[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-disclosure] Lulzsec as irc warrior 2.0?



<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
  <head>
    <meta content="text/html; charset=ISO-8859-1"
      http-equiv="Content-Type">
  </head>
  <body bgcolor="#ffffff" text="#000000">
    Ciao Fabio ;-)<br>
    <br>
    I understand your point of view, and for sure they are using 80% of
    the time<br>
    SQLi as the main attack vector to deface website/stealing
    data/whatever, but not always.<br>
    I'm quite sure they used some 0-days when they completely
    compromised some of their<br>
    targets that where not running webservers at all.<br>
    <br>
    Some of them would certainly be script-kiddies that uses sqlmap,
    while being lucky enough<br>
    to find lame error-based SQLi, others for sure are skilled.<br>
    <br>
    It's also not only a game when you steal hundred of thousand of
    data: you can always<br>
    resell it to some agencies/black-market that are hungry of that, as
    you do with CCs.<br>
    <br>
    Ciao<br>
    Michele Orru'<br>
    /antisnatchor<br>
    <blockquote style="border: 0px none;"
      cite="mid:4DFDF5A8.4090100@xxxxxxxxxxxxxxx" type="cite">
      <div style="margin-left: 40px;">
        <hr style="border-width: 1px 0pt 0pt; border-style: dotted none
          none; border-color: rgb(181, 181, 181) -moz-use-text-color
          -moz-use-text-color; height: 1px; margin: 0pt;"
          class="__pbConvHr"><br>
      </div>
      <table style="padding-top: 5px;" class="__pbConvTable">
        <tbody>
          <tr>
            <td valign="top"><img
                src="cid:part1.00040002.08070904@gmail.com"
                photoaddress="lists@xxxxxxxxxxxxxxx" photoname="Fabio
                Pietrosanti (naif)" name="compose-unknown-contact.jpg"
                height="29px" width="29px"></td>
            <td style="padding-left: 5px;" valign="top"><a
                moz-do-not-send="true"
                href="mailto:lists@xxxxxxxxxxxxxxx"; style="color: rgb(0,
                136, 204) ! important; text-decoration: none !
                important;">Fabio Pietrosanti (naif)</a><br>
              <font color="#888888">June 19, 2011 3:12 PM</font></td>
          </tr>
        </tbody>
      </table>
      <div style="color: rgb(136, 136, 136); margin-left: 40px;"
        __pbrmquotes="true" class="__pbConvBody"><br>
        <pre wrap="">Nothing personal, that's exactly what i wrote previously:
</pre>
        <blockquote type="cite">
          <blockquote type="cite">
            <pre wrap="">If they're IRC warriors within some time they will 
just disappear.
Just think, the leaders before or later will start finding the
game boring, will get a girlfriend, will start going out with friends
rather than being twitter/chat addicted.
</pre>
          </blockquote>
        </blockquote>
        <pre wrap=""><!---->
I also experienced hacking and internet addiction in past, i mean when
you're young, you want to feel adrenaline pumping up and get it by doing
14 hours hacking per day!

But before or later that game will became or too dangerous or too boring
and you'll probably just park the boat.

In the meantime, have fun!
But always remember that every game has an end and it's up to you to
decide how your game will end!

Cheers

-naif

On 6/19/11 1:40 PM, <a class="moz-txt-link-abbreviated" 
href="mailto:lulzb0at@xxxxxxxxxxxx";>lulzb0at@xxxxxxxxxxxx</a> wrote:
</pre>
        <blockquote type="cite">
          <pre wrap="">ugay its all for lulz

</pre>
        </blockquote>
        <pre wrap=""><!---->
_______________________________________________
Full-Disclosure - We believe in it.
Charter: <a class="moz-txt-link-freetext" 
href="http://lists.grok.org.uk/full-disclosure-charter.html";>http://lists.grok.org.uk/full-disclosure-charter.html</a>
Hosted and sponsored by Secunia - <a class="moz-txt-link-freetext" 
href="http://secunia.com/";>http://secunia.com/</a>
</pre>
        <hr style="border-width: 1px 0pt 0pt; border-style: dotted none
          none; border-color: rgb(181, 181, 181) -moz-use-text-color
          -moz-use-text-color; height: 1px; margin: 15px 0pt 0pt;"
          class="__pbConvHr"><br>
      </div>
      <table style="padding-top: 5px;" class="__pbConvTable">
        <tbody>
          <tr>
            <td valign="top"><img
                src="cid:part1.00040002.08070904@gmail.com"
                photoaddress="lulzb0at@xxxxxxxxxxxx" photoname=""
                name="compose-unknown-contact.jpg" height="29px"
                width="29px"></td>
            <td style="padding-left: 5px;" valign="top"><a
                moz-do-not-send="true"
                href="mailto:lulzb0at@xxxxxxxxxxxx"; style="color: rgb(0,
                136, 204) ! important; text-decoration: none !
                important;">lulzb0at@xxxxxxxxxxxx</a><br>
              <font color="#888888">June 19, 2011 1:40 PM</font></td>
          </tr>
        </tbody>
      </table>
      <div style="color: rgb(136, 136, 136); margin-left: 40px;"
        __pbrmquotes="true" class="__pbConvBody"><br>
        <div>-----BEGIN PGP SIGNED MESSAGE-----<br>
          Hash: SHA1<br>
          <br>
          ugay its all for lulz<br>
          <br>
          On Sun, 19 Jun 2011 10:33:47 +0000 "Fabio Pietrosanti (naif)"</div>
        <div><!---->-----BEGIN PGP SIGNATURE-----<br>
          Charset: UTF8<br>
          Note: This signature can be verified at
          <a class="moz-txt-link-freetext" 
href="https://www.hushtools.com/verify";>https://www.hushtools.com/verify</a><br>
          Version: Hush 3.0<br>
          <br>
wsBcBAEBAgAGBQJN/eA4AAoJEE4sWZ2chp6RnZMH/jiMa7oqnSNWYItjyFylut3IA2+u<br>
o+L8LwTkxulyCbydn6Vn7B8K7ra5xqN/NNACsDlCmsHnpZYMJQiHKAt0riyxYMHnsA/f<br>
IfBvXdF0CKp5RzJH71oa5R8yY08NvvrU0MykNrv6oDgXR4rDTm1O+wvTlT+B2ZS8Achc<br>
VpDeNLJ8lGjJ5OmZVzSo5qw9n01jZExB2ciXYSBnbxXefjgLfxBYfueLIphU4YQE4OCU<br>
wQi0xwVPNB+lWbCi5bID1zgFZ5rSciif/K/76q/AVO/v0VATNAEMCsIeiVgyNcr4PgkX<br>
          CNv+gv122pjrgV2yjtboL8Lu15J+dhWvUFZ4JQ6GRWM=<br>
          =ZPzX<br>
          -----END PGP SIGNATURE-----<br>
          <br>
          _______________________________________________<br>
          Full-Disclosure - We believe in it.<br>
          Charter: <a class="moz-txt-link-freetext" 
href="http://lists.grok.org.uk/full-disclosure-charter.html";>http://lists.grok.org.uk/full-disclosure-charter.html</a><br>
          Hosted and sponsored by Secunia - <a class="moz-txt-link-freetext" 
href="http://secunia.com/";>http://secunia.com/</a><br>
        </div>
      </div>
    </blockquote>
  </body>
</html>

JPEG image

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/