Page 3 of 4 FirstFirst 1234 LastLast
Results 31 to 45 of 54
http://idgs.in/126265
  1. #31
    ditatompel's Avatar
    Join Date
    Apr 2008
    Location
    Semarang, Jogja, Surabaya... Sak karepku....
    Posts
    308
    Points
    402.20
    Thanks: 0 / 2 / 2

    Default

    Quote Originally Posted by Kurt.D.Cobain View Post
    @bloodiez
    ...kang mau nanya nih, situs Trans TV kan kena hack, itu yang bocor kira2 apanya yang kang? ...

    http://www.transtv.co.id/200706/sinopsispers.asp
    astaga... itu dari bug xss ya?
    Quote Originally Posted by ditatompel View Post
    lets play truth and dare, or just play dare cause no one tells the truth anymore

  2. Hot Ad
  3. #32
    ditatompel's Avatar
    Join Date
    Apr 2008
    Location
    Semarang, Jogja, Surabaya... Sak karepku....
    Posts
    308
    Points
    402.20
    Thanks: 0 / 2 / 2

    Default

    @bloodiez
    om klo nangkal xss gitu gimana si??
    kan ni gw pake lempar location nya ke pesan 'err'
    trus kalo semisal gw kasih location ke link
    jadi
    header(location: link.php)
    jd kan yang form diisi salah bakalan di lempar ke link.php
    apa klo gini masih bisa kena xss???

    ato ada cara lain ya om??
    Quote Originally Posted by ditatompel View Post
    lets play truth and dare, or just play dare cause no one tells the truth anymore

  4. #33

    Join Date
    Oct 2006
    Posts
    21
    Points
    32.50
    Thanks: 0 / 0 / 0

    Default

    www.windyeveryday.co.cc

    blog tentang cari duit di internet, ama dota update, mampir ya ^^

  5. #34

    Join Date
    May 2008
    Location
    /proc/sys/kernel/randomize_va_space
    Posts
    875
    Points
    1,326.90
    Thanks: 0 / 13 / 8

    Default

    Quote Originally Posted by ditatompel View Post
    @bloodiez
    om klo nangkal xss gitu gimana si??
    kan ni gw pake lempar location nya ke pesan 'err'
    trus kalo semisal gw kasih location ke link
    jadi
    header(location: link.php)
    jd kan yang form diisi salah bakalan di lempar ke link.php
    apa klo gini masih bisa kena xss???

    ato ada cara lain ya om??
    jgn dilempar tapi difilter, cara filterny bisa variasi contoh klo km mau filter input user dibagian search
    Code:
    $query = $_POST["searchQuery"];
    $query_tampil = htmlentities($query);
    
    echo $query_tampil;
    itu cm salah satu cara,. trus wat yg sqli salah satunya filter karakter "bahaya" yg bisa jadi input:

    Code:
    function cleanQuery($string)
    {
      if(get_magic_quotes_gpc())  // menghindari duplikasi backslash
      {
        $string = stripslashes($string);
      }
      if (phpversion() >= '4.3.0')
      {
        $string = mysql_real_escape_string($string);
      }
      else
      {
        $string = mysql_escape_string($string);
      }
      return $string;
    }
    
    // jika anda menggunakan form data, bisa gunakan fungsi seperti ini:
    
    if (isset($_POST['itemID'])) $itemID = cleanQuery($_POST['itemID']);
    
    // anda juga bisa memfiltrasi data sebagai bagian dari query:
    
    
    SELECT * FROM items WHERE itemID = '". cleanQuery($itemID)." ' "
    Quote Originally Posted by Kurt.D.Cobain View Post
    @bloodiez
    ...kang mau nanya nih, situs Trans TV kan kena hack, itu yang bocor kira2 apanya yang kang? ...

    http://www.transtv.co.id/200706/sinopsispers.asp
    yup itu kena xss ada 2 path yg kena klo ane cek, mngkn bs lebih,. lom crawling lagi

    http://www.transtv.co.id/200706/prog...B%3C/ScRiPt%3E

    satu lagi di http://www.transtv.co.id/200706/sino...1=OK%2C%20Join...

    2 file programs.asp ma sinopsispers utk variabel day_opt ma namaperusahaan lom difilter,.
    Last edited by bl00d13z; 28-08-09 at 04:48.

  6. #35
    ditatompel's Avatar
    Join Date
    Apr 2008
    Location
    Semarang, Jogja, Surabaya... Sak karepku....
    Posts
    308
    Points
    402.20
    Thanks: 0 / 2 / 2

    Default

    Quote Originally Posted by bl00d13z View Post
    jgn dilempar tapi difilter, cara filterny bisa variasi contoh klo km mau filter input user dibagian search
    Code:
    $query = $_POST["searchQuery"];
    $query_tampil = htmlentities($query);
    
    echo $query_tampil;
    itu cm salah satu cara,. trus wat yg sqli salah satunya filter karakter "bahaya" yg bisa jadi input:

    Code:
    function cleanQuery($string)
    {
      if(get_magic_quotes_gpc())  // menghindari duplikasi backslash
      {
        $string = stripslashes($string);
      }
      if (phpversion() >= '4.3.0')
      {
        $string = mysql_real_escape_string($string);
      }
      else
      {
        $string = mysql_escape_string($string);
      }
      return $string;
    }
    
    // jika anda menggunakan form data, bisa gunakan fungsi seperti ini:
    
    if (isset($_POST['itemID'])) $itemID = cleanQuery($_POST['itemID']);
    
    // anda juga bisa memfiltrasi data sebagai bagian dari query:
    
    
    SELECT * FROM items WHERE itemID = '". cleanQuery($itemID)." ' "


    yup itu kena xss ada 2 path yg kena klo ane cek, mngkn bs lebih,. lom crawling lagi

    http://www.transtv.co.id/200706/prog...B%3C/ScRiPt%3E

    satu lagi di http://www.transtv.co.id/200706/sino...1=OK%2C%20Join...

    2 file programs.asp ma sinopsispers utk variabel day_opt ma namaperusahaan lom difilter,.
    hmm... coba saya pelajari dulu...
    itu kalo misal dikasi pembatasan max char sekalian ngaruh ga??

    btw, om momod... kynya ini thread buat share website... tp skrg gr2 gw jadi masalah scurity..
    perlu bikin thread baru ga om momod?? masih mau nanya2 banyak nih...
    Quote Originally Posted by ditatompel View Post
    lets play truth and dare, or just play dare cause no one tells the truth anymore

  7. #36

    Join Date
    Dec 2008
    Location
    jak-ut
    Posts
    177
    Points
    226.31
    Thanks: 4 / 3 / 2

    Default

    nih
    devuzone.co.cc/forum
    masih under construction
    about rf pb cs

  8. #37

    Join Date
    May 2008
    Location
    /proc/sys/kernel/randomize_va_space
    Posts
    875
    Points
    1,326.90
    Thanks: 0 / 13 / 8

    Default

    Quote Originally Posted by ditatompel View Post
    hmm... coba saya pelajari dulu...
    itu kalo misal dikasi pembatasan max char sekalian ngaruh ga??

    btw, om momod... kynya ini thread buat share website... tp skrg gr2 gw jadi masalah scurity..
    perlu bikin thread baru ga om momod?? masih mau nanya2 banyak nih...
    gpp limitin ja charny skalian,. kreatif2 km ja asal tu char "nakal" ga diproses
    bikin aj klo emg mau,. klo disini bahasnya dah OOT mnrut gw

  9. #38
    Kurt.D.Cobain's Avatar
    Join Date
    Apr 2008
    Location
    =
    Posts
    1,974
    Points
    4,012.20
    Thanks: 0 / 20 / 17

    Default

    iya bikin aja thread baru .... ntar ngobrol terusin disana...
    For Fun
    www.R-L.me

  10. #39
    AmZiKa's Avatar
    Join Date
    Aug 2008
    Location
    Ngalam
    Posts
    432
    Points
    525.80
    Thanks: 0 / 0 / 0

    Default

    http://amzika.blogspot.com/

    sering" mampir y

  11. #40
    rulez's Avatar
    Join Date
    Feb 2008
    Location
    Bandung
    Posts
    2,011
    Points
    2,416.90
    Thanks: 1 / 0 / 0

  12. #41
    apel12's Avatar
    Join Date
    May 2009
    Location
    Medan, LA
    Posts
    450
    Points
    594.80
    Thanks: 1 / 5 / 5

    Default

    Kunjungi yah all

    baru buat nih ...^^ !!!

    http://www.waroengcc.co.nr/

    Waroengcc ( Waroeng Chit Chat ) / yang lebih disingkatnya WCC...
    http://i55.servimg.com/u/f55/14/65/55/28/logo10.png

  13. #42

    Join Date
    Sep 2008
    Location
    jakarta
    Posts
    371
    Points
    232.30
    Thanks: 0 / 0 / 0

    Default


  14. #43

    Join Date
    Nov 2008
    Posts
    56
    Points
    62.80
    Thanks: 0 / 0 / 0

    Default

    ikutan ya om
    http://kag3.co.cc
    websitenya buat share games,software khususnya private server (servernya dan privatenya)

    minta repiunya yah

  15. #44
    Stee~'s Avatar
    Join Date
    Sep 2009
    Posts
    211
    Points
    254.10
    Thanks: 2 / 1 / 1

    Default

    Ane Jg Ikut ah UP UP UP
    http://www.linkplusdot.com
    Tapi ane punya masalah, tiap kali gw mo upload foto / gambar itu di bagian atas2 ada kek warning mysql query apa gitu.... Ane pake wordpress

  16. #45

    Join Date
    Oct 2007
    Posts
    69
    Points
    93.70
    Thanks: 1 / 0 / 0
    Spoiler untuk Tak semua daun berwarna hijau. :

Page 3 of 4 FirstFirst 1234 LastLast

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •