Re: [ilugd] php database project

2008-08-12 Thread Ravi Kumar
On Mon, Aug 11, 2008 at 6:49 PM, abhishek jain
[EMAIL PROTECTED]wrote:

 On Mon, Aug 11, 2008 at 6:25 PM, Varun Mittal [EMAIL PROTECTED]
 wrote:

 
  If you are able to hack the server kindly do not delete any thing as I
 have
  really worked hard on it.
 
 Why don't you take a backup of your works.

 --
 Thanks and kind Regards,
 Abhishek jain
 ___
 ilugd mailinglist -- ilugd@lists.linux-delhi.org
 http://frodo.hserus.net/mailman/listinfo/ilugd
 Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi
 http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Open the source code, people will let you know where you did something wrong
or insecure. Else hacking the application would involve much labour, like
watching cookie, session, and getting acquinted with the application use
case, and then guessing the flow.
Then the people will start hit and try to get something, which is mostly
failure..

So what do you think, will anyone go for blind fishing.

-- 
-=Ravi=-
___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] php database project

2008-08-12 Thread Raj Shekhar
in infinite wisdom Varun Mittal spoke thus  On 08/11/2008 06:25 PM:
 I am varun mittal developing database project newera.homeip.net
 i need someone's help who can hack into my server and list all the
 shortcomings.

Please check out ratproxy, which describes itself as

A semi-automated, largely passive web application security audit tool, 
optimized for an accurate and sensitive detection, and automatic 
annotation, of potential problems and security-relevant design patterns 
based on the observation of existing, user-initiated traffic in complex 
web 2.0 environments.



http://code.google.com/p/ratproxy/

PS: I doubt anyone here would have the time to hack into your system. 
If I did it, I would definitely not tell you about it.  Think about it 
and post questions with some more care next time.

Cheers!
-- 
raj shekhar
facts: http://rajshekhar.net
opinions: http://rajshekhar.net/blog
I've never made anyone's life easier and you know it!

___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


[ilugd] php database project

2008-08-11 Thread Varun Mittal
I am varun mittal developing database project newera.homeip.net
i need someone's help who can hack into my server and list all the
shortcomings.

I hereby assure you all that i shall release the full source code under
gpl as soon as i complete the first version of the source code.

If you are able to hack the server kindly do not delete any thing as I have
really worked hard on it.

Thanking you
Varun Mittal
___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] php database project

2008-08-11 Thread abhishek jain
On Mon, Aug 11, 2008 at 6:25 PM, Varun Mittal [EMAIL PROTECTED]wrote:


 If you are able to hack the server kindly do not delete any thing as I have
 really worked hard on it.

Why don't you take a backup of your works.

-- 
Thanks and kind Regards,
Abhishek jain
___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] Php database project

2008-07-19 Thread Puneet Lakhina
On Sat, Jul 19, 2008 at 04:33, Varun Mittal [EMAIL PROTECTED] wrote:

 I have made a framework for modules based php database server
 primarily for schools. The test server is running on my pc

 newera.homeip.net (domain name of test server)

 login:1,
 password:newera,
 role:root


The Personal Information link leads to an error page.
http://newera.homeip.net/?q=panel/info


 feel free to do anything even hacking
 Please give it a try and let me know

 --
 Varun Mittal
 [EMAIL PROTECTED]
 ___
 ilugd mailinglist -- ilugd@lists.linux-delhi.org
 http://frodo.hserus.net/mailman/listinfo/ilugd
 Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi
 http://www.mail-archive.com/ilugd@lists.linux-delhi.org/




-- 
Puneet
http://sahyog.blogspot.com/
Latest Post: javac -g
___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] Php database project

2008-07-19 Thread tuxdna
it seems to be a Drupal based website?


On 7/19/08, Puneet Lakhina [EMAIL PROTECTED] wrote:
 On Sat, Jul 19, 2008 at 04:33, Varun Mittal [EMAIL PROTECTED] wrote:

 I have made a framework for modules based php database server
 primarily for schools. The test server is running on my pc

 newera.homeip.net (domain name of test server)

 login:1,
 password:newera,
 role:root


 The Personal Information link leads to an error page.
 http://newera.homeip.net/?q=panel/info


 feel free to do anything even hacking
 Please give it a try and let me know

 --
 Varun Mittal
 [EMAIL PROTECTED]
 ___
 ilugd mailinglist -- ilugd@lists.linux-delhi.org
 http://frodo.hserus.net/mailman/listinfo/ilugd
 Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi
 http://www.mail-archive.com/ilugd@lists.linux-delhi.org/




 --
 Puneet
 http://sahyog.blogspot.com/
 Latest Post: javac -g
 ___
 ilugd mailinglist -- ilugd@lists.linux-delhi.org
 http://frodo.hserus.net/mailman/listinfo/ilugd
 Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi
 http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] Php database project

2008-07-19 Thread vivek v
On Sat, Jul 19, 2008 at 4:33 AM, Varun Mittal [EMAIL PROTECTED] wrote:
 I have made a framework for modules based php database server
 primarily for schools. The test server is running on my pc

 newera.homeip.net (domain name of test server)

 login:1,
 password:newera,
 role:root

 feel free to do anything even hacking
 Please give it a try and let me know
Dear Varun,
Where is the Source ? and if not FLOSS, why are you getting it tested
in this forum ?
regards
Vivek

___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


[ilugd] Php database project

2008-07-18 Thread Varun Mittal
I have made a framework for modules based php database server
primarily for schools. The test server is running on my pc

newera.homeip.net (domain name of test server)

login:1,
password:newera,
role:root

feel free to do anything even hacking
Please give it a try and let me know

-- 
Varun Mittal
[EMAIL PROTECTED]
___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] Php database project

2008-07-18 Thread Arun Khan
On Saturday 19 Jul 2008, Varun Mittal wrote:

The correct login/password combo
 login:1,
1
 password:newera,
newera
 role:root

-- 
Arun Khan

___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/