DJ Music Man (12-11-2015),kaylacakes (12-11-2015)
thats not the real code, its a cookie grabber, coded in java, enacted by xss, its a cross site scripting vulnerability that allows you to inject client side script into the webpage
---------- Post added at 07:10 PM ---------- Previous post was at 07:07 PM ----------
what cheesedude posted was just trolling, taking a piss. There was another used here @(you need an account to see links) who posted a basic guide of simple cookie grabber a long time ago I think.
DJ Music Man (12-11-2015),kaylacakes (12-11-2015)
(you need an account to see links)
(you need an account to see links)(you need an account to see links)
------------------------
[02/24/2013] Stealth CORE is made into the first standalone Neopets auto-player.
------------------------
Demri (12-11-2015),DJ Music Man (12-11-2015),Ghosts (12-11-2015),kaylacakes (12-11-2015),Killy (12-11-2015),Naked Gamer(12-11-2015)
Naw, wasn't me.
But it makes me wonder if someone is grabbing info in some way no ones really noticed yet.
If Barista was actually hacked like someone else who was iced claimed, then maybe people are getting into accounts post 2012?
Makes me wonder about my frozen account. ;o
Their is definitely something going on since the accounts are way younger that have been hit htough
Time to jump ship?
Yeah getting a bit freaked
So lets get to the bottom of it then. Next time anyone sees something like this, boot a tails live distro, burn a shell, view the shop / petpage / lookup, see if we can see the script or identify the exploit they're using.
Ive seen some nice php shell scripts embedded in images executed before, though never on NP