Sei sulla pagina 1di 3

hacking xxx websites

hacking xxx websites


dude ! if you posess the html and java knowledge then u can even acess password
protected websites. follow the above : -

* open the website u want to hack. provide wrong username-password.


(e.g : username - me and password - ' or 1=1 --)
an error occured saying wrong username-password. now be prepared
ur work starts from here...

* right click anywhere on that page =>> go to view source.

* there u can see the html codings with javascripts.

* there u find somewhat like this..<form ...... action=..login....>

* before this login information<action=__login> copy the url


of the site in which you are.(e.g :
<form..........action=http://www.orkut.com/login.......>

* then delete the java script from the above that validates ur
informaiton in the server.(do this very carefully, ur success to
hack the site depends upon this i.e how efficiently u delete the
javascripts that validate ur account information)

* then look for <input name=password type=password> => replace


there <type=text> instead of <type=password>. see there if
maxlength of password is less than 11 then increase it to 11
(e.g : if <maxlength=10> then write <maxlength=11>

* just go to file => save as and save it any where within


the hardisk with ext.html(e.g :c:\abhi.htm)

* close ur webpage and go to the webpage u save in your


harddisk(e.g : c:\abhi.htm) open it.

* u see that some changes in current page as compared to original


one. don't worry.

* provide any username[e.g:hacker] and password[e.g:' or 1=1 --]

congrats!u hav cracked the above website and entered into the
account of ist user saved in the server's database.

the above trick didn't work on the websites using latest


technique to protect there servers.

? ? ? enjoy ? ? ? ? ?
rofl dude. "the above trick didn't work on the websites using latest
technique to protect there servers." . hahaha. thats like javascript validation
bypass and sql injection dude. here are simpler ways:
1. javascript injection: to modify the username and password: javascript:
document.forms[0].name.value="";
(btw, maxlength tag doesnt affect this)
2. for javascript validation, after the javascript injection, disable javascript
in ur browser.
3. click submit.

the chances of this happening: rare, unless u visit a super new site, which is
damm small scale. sql injections are like soo... easy to prevent. just
addslashes() or mysql_real_escape_string() in php.

but anyways, good post. should be a nice little trick which might work in some
cases.

Potrebbero piacerti anche