Login Register






The stories and information posted here are artistic works of fiction and falsehood. Only a fool would take anything posted here as fact.
Poll: White Hat or Black Hat SQLi?
You do not have permission to vote in this poll.
Black Hat
40.00%
2 40.00%
White Hat
60.00%
3 60.00%
Total 5 vote(s) 100%
* You voted for this item. [Show Results]

Thread Rating:
  • 0 Vote(s) - 0 Average


SQLi White-Hat vs Black-Hat filter_list
Author
Message
SQLi White-Hat vs Black-Hat #1
I found 4 vulnerabilities on 4 different sites, sent the owners emails and waiting for their reply Biggrin

Anyone else here do white-hat SQLi?

Why or why not?

Personally, I do white hat because its so much better, not only do I have a chance of getting paid, but I won't get arrested, so in my honest opinion, white hat SQLi is much better Smile
Wavy baby

Reply

RE: SQLi White-Hat vs Black-Hat #2
I usally perform whitehat activites, But i mostly perform blackhat.Smile

Reply

SQLi White-Hat vs Black-Hat #3
(12-24-2012, 08:57 PM)blazer15 Wrote: I usally perform whitehat activites, But i mostly perform blackhat.Smile

That makes no sense what so ever.
#MakeSinisterlySexyAgain

Reply

RE: SQLi White-Hat vs Black-Hat #4
Strictly speaking, the owners of a site can still take you to court if they want, even if you didn't deface the page.

Or... use it for more illicit activities.
[Image: jWSyE88.png]

Reply

RE: SQLi White-Hat vs Black-Hat #5
(12-24-2012, 11:56 PM)3SidedSquare Wrote: Strictly speaking, the owners of a site can still take you to court if they want, even if you didn't deface the page.

Or... use it for more illicit activities.

That's very rare, as I can't see them taking you to court if you're helping them out.
[Image: fSEZXPs.png]

Reply

RE: SQLi White-Hat vs Black-Hat #6
To be honest, I've reported a lot of exploits to sites and the next day no reply I try the exploit and BAM its patched. I don't even try anymore.

Reply

RE: SQLi White-Hat vs Black-Hat #7
The point of being White-Hat isn't because you look for money or something in return... That's really not the White-Hat idea. But, don't expect to get much out of it, unless it was a vuln on Google, Yahoo, or of the sort.

Reply

RE: SQLi White-Hat vs Black-Hat #8
(12-25-2012, 05:33 AM)KyleFYI Wrote: To be honest, I've reported a lot of exploits to sites and the next day no reply I try the exploit and BAM its patched. I don't even try anymore.

That sucks, if that was me I'd wait untill it's vulnerable again and then fuck up all their shit and leave a friendly message.

OT: You shouldn't message the website owner because the same can happen to you what happened to Kyle and then you're fucked. Well not fucked but they will probaly patch the vulnerability without letting you know.
[Image: bAMEI93.jpg]


Jabber: charon@exploit.im

Reply

RE: SQLi White-Hat vs Black-Hat #9
(12-26-2012, 05:11 PM)INST1NCT Wrote:
(12-25-2012, 05:33 AM)KyleFYI Wrote: To be honest, I've reported a lot of exploits to sites and the next day no reply I try the exploit and BAM its patched. I don't even try anymore.

That sucks, if that was me I'd wait untill it's vulnerable again and then fuck up all their shit and leave a friendly message.

OT: You shouldn't message the website owner because the same can happen to you what happened to Kyle and then you're fucked. Well not fucked but they will probaly patch the vulnerability without letting you know.
Eh, honestly I don't really care that much for the money, its just like an extra thing I can get. I only report the exploits to help both the website and myself.
Wavy baby

Reply

RE: SQLi White-Hat vs Black-Hat #10
Personally, I like to warn the site owners about the problem. If in a week they don't fix the problem I will exploit it and do as much damage as possible.

Reply







Users browsing this thread: 1 Guest(s)