, I can't stand website defacers, there just a bunch of morons.

I mean for **** sake, why don't you guys actually do something constructive, where you actually LEARN something?
kEnBy
QUOTE(aelphaeis_mangarae @ Apr 9 2006, 10:00 AM) *
I don't think that this tutorial should be allowed on GSO.

No offence to the author at all.

But seriosly, defacing is so lame. I as many of you know, I can't stand website defacers, there just a bunch of morons.

I mean for **** sake, why don't you guys actually do something constructive, where you actually LEARN something?


As you may know it's just like an Exploit which there are many post about that everyday.
So it's aloweded ! wink.gif
aelphaeis_mangarae
I guess this may be within the GSO rules, but it is still what I would call very unethical and LAME.
ConiX
It's just a tutorial, nothing more. I think that gso allows tutorials...
funtu$h
Defacing is always a offence but learning is not, if u know about flaws and vulnerabilities of ur site than only u can make it secure
Eduardo
Chills could have posted more info on the exploit and how to patch it. that would make the tutorial better and more constructive.
chills
QUOTE(edu19 @ Apr 10 2006, 06:44 AM) *
Chills could have posted more info on the exploit and how to patch it. that would make the tutorial better and more constructive.


i will keep that in mind when writing other papers..
D3FONiX
Well done, You can copy and paste.
UtmostBastard
I just puked in my mouth
FiSh
I imagine there's an upgrade, and if you get the upgrade, the flaw is probably fixed. So, in other words, upgrade to fix it.

I hate defacing too, so I see where you're coming from.
S_Assassin
QUOTE(D3FONiX @ Apr 10 2006, 09:52 PM) *
Well done, You can copy and paste.


exactly

btw, if you search alot on google for that hole, you might wanna make up an answer for the email from your ISP wink.gif
int_80
*yawn* how incredible.
m3kkR
This is kind of lame. It would be better if you told how it works. No offense to the writer, but this is sort of n00bish.
l0ph0nis
if exploiting...then with skill...not this REAL Scriptkid shit...and hehe...search google for this dumb exploit...almost all pages were exploited...
aelphaeis_mangarae
Damn now I can't hack teh gibson !1111

This thread should be locked.
noid
Nice one..but too lame...
LittleHacker
hate blind attacks ...
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2008 Invision Power Services, Inc.