[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

What is the most hacker thing you have done /g/?

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 289
Thread images: 30

File: blt.jpg (929KB, 4032x3024px) Image search: [Google]
blt.jpg
929KB, 4032x3024px
What is the most hacker thing you have done /g/?
>>
>>57867660
I once used chopsticks to eat a burger and fries
>>
>>57867660
Heh, kid, I'm giving ya a warning... you better unplug your ethernet cable immidietly or you'll know soon what my most hacker moment is...
>>
Joined 4chan
>>
>>57867704
tell more
>>
probably when i installed gentoo
>>
I once put a printed out picture of a BLT sandwich into the CD ROM drive of my laptop.
>>
I tampered with some http packets to send in a highscore for some shitty flash game to impress friends with my score.
>>
>>57868034
it's actually a dvd drive
>>
i was so bored at the hospital that i learned how to use wifislax and hacked a couple wifis. only one had decent internet tho

also one time i got into a honeypot. took me some time to realise
>>
Web scrapper for downloading premium user tutorials when a non premium user is used.

Bypassing authentication for online libraries of some universities.

Some basic SQL injections and using some PoCs vulnerabilities on some sites/servers.

Bundled a trojan and got people to download it during the Skype golden years.

Pretty meh stuff really,I am actually really interested in security , however not much jobs for it here (eastern Europe) and I already went the backend web dev route.
>>
>>57867660
I can swap two integers WITHOUT a temporary variable, using only XOR
>>
set up a sort of dead mans switch on a server at a previous workplace
in the event that someone fucked with something i told them not to fuck with, everything would shit the bed
and of course they fucked with it, and about 20 grand worth of server hardware got toasted
>>
>>57868199
>webscrapprt for downloading premium user tutorials when non premium user is used
Which site
>>
>>57868247
damn. how did you do that?
>>
>>57867704
holy crap you too, i meet this 4chan guy last month it was sooooo brutal XD
>>
wifi jammed my library
>>
>>57867660
distributed a keylogger
>>
>>57868174
>also one time i got into a honeypot. took me some time to realise
story?
>>
When I was a kid, I used to hack into people MSN account by guessing their secret question answers. It was ridiculously easy.
>>
looked over someone's shoulder and stole their runescape password
>>
Sniffed a key of my next door's wireless back in 2010

WEP is so shit.
>>
>>57868381
used to go to IRC with an australian friend and we would just get in random channels and nmap literally everyone, until we found this one guy with port 23 open
the password for the honeypot was probably something like "admin" or shit like that
it was literally empty, it even lacked basic linux commands and programs like "vi"
>>
>>57868057
are you sure you didn't do it to win a tv?
>>
>>57867660
Deleted my System32 directory.
>>
>>57867660
Installed Ubuntu.

now that's some hacker stuff
>>
>>57868264
The tutorials are in my native language and I don't want to disclose as I don't want them to fix their stuff.
>>
>>57868199
Also made a youtube video for hacking wow accounts, so that idiots send me their accounts and I sell their gold to the Chinese . But that's not really technical .
>>
>reverse engineer a game client, hack the shit outta it
>crash the official servers accidentally a few times
>wreck the game developer totally in his own game with your cheating client
>write a custom server that is faster and more secure than the original developer's
>>
Downloaded a shitton of ram
>>
>>57867660
I once took a firebox II and turned it into a OPEN-WRT router. Then I dressed up as Russell Brand and met up with Jonathan Ross I then gobbled his cock and went home
>>
>>57868505
Yeah well I installed Kali

help me
>>
cracked the wep password of my neighbour's router to shut down his internet since he was listening to internet radio at extremely high volumes.
>>
File: 1475524100489s.jpg (9KB, 250x226px) Image search: [Google]
1475524100489s.jpg
9KB, 250x226px
>>57867660
can use cheat engine like a fucking normie in 2016.
>>
>>57868635
You do know you shouldn't install it right ?
>>
File: rms.sexy.jpg (142KB, 768x1024px) Image search: [Google]
rms.sexy.jpg
142KB, 768x1024px
>>57867660
>got a dump of a ticket sale web page in my country with a sql injection attack. got 15k credit cards. over 10k are still valid.
>bypass paywalls to download content
>attacked a coffee with a modified version of MSN messenger, trolled my victims just for the keks.
>wifislax fun
>>
File: best.png (358KB, 406x497px) Image search: [Google]
best.png
358KB, 406x497px
>install keylogger on computers in high school lab
>get lucky - the sysadmin logged into one of them
>"I'm in the mainframe"
>access to school network, servers, teachers' file shares, etc.
>got to see tests / assignments in advance
>had to intentionally answer some questions wrong on tests so as not to arouse suspicion
>saw principal's contract - in addition to megabux, he got a house and car paid for by the school - dafuq??

now i just shitpost on 4chan and spam twitterbots that scrape /b/ and use the comments to feed the markov chain generators
>>
>>57868650
unless you're some fag who decides to install a shit ton of stuff over it, installing kali isn't really a problem. as a desktop os id probably install backbox instead though.
>>
File: 1476612507654.jpg (174KB, 1000x929px) Image search: [Google]
1476612507654.jpg
174KB, 1000x929px
using my own created OS, nobody can see what i do, its all crypted by miners.

feels good.

>2016 not using your own OS, good luck with NSA.
>>
>>57868253
Why would you do that?
>>
File: u95fthoi271y.jpg (20KB, 403x497px) Image search: [Google]
u95fthoi271y.jpg
20KB, 403x497px
>>57868564
>Things that never happened
>>
Distributed phishing software on a pedo-infested chat game and put memes on the account of the retard who actually took the bait.
Downloaded a joke Bash script some bully advertised in my school and wiped a list the script updated when you launched it, making him lose a competition to who will get the most victims.
>>
>>57868912
not that anon, but it all happened in ultima online, not all at once

client protocol was reverse engineered long ago, pirate servers created and the pirate servers themselves could be fucked with with lots of cheating, specially early Sphere, but it doesnt count as cheating the original developer.

then later a server more secure than the official one was indeed created, RunUO.

none of this was the same person, but for a simplier retro game or current indie, its quite possible
>>
>>57868912
It's ok, you don't have to believe it. This is 4chan after all.

The game was written in Java. No it wasn't Minecraft, it was way older than that. It was developed by a single person who wasn't very competent but smelled the money. You could play the game for free for thirty minutes, premium had no restrictions and some extra.

Me and my friend liked that game, so we thought that we should bypass that restriction. The classes were obfuscated. There was one tool that produced java code out of them, but you couldn't compile that code. After lots of work my friend made it compile, but the code was still a mess. Slowly we started to make sense of the code. We noticed all kinds of silly things like swear words being filtered client side only and that every command was prefixed with your nick.

So we experimented things like changing the nick on the fly, and everything worked. The server was pretty flexible, it accepted all kinds of silly changes. You could change your nick to some other person in the server, and pretend you're him. Some things worked like that and sometimes you got disconnected. Then things got silly, we noticed you could create rooms which held 9999 players instead of the maximum 8 that was limited client side once again. There were no restrictions on basic things, and you could make the server go down with rooms that have -1 players. Our theory was that the server was written in Java as well, and some exceptions were fatal for the main process.

[1/2]
>>
>>57868912
>>57869824 [2/2]

The game itself was about racing, and you could hit other cars as if you liked. Sync was done by clients, so you could teleport yourself in front of other cars and crush them. So I simply forced the main dev into my room and started it instantly, raping him in game. Rinse and repeat until he got mad. Shits and giggles were had. It took months like that until the dev fixed the major problems. Even then, you could break some things here and there and have fun.

Finally we started working on the server. We never made it ready, but the minimal functionality was fast and nice. It wasn't very playable, it needed some more effort to make it interesting. We didn't have time and the group fell apart before we finished.
>>
Scammed kids in Runescape to drop their items and give me their account passwords etc.
>>
>>57867687
No Chinese,Japanese,Korean does this
>>
>>57868076
>he was too poor for a blu-ray drive
>>
>>57867660
I've followed step-by-step instructions on how to mod a videogame.
>>
Used gameshark on an emulator.
>>
>>57867660
>What is the most hacker thing you have done /g/?
Finding out that the default windows policy manager wasn't restricted back in high school. Provided you had some basic know how you could yourself quite a few rights.
>>
>>57868564
i did this too except nobody cared about my private server and then the game died
>>
>>57868034
>>57868076
It's pronounced "Optical Drive."
>>
File: machi presents the RX 480.jpg (84KB, 1280x720px) Image search: [Google]
machi presents the RX 480.jpg
84KB, 1280x720px
>>57870552
I'm Chinese and I've eaten fries with chopsticks before. I typically also eat chips with chopsticks too so I can continue using my keyboard and mouse with both hands.
>>
>>57870759
>I typically also eat chips with chopsticks too so I can continue using my keyboard and mouse with both hands.
shit nigga that's kinda genius in a really roundable retared way
>>
>>57867660
Guessed my neighbor's WiFi password on the first try because they had a flag of their favorite sports team hanging in front of their house.
>>
>>57870705
Shit, that sucks. But I get it. There are things like legal issues if it's a proprietary game. Massive amount work for so little. Only hope is that it takes off and becomes better than the original.
>>
used PHP exec() to turn a web hosting service provided by the college I go to into a VPS
>>
>>57867660
My friend and I in highschool figured a way to silently disable DeepFreeze on the school computers. Then installing whatever shit we wanted without having to do it every day in the computer labs. That was the most 'hacker' thing I've ever done.

I've done plenty of other cool things using a network and shell script since.
>>
stole the admin ntlm hash from the library,now just to crack it
>>
>>57867660
install whatssap in my aunt's cellphone
>>
I dropped a chernobyl virus into school network after graduating.
>>
>>57870913
PHP should run with user/apache permissions, how exactly did that help you run commands with root?
>>
Post on a hacker related thread on /g/
>>
Use Google to find open ftp servers.
>>
anonet connectivity

1.3.37.1/24

>tfw dednet is ded
>>
>>57872898
also modded some flash games a few years ago if that counts
>>
>>57868817
I hope you're using a C2D or lower and I hope you disabled IntelME. Because if you didn't, your custom operating system offers no additional security. IntelME shares flash with the BIOS and has full TCP/IP stack and memory access and can ignore your firewall and send network packets and receive them too. It's like having a little NSA computer buried in your CPU that does whatever it wants.
>>
>>57867660
cd..
cd ..
cd do
cd downloads/
mv pepe3.jpg /../pictures/pepes
cd ~
>>
>>57867660
I put two stickers on my thinkpad
>>
>>57868740
I guess I know why my old principal had a huge house now.
>>
I tried to ddos school servers using ping from command line.
>>
>>57867660
Changed my mac address every hour to keep getting a free complimentary hour pass on the local pay-to-use wifi hotspot

>mewithsunglasses.jpg
>>
File: photo-2314.jpg (146KB, 640x640px) Image search: [Google]
photo-2314.jpg
146KB, 640x640px
Developed a winapi c program replacing IBN in your clipboard with meme foundation one. I shared the code on local equivalent of reddit and the next week the biggest Bank of my country blocked pasting on their site. ¯\_(ツ)_/¯
>>
>>57868247
I don't believe you
>>
>>57870759
b-but if you use the c-chop s-sticks, how kan you u-use keyboard and mouse at the same t-time?
>>
I once stole billions of internet data from americans across the globe.
>>
I just deleted the whole internet. Good luck boys.
>>
>be me
>Edgy teen kid around 14 maybe
>discovers phishing
>make a fake fb page
>use a fake account and start talking to qt Australian girl
>she said me to take her Virginity since I told her I lived a town away
>I said sure
>click this link I have some nudes here
>it's the fake page
>I get her password
>sees all her chat with other girls
>she's only talking about me
>ohno.jpeg
>I Never login again
>>
>>57870759
I hope you're at least cute else not accepted.
>>
>>57870792
If it's stupid but it works it's not stupid.
>>
>>57868740
Basically the same but my in my high school it was in a text document
>>
>>57872798
I'm guessing that some admins couldn't get their permissions to work properly and modified the user that ran apache. I've seen it done.
>>
used cain & abel in high school and captured an ntlm hash, ran it through a 600mb rainbow table and it gave me r/w access to the system image repo for every workstation in the school. they were not encrypted. i wish i had put a keylogger in there.
>>
File: tumblr_nmpgfxZFwO1titub2o1_250.jpg (10KB, 234x250px) Image search: [Google]
tumblr_nmpgfxZFwO1titub2o1_250.jpg
10KB, 234x250px
I discovered a vulnerability in a BB forum that allows normal users to post and execute php code in the server. I was about to post an infinite loop but finnally I didn't do nothing
>>
>>57867660

I once had to bypass some security measures of a billion dollar company to gain direct access to a video of a presentation from a senior worker.

Idk if it was illegal, but the senior member itself (who was the latin america lead at the time) asked me to do it. I did it anyway.
>>
>>57874920
I guess the best part of it is that you learned about security and vulnerabilities. I am glad you didn't move forward.

You seem like a great guy, anon.
>>
Back in like 2005-06, I found a MySpace bot and exploited the friend adder system to the point where I maxed out my friends on my account. I think the limit was 5000. Did it for a while.
>>
>>57868247
Lay off the bath salts, John.
>>
>>57868885
Revenge? Job security?
>>
>>57874950

I also created two virus-like to get access to some data from business.

I never actually deployed them, since I got into an agreement with the lead companies to send me the data. But it was a major factor to get through this agreement.

"You can sell me the data or I will contact the businesses and buy straight from them"
>>
>>57867660
while in highschool installed a keylogger on my friends computer. Got her fb/email login, read private stuff, quickly got bored of it.
>>
>>57868199
>Bypassing authentication for online libraries of some universities.
splain
>>
This one kid was watching YouTube videos and laughing like an autist in the library so I deauthed him until he left

Ahhhh the good ol' days
>>
>>57874920
>finnally I didn't do nothing
fag
>>
How could I find out where a certain person lived if they don't click links and don't really have much that reveals their location?

I can't say whom.
>>
>>57875143
trump lives in the trump tower, anon
>>
I used inspect element to change my friend's name to "Dick McFaggot" on facebook then sent him a screenshot.
>>
>>57875156
Nah, not Daddy Trump.

A Twitch streamer.
>>
File: 1413422760717.jpg (29KB, 960x634px) Image search: [Google]
1413422760717.jpg
29KB, 960x634px
>>57873459
Some things you're not supposed to see
>>
>>57875158
I've used that so many times to make it look like I have money.
>>
My buddy left his Facebook account logged in on my computer so I posted on his wall that he's gay and got hacked ;) .
>>
>>57875188
social hacking is the easiest way
>>
File: howTheChopsticksWork.png (7KB, 640x400px) Image search: [Google]
howTheChopsticksWork.png
7KB, 640x400px
>>57873171
not the guy you're responding to, but here's my best poorly-drawn guess. the chopsticks can then swing up to his mouth
>>
Used a hex editor to make a client sided change to the amount of ingame money I had to less than half the amount. Recorded a video of myself "increasing it" but in reality just changing it back to its original value. Then inviting users to join ky invisionfree board where I would "hack them free money" but instead stole their account once given the info and looted all their items
>>
Social engineered the passwords for everything on campus out of the IT people back when I was in high school, then did some minor non-destructive shit. Not very impressive, I know.
>>
>>57867660
used irssi with a green/black terminal theme in a starbucks. people were staring, it was sort of entertaining

either that or installing kali from a tim hortons because my wifi was down (debian drivers werent functioning right, it was a short term solution)
>>
File: ihm.png (19KB, 651x558px) Image search: [Google]
ihm.png
19KB, 651x558px
>>57867660
>be me, young edgy faggot with internet access
>using a chat service, pretending to be a 15 year old girl
>find some skeezy 40+ year old guys who want to chat
>they ask for pics
>send sub7client.jpg.bat
>if they take the bait I lock down their computer with a gigantic text screen telling their family that he was being a pedo
>set computer to print 1000 pages of the same message

I miss the glory days of the internet
>>
>>57867660
when i was in highschool i gave out the password for the teachers only network. i also put keyloggers on peoples computers and fuck with them by telling them what they said to someone in a private message. after that people started to notice some shit so i dialed it back and told may friends how to do this and they told a fuck load of people. eventually some people got caught after they fucked with teachers personal files on an open network. side note while we had access to a teaches network we would create a folder under a teachers name and hide games and porn in there
>>
fixed a wangblows machine by using system restore
>>
fullscreening my green on black manjaro terminal and updating my system out of a cafe.
>>
As a kid I picked a lock with a pine needle.
>>
File: 1481075306315.png (18KB, 742x495px) Image search: [Google]
1481075306315.png
18KB, 742x495px
>>57875666
>>
File: 11-2.jpg (21KB, 580x311px) Image search: [Google]
11-2.jpg
21KB, 580x311px
>>57867660
When I was just a child I took control of the US telephone and data communications infrastructure. I still have not relinquished this control.
>>
>>57876356
kek
>>
>be in high school and in IT program circa 2009
>Learn about .bat and .vbs
>Make scripts that do stupid shit like open and close cd drive, play rick roll for startup on loop with continuously setting volume to max
>Setup on cd to auto load on insert
>burn multiple cd's and write halo maps on them
>leave them around the IT room
>randomly hear kids getting rick rolled for a few days and cd drives that never stopped opening and closing
>get some cheep lolz

This evolved to more if anyone is interested.
>>
I shut down dishnet dsl for parts of northern Arkansas for a week and a half in 2001. I found what looked like a newsletter about it after the fact and it scared me because i was just learning at the time and genius level motherfuckers operate this shit sometimes and i have no idea how they didnt find me Never did anything like that again.
>>
>>57867660
use a vpn
>>
File: georgepuddi.png (734KB, 500x375px) Image search: [Google]
georgepuddi.png
734KB, 500x375px
>>57867660
I set up my modem and router to accept telnet commands so that I could reset them from my phone.
>>
>>57867704
>joined
>>
>>57877281
pls
>>
>>57869859
Was this game Need for Madness?
>>
>>57867660
>introductory software dev class
>get an assignment to write an addressbook in Java
>it's a group assignment
>get paired with a ricer and a metalhead
>ignore the assignment and go back to playing vidya
>a week before the deadline we finally call a meeting in he computer lab to get things done
>turns out my groupmates are useless and I don't have time to get it done by myself
>throw an autistic tantrum
>go through the assignment and find out there's a reference implementation
>run the class files through a decompiler
>teammates look at me like I'm some kind of technomancer
>spend several hours cleaning up the code, refactor it and add documentation all while my teammates are staring at me like I'm hacking the NSA
>push to git in parts to make it look like we actually worked on it
>get A-
I'm not exactly proud of how that went, but we got the work done.
>>
>>57867660
Joined the DDoS Attack to Scientology with the LOIC
>>
>>57879898
That's not a hacker thing, that's a "please come and hack me" thing.
>>
Lol look at these fuckin nerds. Alright I'll tell you what.
192.168.1.1
is me. Let's see what you can do. Also if you don't know what those numbers means then go back to facebook
>>
>>57882020
Yea, go trick sum reddit n00bz with your shit,
127.0.0.0
>>
Modded my gaymes on the PC :^)

You wish you were as hackery as me
>>
>>57882020
Are you my router?
>>
>>57867660
>"here's a flash drive anon, please put this and that on it, but DON'T open it!"
>she looks at me the whole time while I copy shit she wants on the usb flash drive making sure I do not look at it
>win+r
>cmd
>c:
>md copeh
>copy p:\*.* C:\copeh
>"what are you doing anon?"
>"you wanted me to copy crap without looking at your flash drive, right? there you see, i'm copying"
>"oh okay, that's so sweet of you, didn't know you can do that in that typey thing"
>"typey thing" omagawd killmenow

Turns out it was all just holiday photos with a single dick pic of her bf in a non-sexual situation. Meh...
>>
Exploited flaw in dennys rewards program and got unlimited $15 off coupons. I've used $200 worth.

This is in Canada btw
>>
>>57867660
not showering two weeks
>>
>>57868470
Bet your dad was pissed.
>>
I attempted to open console on Costco laptops that were on display. I was blocked by admin settings.
>>
File: AOL CD-ROM.jpg (25KB, 350x350px) Image search: [Google]
AOL CD-ROM.jpg
25KB, 350x350px
>>57873351
I still have my internet cd-rom. I'll be fine.
>>
File: PWNEd.png (2MB, 1280x1024px) Image search: [Google]
PWNEd.png
2MB, 1280x1024px
>be freshman in highschool
>friends and I constantly make gay jokes about the computer lab teacher and the IT guy
>find picture on facebook of them exchanging christmas presents in front of a christmas tree
>load it on to a thumb drive.
>set every computer background in the lab/ library to that
>everyone gigglin real hard
>a couple of hours later my name called into the office over the intercom

>"we knew it was you that hacked the main frame and toyed with the computer settings"
>me: WHAT
>principal "how did you hack through the fire wall"
>i didn't, what, I just manually set the backgrounds, im sorry
>they act all embarrassed and send me back to class
>>
>>57867660
I used a gameshark on pokemon emerald.
>>
>>57868416
honestly anyone that uses irc without a vpn deserves to get pwned
>>
Created a batch file on all the computers at work that shuts down the computer. Put it on the desktop and changed the icon to the Windows Explorer icon, and let the madness commence.
>>
Ran down some CIA nigger.
>>
>>57868247
I can do it even without XOR
>>
>>57867660
I did all levels of this

http://overthewire.org/wargames/bandit/

It's actually a good way to learn about networking and security etc
>>
i have a t420 with arch / i3
>>
>>57880197
>>>57877281
>kept adding features like continuously moving the mouse to the upper left corner of the screen and spamming the esc key ten time a second
>found out every computer had the same user profile and had their user files shared
>setup another script to push this to every computer in the IT room
>now important to the story, all of the classes in the IT area have a meeting 30 minutes into class
>set it to run a few minutes into the meeting
>the fateful day, everyone in their meetings and all of a sudden every computer starts blasting never gonna give you up
>the amount of attention this pulled now I knew they were going to be after who did this.

continue?
>>
>>57885509
yes, story time
>>
>>57885552
>>57885509
>didn't need to keep a straight face and every other student couldn't stop laughing
>Professors were more than pissed and started asking around if anyone had information which they had the time given they couldn't find the "virus" and had to spend two days re imaging every computer.
>I had planned for this so I didn't tell anyone and did everything from community computers
>They tried to blame it on a senior and I was in the clear because it was my first year there.
>A week later they gave every class a day long talk about hacking.
>>
Back in 2000 when I was in high school I ARP poisoned the school network so it thought my computer was the gateway and then sniffed all the AIM messages and blackmailed a girl over some mean things she said about one of her friends into giving me a blowjob
>>
>>57885834
Of all the things that never happened, that one never happened the most.
>>
There was a program that had a trail for a week then expired, so I set my clock back every time I wanted to use it
>>
>>57867660
deleted system32 on one of my primary school's computers
>>
>>57868387
Ahahah holy kek this
>>
>>57868663
>attacked a coffee
You madman
>>
>>57871083
are you adam or are you me?
my friend and i did the same, was done through deleting the registry keys.
>>
>>57867660
I stole a 15 foot ethernet cable from my school
>>
>>57887179
i stole a 16 port fast ethernet hub from school
(yes, hub, not switch)
plenty of LAN gaming was done through that thing
>>
File: a.jpg (156KB, 1570x922px) Image search: [Google]
a.jpg
156KB, 1570x922px
>>57887241
almost this model, mine didn't have a utilization meter on it, though
>>
File: 1480297193609.jpg (53KB, 500x509px) Image search: [Google]
1480297193609.jpg
53KB, 500x509px
>>57884071
I did that for ruby, but I used the wrong game to see what would happen and accidentally broke the collision handling so I bicycled over the ocean all the way to the elite four.
>>
>>57870742
Actually it's "laser zip-disquette player"
>>
>>57887902
i prefer laserdisquette cartridge recepticle
>>
>>57884018
>hacked the main frame

FUCKING KEK
how can people be this fucking tech illiterate
>>
Used "bifrost"
>>
Posted this before:
>site had file I wanted
>couldn't access file
>find generic script the site is using
>they're using an outdated nulled version
>look thru the code, find plenty of 'sploits
>use one of those 'sploits to get the file, admin finds out almost straight away and patches the hole
>already got what I wanted but figured I'd fuck with the guy
>find even better 'sploit that lets me upload my own scripts to the server
>that gets me a remote shell, try logging into root using database password from the scripts config file
>it works
Ended up getting my file, root on a 10Gbps box, and an exploit which works on any site using the same outdated script (literally thousands running it because it's the latest nulled version available)
Also later found out the admin of that site actually posted on the scripts official forum asking for help about it, they told him to fuck off with his nulled shit lol
>>
>>57888829
I'm bored so here's another story
>be like 11 years old
>guy I talk to asks me to hack some text-based rpg site
>ask why
>'because you can lol'
didn't know what he meant but I look into it
>logging into the site sets a cookie
>UserID = 123456
>change cookie to UserID = 1
>'Welcome admin'
>have a snoop through the admin pages
>one of them lets you edit user accounts
>even has a password field filled with asterisks
>view source
>password field is actually filled with cleartext password
>kek
>find friend who asked me to hack the sites account
>get his password
this friend was actually developing his own text-based rpg too, which i was beta testing
>try logging into his site with the password
>'Welcome admin'
>one of his admin-only pages actually said the details to login to the ftp
>ftp works
>grab all his sites source code
>upload phpmyadmin and dump the database too
>friend finds out later, rages and blocks me, found out later he stopped working on his site because of me
Not really sure why he raged so hard, it's not like I was gonna dump his site publicly. Looking back though I'm kinda sorry about doing it, if I knew he'd be so mad I probably wouldn't have, if anything I think I just wanted to prove myself ;-;

I actually found the dumps I made of his site a few days ago, pretty weird feeling looking through 10 year old code that never got used. IMO he was actually a pretty skilled coder, hope you did well Kevin.

Was also thinking about sending the dumps I got to him, for all I know I'm the only person who even still has the code for that site. But 10 years is a long time, who knows how he'd react.
>>
>>57868352
What did you gain by doing this?
>>
>>57889278
>Was also thinking about sending the dumps I got to him
doesn't sound like you're close anymore, so what harm could an offer do?
>>
>>57889510
I'm just worried he might track me down and try to sue me or something lel, though I suppose he could have easily done that back then but didn't.

For all I know he could still be bitter about it though, we literally never talked since he found out and blocked me, someone else had to tell me about how he cancelled the project (which was pretty sad to hear 2bh)
>>
>>57888094
People don't know how it works so they use buzzwords they got from wargames
>>
>>57889681
idk, it's too personal an issue for meaningful outside advice
legal issues doesn't seem like something to worry about, you haven't put it anywhere outside your control/public, right? first sign of trouble and you can just wipe it all
>>
Hacked my neighbor's WEP wifi back in high school. I got into the router and port forwarded a couple ports to a computer that I hooked up to their network.

For all of high school, I had my own personal dropbox FTP server and proxy.

Nowadays, I just remove viruses from relatives' computers and unlock computers for people with ophcrack as a favor.
Kind of want to get back in the game and start wardriving and shit, but I don't see anything worth hacking since I grew up and don't really have personal enemies anymore. I'm not a fan of stealing personal data for no reason. I guess getting access to free wifi throughout the city is somewhat useful, but I have an unlimited 3G plan so I don't see the point.

>>57889681
Back then you should have just showed him the vulnerabilities and advised him how to patch them.

But now if you want to contact him just send him a copy of the code with a sort of "'member when..." message that also says you meant no harm.
>>
>>57889784
>first sign of trouble and you can just wipe it all
True, suppose I could just offer to upload & delete them and see what he says

>>57889853
There wasn't really any vulnerabilities on his side beside password reuse though, wish I'd just logged into his ftp, noticed the login worked and messaged him, but I was a dumb fuck who thought it'd be funny to dump all his shit for some reason.

(IIRC after I got into the first site and noticed cleartext passwords, I told him about it and he actually said to me 'don't look at my password', which naturally led to me looking at his password... he really should have changed his passwords once I told him I could get it though, but maybe he trusted me not to fuck around... idk)

>just send him a copy of the code with a sort of "'member when..." message
I actually wrote up a little email like that but didn't send it, probably should offer first though and see what he says, maybe he already has the code and just wants me to delete my copy

Maybe I'll leave it till christmas, better chance of him being in a good mood around then I guess
>>
File: IMG-20161207-WA0004.jpg (63KB, 750x769px) Image search: [Google]
IMG-20161207-WA0004.jpg
63KB, 750x769px
>>57874984
Samy?
>>
Some social engineering:
>guy selling a cheat tool for like $200
>all it does is edit a file, something you can easily do manually, but with this cheat tool it's undetectable
>friend and I really want to know how it works
>guy selling tool does trials if you contact him, where he sends you an obfuscated trial version of the tool
>friend contacts him, pretends to be really interested in the tool, says he has money ready etc.
>gets him to send a trial version over
We had a look over it and it was pretty highly protected, but I didn't really wanna spend weeks reversing it
>lightbulb over head moment
>get friend to tell the guy that the trial isn't working
>find screenshot of generic 'This application can't run on this PC' message and get him to send it
>friend acts dumb and mentions things like running on 'itanium processor'
>guy doesn't reply for a while, but then sends over a new exe
Completely unprotected, we had it decompiled and recompiling within the night, made a nice bit from that too.

Don't feel sorry for the guy, he was just selling research he'd bought from someone else, and even after this still kept selling other cheat tools and shit, last I heard his Lambourghini got impounded after he was arrested for being part of an 'online game hacking conspiracy', kinda makes me wish I'd stayed in that scene 2bh
>>
DDoS with a cheap online based services

Pls don't judge, I was 14 :(
>>
>college gives us our own space for web stuff
>connect to it through winscp
>sftp
>try connecting with ssh to see if we have shell access
>we do
>sysadmins don't know what permissions are, everyone can access anyones files
>look through lead tutors files
>one of them has a script containing the root login
>jackpot
>all servers on campus share the same root login, probably for the whole college/uni since there was only one sysadmin team afaik
>literally don't do anything with it
A couple years later one of the sysadmins was talking to our class and I asked what kind of intrusion detection does the college use, he told us they're using some new shit and could probably let us look at the old IDS system if we wanted, since 'there's probably hackers in this class interested in it', we all shared a hearty laugh and I ran home to wipe my drives, the end.
>>
>>57890371
Another story
>be like 14
>have IT class in school almost daily, but internet is locked down tighter than a nuns cunt
>be high IQ genius who has his own server
>install http proxy script on server
>edit bottom to say "(c) anon lastname" because high IQ
>works well in school, even flash games and shit work fine
>share link with like 3 friends, didn't think anyone would care
>few weeks later people in school are like "oh so you're that proxy guy right?"
>friends telling me how the sysadmins were in their class earlier asking if anyone knows 'anon lastname'

Felt like an international man of mystery 2bh
>>
>>57870759
>I typically also eat chips with chopsticks too so I can continue using my keyboard and mouse with both hands.
I eat cheetos with chopsticks to keep my hands clean.
>>
>>57873171
its so you don't get dirty chip dust all over your shit, not exactly for using at the same time as eating.
>>
File: Screenshot_2015-11-18-08-31-33.png (516KB, 540x960px) Image search: [Google]
Screenshot_2015-11-18-08-31-33.png
516KB, 540x960px
>>57867660
>be me
>live in small hick town in Tennessee
>everyone there thinks I'm a l33t h4ck3r because I trick students into thinking we're having a snow day by using inspect element on news websites and posting screenshots on my twitter
I did a ton of shit before I went off to college
>>
File: Screenshot_2016-04-12-18-16-45.png (317KB, 960x540px) Image search: [Google]
Screenshot_2016-04-12-18-16-45.png
317KB, 960x540px
>>57892287
This is the website that would stop you if you tried to visit 4chan on school wifi
>>
>Be me, 6/7 years old
>Everyone in my class is working on some shortfilm-esque video in movie maker for our computing class
>Teacher tells all students to save files to the shared drive, which anyone can access and read/write to
>Me and my buddy instead save it to our own drives on the network
>After a few lessons of working on the videos, me and my buddy go to the library to use the computers there at lunch time
>Log into the netwrok with someone else's account (all passwords were the same)
>We then deleted all the files for our class from the shared drive
Was pretty fun, i regret not fucking with that school some more, but i was never really into computers back then.
>>
File: 1478587783851.png (32KB, 737x1021px) Image search: [Google]
1478587783851.png
32KB, 737x1021px
hacked HR emails to snoop other employees contracts

tools used:
> social engineering
> dumb illiterate HR assistant
>>
>>57867660
had an ssh server on my desktop, checked the /var/logs. Saw a bunch of login attempts from IP addresses in China. Installed fail2ban.
HACKERMAN hehe xD
>>
Installed solus
>>
Use to steal 56k internet cos aol wouldn't work with my Dreamcast
>>
>>57868199
why would you use a person of color's vulnerability? are all hackers white nationalists?
>>
Deleted system32 on a school computer. That's right, kids, I was able to write a batch file!
>>
>>57867660
Broke into my high school one night a couple of years ago (when I was still attending it) and erased the admin password from every computer so I had full access over every system
>>
Decompiler a .NET account stealer and got the password for the authors email. If I wanted (and if he didn't change the password) I could login and steal all the accts.

But I'm not going to.
>>
File: 96404.png (570B, 32x32px) Image search: [Google]
96404.png
570B, 32x32px
I used Netbus to "hack into" a friend's computer once back in the 90s.
>>
I used to get free continues using the piezoelectric part of the lighters on arcade machines
>>
>>57868253
How these work? Like how can you make them go off if something bad happens.

Like what happen with the Wikileaks kinda.
>>
>>57868758
It's not that it's a problem it's just not using it the way it's designed

It's like having a big truck for work and using it to take kids to school
>>
I once installed a hidden application on my friend's phone. It basically accessed the camera and posted to an anonymous IP address. Turn out that he uses his phone while having sex. He is not that good though.
>>
Gave myself admin privileges on a counter-strike server when I was 16. It was a difficult path:
- learned C
- found out about Phrack magazine and learned how to exploit buffer overflows
- learned x86 assembly and how to write shellcodes
- looked for known vulnerabilities of the counter-strike server, found some, all were already patched
- the same server had also Quake server; I knew that CS/HL shares Quake codebase; one of the known vulnerabilities for CS that I found before and was patched was working on the Quake server, but it in order to exploit it it required admin rights for Quake server
- luckily there was another exploit that would give you Quake's server password if you simply change the Quake client a bit and recompile it (Quake's source was open)
- reproduced the target server on another computer (same distro version, etc.)
- got Quake server password; wrote the exploit for the Quake server and shellcode that would insert admin rights to a CS admin file
- exploit didn't work the first time, had to adjust the return address a few dozen times, but then it worked; luckily the Quake server would restart itself upon crashing and it had root privileges

Didn't do anything of this sort later on. I imagine it is much more difficult to do now than more than a decade ago.
>>
>>57875188
just get his mom's name and throw it in whitepages
>>
if anyone still cares:
>got permission to install ethernet port in room at inpatient facility
>everyone's files were on the wired network
>Had fun pretending to know everything about everyone, including staff.
good times
>>
Once I crashed my browser with a script
>>
>>57893889
>uses phone while having sex
The fuck?
>>
I took a screenshot of the desktop, set it as the background image and removed all the actual icons
>>
>>57868300
A = A xor B
B = A xor B
A = A xor B
>>
>>57867660

nose piercing
>>
I went on the deep web once.
>>
My local mechanics had an unsecured Linksys router, so I changed their SSID to Greasemonkeys since they kept the default password.
>>
>>57868300
>>57894897
even better in assembler:
xor a,b
xor b,a
xor a,b
>>
Sometimea I print out stuff about the Black Lodge from Twin Peaks on some nearby unsecured printer.
>>
Friend of mine was teaching me shit and installed a program I could exploit while on Kali Linux using meterpreter. Still don't know jack shit though.
>>
>>57867660
>What is the most hacker thing you have done /g/?

i put on kneesocks and sucked a dick
>>
>>57894897
FUCKING MAGIC
>>
Cracked the password dad put on our first DSL router and removed the time constraint for internet access he had set up for my PC.

Guessed gf's facebook password for the lulz. Never spied or anything, just wanted to see if I could. Taught her about password security.
Fast-forward a couple years:
> she breaks up with me
> have good reason to believe I was literally being cucked
> give it a shot and try to guess her passwords again
> facebook: no dice
> twitter: nope
> gmail: guess it on the first try
She never used her email account, ignored most emails and just went straight to youtube / facebook etc, so she obviously didn't remember to change the password. It was the one she had on all her accounts around the time we met.

Impressed my friends and made a couple bucks doing some terminal """wizardry""" to install Cyanogenmod on their phones.

Started the "bandit" war game some other anon posted ITT.
>>
>>57896937
I think you are the most /g/ person I have ever seen.
>>
> school field day
> go to job center and get career advice etc
> they have "terminals" there
> basically PC hidden away in locked cabinet, screen and keyboard with trackball built into table
> shows their info website in full screen
> fuck around with keyboard shortcuts; none of the usual fullscreen shortcuts work (f11, escape etc)
> finally get it to exit fullscreen by repeatedly pressing shift so the sticky keys dialog came up
(not sure if that was it or if we just fucked around until some Error dialog box popped up and took us out of fullscreen)
> full access to system
> go on flash game site and play bomberman for 3 hours
>>
>>57893465
I tried to do this too but the computers were set to launch on single instead of double click. Rip flashdrive
>>
like 10 years ago I found this bluetooth """hack""" that you run from your phone but the other person has to accept the connection. You could control their phone remotely, make it ring, see all their communications etc. I actually had chicks coming to me asking to see the """hack""" not even kidding. Never used it to fuck with anybody though
>>
>>57884352
Got the password for level 18? I'm bored at work and the password list is at home.
>>
>>57884352
this is a pretty bullshit "game" because you're given absolutely no instructions for some of the solutions, you're given a list of commands and told to "lol research them"
>>
>>57867660
made a bunch of money mining bitcoins and lived off it to give me time to design an artificial super-intelligence
>>
File: 1478521737178.jpg (20KB, 403x360px) Image search: [Google]
1478521737178.jpg
20KB, 403x360px
>>57867660
I opened and closed the cd tray with powershell.
>>
Found my brothers Facebook password
>>
>>57897382
Is this bait?
>>
>>57890039
Yea you should try to talk to him.
>>
>>57897571
no, it's not. It's not a learning tool by any means, just an exercise for people already well in the know
>>
>>57897530
namefagging for this post = most /g/ thing ever.
>>
One time, a friend told me their facebook password, and I went on it, and put a status saying they were a poophead #hacks
>>
>>57897589
Wrong, it's presenting a problem, it's giving you resources to learn how to solve the problem, and hints that sometimes completely spoil the challenge.
Your complaint is about as valid as whining about homework not being a learning tool because all the teacher does is give you problems and book pages and tell you "lol read them".
>>
>>57897644
it's more like "this homework isn't a learning tool because I was just given a problem and a wikipedia page. Might as well just like the wiki page"
>>
Back when I was a kid, my power supply blew up. I found a replacement, but it was too big for the case (pre-ATX), so my dad helped me cut a hole in the top of the case, and we drilled a couple holes, made some metal brackets and bolted the part of the power supply that stuck out to the top of the case.

If only I had used a hack saw...
>>
File: 1481182272455.png (578KB, 1024x768px) Image search: [Google]
1481182272455.png
578KB, 1024x768px
>>
File: 1481182411114.jpg (165KB, 1212x574px) Image search: [Google]
1481182411114.jpg
165KB, 1212x574px
>>57897691
>>
File: 1481182335800.jpg (129KB, 1154x869px) Image search: [Google]
1481182335800.jpg
129KB, 1154x869px
>>57897691
>>57897696
>>
>>57897644
>http://overthewire.org/wargames/bandit/

i am total noob when it comes to this, i have sshed into this, found readme and it says use this readme as a pass for next level, login as bandit1, but what is the link to ssh into the next lvl?
>>
>>57897644
nah most Bandit exercises are bullshit. For example the rot13 just links you to Wikipedia where you copy and paste the script and you get your solution. That's not learning
>>
Made an arduino alarm that wipes my server and VPSs if it's triggered
>>
>>57897669
OK, read all Wikipedia articles on netsec and then do the challenges without looking at manpages or hints.
The point of Bandit is to pose challenges, and point you in the right direction to solve them.

>>57897715
Think about what you're doing. There is an SSH server, which is basically just a computer with lots of users. A level consists of logging in as banditX (where X is the current level), finding the password for banditX+1 and repeating this. You're always playing the game on the same server.

>>57897730
So you spoiled the solution for yourself and then blamed the game...? Why don't you google all the passwords while you're at it and then claim it's too easy? Plus that guy was complaining about it being too hard because he wasn't spoonfed the solution and had to read manpages instead.
You know what I did? I looked up how rot13 worked, then implemented my own script.
>>
>>57897784
when you're teaching somebody a new language you give them a few simple words and have them complete sentences. You don't give them a dictionary and tell them to go to town

bandit starts off with some braindead exercises like using ls to find a file and then dumps you in the deep end with having to write server configuration scripts after reading the linked 200 page manual. It's not a gradual transition
>>
>be 12/13
>older brother is some leet haxor
>uses my qt body to lure in pedos
>hacks them
this is pretty much it, he'd give me their facebook password and let me do what I want
>>
>>57897784
>Think about what you're doing.

So i log off, log in as the userN+1 and use the password from last lvl?

I tried that, didn't work, maybe i was typing the pass wrong, can't see what i'm typing in putty
>>
>>57897818
doesn't work tried again

Level0->1, typed bandit1 as username, and boJ9jbbUNNfktd78OOpsqOltutMc3MY1 as pass, access denied
>>
>work in computer repair shop in small town
>another repairman asks me if I've started stocking up on 2TB drives yet
>what why
>well do you not plan on cloning the attractive girls harddrives to look through later
>I'm not really interested if it was girls from my school maybe
>he comes up with a plan
>phishes a chad in my school, sneds a link for some "cool new software he found" to all the qt girls in my school
>it's malware
>they come into the tech shop for repairs
>get to clone HDDs of tons of girls in my HS
>>
>>57897815
But that's precisely what they did. You only need 1-2 new commands for each new level, so you're learning exploits one command at a time.
>and then dumps you in the deep end with having to write server configuration scripts after reading the linked 200 page manual. It's not a gradual transition
What level are you on? I'm getting bandit24 right now and this is the first time there's actual bash scripting involved (and the script only consists of 2 lines). Everything prior is either 1-2 lines in the terminal or maybe 6 lines in Python if you're like me and overcomplicate things.

>>57897818
>>57897847
Did you missspell it?
The site says not to spoil but since this is only the first level:
anon@localmachine:~$ ssh [email protected]

Password is bandit0.
bandit0@melinda:~$ cat readme
boJ9jbbUNNfktd78OOpsqOltutMc3MY1

Mark that with the mouse (careful to not include the line break) and copy with Ctrl+Shift+C.
Press Ctrl+D to log out. Now connect as bandit1 using the new password:
anon@localmachine:~$ ssh [email protected]

To paste the password, press Ctrl+Shift+V, then Enter.
>>
>>57897893
holy fuck, i did the exact same thing and it didn't work, i probably had some extra chars when i pasted

already found the pass for next lvl, that - is a total bitch,
>>
>>57897893
>You only need 1-2 new commands for each new level
some of them have 30-40 command line options, it's a gross oversimplification to say that it's just one command
>>
>>57897935
Yeah, the - pissed me off too. Did you use find? I'm curious if there's any way to escape it and not have the shell try to interpret it as the start of a parameter.

>>57897941
Maybe UNIX and similar systems aren't for you, anon. I mean, even ls has 50 or so possible options.
>>
>>57897382
It's not BS
Its a good introduction that touches on a lot of things when it comes to UNIX shell ssh and solving problems.
>>
>>57897957
>Did you use find

no, i just used ls and then cd ./-
>>
>>57897957
>Maybe UNIX and similar systems aren't for you, anon.
is this an argument? I've been using Linux for about 2.5 years now.
>>
>>57897980
What distro do you use, and have you used the shell before?
>>
>>57897990
I've used Arch, Ubuntu, Fedora and open suse. I've used the terminal extensively in each of them.
>>
in high school the school used 3rd party blacklists so if they wanted to block a site they had to make in inquiry with the blacklist provider
>made a games site
>got blocked within a month
>mirror it to another vps
>each time it gets blocked I just move it to another vps
>add a footer message that says the admins at x will never stop me, I have more money than sense and plenty of time to waste
>me and friends are widely known as the only tech literates in the school
>we all get called into the office
>they're throwing around words like police, criminal offense shit like that
>friend fucking cops out and tells them it was all me, gives them a fucking usb I gave him containing documentation on all the exploits I'd found for the school
>ohfuck
>since I have aspergers I pull the I didn't know it was socially wrong etc etc
>don't get in trouble just get banned from the computers at lunch times
>get the nickname the game man
>stories of my usb filled with exploits gets wildly exaggerated
>leads to people telling stories about how I didn't get in trouble cause the usb had nude photos of the head teacher
>still sometimes get inboxs on facebook from new years 7s asking if I'm the game man
the school now uses it's own blacklist and most of the exploits I had got patched by my final year I even hung around with the admins, they thought my games site and shit was funny
>>
>>57898004
And you didn't get confused by the STAGGERING amount of command options for ls? How much time did it take before you could finally list your directories for the first time? It must have taken WEEKS to read and understand that manpage, until you were finally able to fucking type ls into your terminal.
How about listing all files including hidden ones? How long did it take to figure out that you use ls -a for that? I mean, it's only a 2% chance that you get it right, with 50 possible parameters!
Stupid distro hopper.
>>
>>57898027
I don't know why you're popping an aneurism over my criticism of bandit so I'll just explain. I didn't learn the terminal from manpages, I learned it from well structured online guides on the topic. Guides that are orders of magnitude superior to bandit in every single way
>>
>>57898058
If those guides were so great at explaining how shit works then you should have no problem solving the Bandit challenges without manpages and hints.
>>
School network blocking websites by address name.

>cmd
>ping example.com
>get IP, paste in browser, get access to website

Babby's first productive use of the command line
>>
>>57893835
I'm dualbooting it on my laptop right now, I work in comp sec so I use it very frequently and why would I bother always live booting it from a USB? Not to mention I want to be able to save my reports locally and the persistent USB setup is a pain in the ass
>>
>>57898077
they didn't explain "how shit works", they explained the basics of running Linux and troubleshooting. They certainly didn't explain how to sift through a port scanner's output, and neither does bandit
>>
>>57898133
Learn to RTFM and stop your crying. Seriously, what do you want Bandit to do, take your hand and give you the solution? That's no fun.
>>
Sub7d a friend
>>
>>57889278
Talk to him.

You both were young and idiots.
Say you're sorry. If he gets angry just move on with your life, but maybe you will have a friend back.

And having a friend back is wonderful.
Value your friends, kids.
>>
a friend of mine found an exploit on a couple of file hosting sites. we used that exploit to generate premium download links. i was just gonna use it to download porn and stuff but he asked me if i could make a website that uses this exploit. i spent like a day to make the website. it was required to pay to register on our site but the prices was half of what those sites required. we made like more than 1k a month for a couple of years.
>>
>>57898166
I want it to gradually shift from topic to topic with an incremental increase in difficulty. I thought I was being pretty clear
>>
>>57898211
That's what it does. Level 1 introduces basic SSH, i.e. logging into a server.
Level 2 introduces ls, cat, find, du -- all commands you should know already, and which are easy enough to understand if you don't.
Level 3 introduces spaces in file names, so you learn about escape characters.
Level 4 introduces the concept of hidden files.
Level 5 introduces the difference between binary and human-readable files. You learn the clear command.
And so on and so forth. You're not expected to solve these within 2 minutes each. I was totally new to telnet and netcat etc so I had to watch a video or 2, read the manpages and that was it. Never are you bombarded with a staggering amount of information as you would have us believe.

I'm stuck on level 24 now.
> cron executes /usr/bin/cronjob_bandit24.sh as user bandit24 every minute
> script executes and then deletes all scripts in /var/spool/bandit24/
> write script, make it executable for all users, put it in /var/spool/bandit24/
#!/bin/bash
cat /etc/bandit_pass/bandit24 >> /tmp/(tempfolder)/bandit24_pass

> gets deleted on the next minute
> output file was not created
REEEEEEEE
I think it's because stdout gets redirected to /dev/null or something.
>>
Crafted packets with scapy until i got an uncommon error, then i didn't know what to do and gave up.
>>
>>57867660
http://hackerman.neocities.org
>>
Just used to wardrive and change all the open networks SSID to I SUCK COCKS.
>>
>>57898278
Check that your directory /tmp/(tempfolder), which you created as user bandit23, has write permissions for user bandit24.

I'm stuck at the last level 26 now.
> user bandit26 has login shell which is just a shell script which runs "more ~/text.txt; exit 0"
> can't pass HOME variable to redirect ~ into controlled directory which contains a symlink text.txt
> can't pass PATH variable to replace "more" with own program; none of the default PATH directories are exploitable
> sshd config only lets LANG LC_* WECHALL* through
>>
>>57867660
Nothing because I'm not a nigger
>>
>>57898804
I got past it. Doing 25 right now.
>>
>>57898804
Fuck me, 25 is taking so long. I wrote a Python script that simply iterates over 0 .. 9999, then uses subprocess to communicate with the port:
echo (bandit24 pass) (pin) | nc localhost 30002 | grep Wrong! | tail -c 7

If that's "again.", increment and repeat. Otherwise, print pin and reply, and break from loop.
But the communication with the pipe and the port is just so slooooow. With each iteration taking around 2 seconds I'd be sitting here for over 5 1/2 hours (worst case).
There must be an easier way. I mean I guess I could implement it entirely as a bash script but still...
>>
>>57899179
The server process is designed to tolerate as many wrong PINs as you want, as you can see when connecting manually.
I just used Python to create a file with all 10,000 possible inputs and piped that into Netcat. It disconnects automatically after the correct guess.
>>
>>57899236
Ah, that makes sense. I was feeding netcat single lines which means the connection was closed and reopened after every line which is probably what took so long. Cheers for the heads-up.
>>
File: 1477903525009.jpg (9KB, 296x299px) Image search: [Google]
1477903525009.jpg
9KB, 296x299px
>>57882020
>not
10.0.0.1
>>
>>57868387
Runescape was ghey...or should i say 9ay? Only oldfigs will get this
>>
Not really technical hacking but I am involved in urban exploration so i do a lot of social engineering and defeating of physical security measures. Ie scoping out locations, monitoring security guards' patrol habits and weak physical security links, avoiding security cameras and motion detectors, use topography & sight lines to avoid detection etc etc.
>>
ifconfig


and a networked tetris game I posted about on /jp/
>>
>>57887270
Give it back, Tyrone
>>
>>57868247
The absolute madman
>>
>>57900176
1. this was 13 years ago
2. it was in a building that was almost empty and due for renovation, it was probably going to be thrown out
>>
>>57884018
FIREWALL MAINFRAME
HACK
10101010110101
HACKERS ON STEROIDS
>>
>>57867660
I haxored some big sites. Defaced some, owned others. To have very fast servers can be utile.
>>
Asked someone I hated to install apache (through a proxy, mad ea fake online account and became friends)

Convinced him he could run a chat client with it and could talk easily with loads of people and added in some technobabble and linke dhim to ppages which showed how to deploy your own apache server chat client.

Later asked him to replace the index.html file and then asked him to add the entire fucking drive as accessible from the website and wait for ten minutes and asked him to give me his password.

Remote deleted everything, said I was sorry and convinceddd him to run DBAN.
>>
>>57868247

#include <stdio.h>

int main(){
int faggot = 5;
int nigger = 7;
faggot ^= nigger;
nigger ^= faggot;
faggot ^= nigger;
printf("%i\n",nigger);
printf("%i\n",faggot);
return 0;
}
>>
>>57887241
>hub, not switch
>16 ports
Useless redundant traffic everywhere.
>>
>>57901637
yep, collisions everywhere once you start moving large things through it
but hey, i could connect 16 machines together, i didn't have any hubs/switches before, so before that i was only using crossover cables
for playing games and sharing dialup internet, it did the job
>>
>>57884254
#include <stdio.h>

int main(){
int faggot = 20;
int nigger = 10;
faggot -=nigger;
nigger +=faggot;
faggot -=nigger;
faggot = -faggot;
printf("%i\n",nigger);
printf("%i\n",faggot);
return 0;
}


>>
>>57867660
I hacked my neighbors wifi when I was 19 with aircrack. He had wep key so it was pretty easy. I had control to his routers firmware so I could've blocked him out or changed the password but that's like stupidly useless thing to do. I could've dont moer script kiddie shit and probably hacked his devices with metasploit but I realized it wasn't necessary.

Now I'm actually programming and it feels much more like hacking. You're building stuff out of nothing not just running scripts that you don't understand - hrmm pen testers.
>>
>>57901839
Now it's even easier if you find some with WPS
>mfw the pin of one of the major ISPs is set to the really easy to remember default in 95%of their routers
>>
>>57867697
best post
>>
Broke through Myspaces hilarious filters god knows how many times.
Used it to use scripts and advanced styles on profile.
Used it to kill forum and group forum threads, replace their backgrounds, play videos, iframe other threads and so on.

I remember they tried to filter that by replacing filtered commands with ".."
However, browsers back then ignored non-characters and whitespace.
So you could do <ifr<iframe>ame src... etc.
It'd filter out the first one, but not the second one it now created.
Took them a while to figure that one out.
Browsers don't do that now though.


School, found the sysadmin program for Novell on a network share totally by accident by browsing through the start menu folders (right clicking and opening in Explorer to get the full paths)
Full access to the whole of the local COUNCIL network.
What the fuck were they thinking?
Only used it to install some programs, chat, game servers.
Others found it and did destructive stuff, like turning off computers remotely, DDoSing the email server by enabling Email Rules that let you reply automatically, so they enabled that over all accounts and sent one email and took it down in minutes when the craptastrophe happened. (the whole councils network, whic covered several nearby towns)
They were banned from the computers. They had to use non-networked computers and floppies. rekt
I DID tell them to at least delete the logs. But they never listened.
>>
>be me
>high school 2003 or so
>manage to access the router that gave internet to library
>redirect all websites to a HTML page that consisted of nothing but dicks
w3 h4x0rz n0\/\/ |30I5
>>
>>57904521
You reminded me of the library at school.
It had a limit on how long you could use the computers.
60 minutes.

They blocked ctrl+alt+delete.
But they never blocked ctrl+shift+esc.
Moved a window over the timer to induce window redraws to find out what process it was by looking at CPU use. Ended that bitch, ended that bitch hard.
Thread posts: 289
Thread images: 30


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.