Page 3 of 5 FirstFirst 12345 LastLast
Results 21 to 30 of 41

Thread: HDBits Bitmetv exploit

  1. #21
    iNSOMNiA's Avatar 1/G BT Rep: +16BT Rep +16BT Rep +16BT Rep +16
    Join Date
    Oct 2006
    Posts
    583
    Quote Originally Posted by crossfade View Post

    no they ip-banned valerio (xrevx is no admin, he's not even staff)
    Quote Originally Posted by seppypom View Post
    he may have been banned, but two days ago he was an admin
    Ah thanks seppy, i knew i was right...as always
    next time double check your "infos" crossfade

  2. BitTorrent   -   #22
    Quote Originally Posted by crossfade View Post
    Quote Originally Posted by Jaits View Post
    i m sure it is true...

    when i hacked them a while back, i read their staff forums, and they were fighting against that other hd tracker (bit-hdtv)... and they were downloading movies from there to post them on their own tracker and also planning on how to take them out... back then bit-hdtv had security vunreabilities so they didnt have to use their users passwords (and i dont recall seeing any table that logged them in clear text).. they just hacked them and logged in as them... its not hard though to modify the login script to store the plaintext password as well...
    omg are they that easy to hack or what? you'd think private BT sites care about security...

    how ?? RFI/LFI ,SQL INJECTION or XSS??

  3. BitTorrent   -   #23
    DISABLED PRIVS BT Rep: +8BT Rep +8
    Join Date
    Jan 2007
    Posts
    350
    a bitmetv admin presented the following two lines of what is presumably an IRC log as "proof."

    10.10.29 [user] THEN WHY THE F**K WAS MY PASSKEY BEING USED ON UR F**KING RSS FEED
    10.10.29 » (Valerio) why do you care? it would've been unnoticible if i had moved the thing before i changed it :S

  4. BitTorrent   -   #24
    crossfade's Avatar Poster BT Rep: +7BT Rep +7
    Join Date
    Nov 2006
    Posts
    293
    Quote Originally Posted by iNSOMNiA View Post
    Quote Originally Posted by seppypom View Post
    he may have been banned, but two days ago he was an admin
    Ah thanks seppy, i knew i was right...as always
    next time double check your "infos" crossfade
    where am i wrong?
    valerio, who always was hdbits admin, was banned at bmtv
    xrevx is just a hdbits vip


  5. BitTorrent   -   #25
    I was a member of that site but my account is probably already disabled due to inactivity.

  6. BitTorrent   -   #26
    Texan's Avatar I know you !!
    Join Date
    Feb 2007
    Location
    127.0.0.1
    Posts
    27
    So what happened finally ?
    Dang !!

  7. BitTorrent   -   #27
    Ne'tu's Avatar Member BT Rep: +12BT Rep +12BT Rep +12
    Join Date
    Aug 2006
    Posts
    543
    Really nothing interesting.

  8. BitTorrent   -   #28
    fit4trading's Avatar Torrent Kingpin BT Rep: +25BT Rep +25BT Rep +25BT Rep +25BT Rep +25
    Join Date
    Feb 2007
    Location
    Look Behind..
    Posts
    142
    Ahh the pathetic mods... Running here and there all day trying to be a little more elite than others and all they end up with is getting disabled (or fighting bitterly)... What a pathetic life... Its sad to see that the private tracker community has such bitter feelings towards each other. The average user still enjoys...

  9. BitTorrent   -   #29
    kalpesh's Avatar Poster BT Rep: +3
    Join Date
    Sep 2006
    Posts
    123
    By Hdbits
    In response to the random claim that we know all your passwords and can/will use them on bitmetv if you have the same password there, I would like to point out that the only trace of your password stored in the database is your passhash.
    This is a 128bit md5 hash of your password and a 20 character long random string.
    For those of you who that makes no sense to, it means all that is stored is something like 1055d3e698d289f2af8663725127bd4b....which cannot be reversed back into your password.

  10. BitTorrent   -   #30
    Quote Originally Posted by kalpesh View Post
    By Hdbits
    For those of you who that makes no sense to, it means all that is stored is something like 1055d3e698d289f2af8663725127bd4b....which cannot be reversed back into your password.
    That's not exactly true. they can be reversed.

Page 3 of 5 FirstFirst 12345 LastLast

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •