Return Styles: Pseud0ch, Terminal, Valhalla, NES, Geocities, Blue Moon.

Pages: 1-

lol kirt

Name: Anonymous 2009-09-22 1:17

420chan source: http://pastebin.com/m28c50a2

Hey everyone. Dunno how much you all know about 420chan; but Kirtaner, the admin, has been developing his own imageboard software with perl for a year or so. He kept the source all private and stuff. But due to some major fuckups on his part, I managed to grab a copy right off his own server just yesterday. So yeah, this is the file that deals with admin logons, I assume cookie issuing, and lots of sql. It was put together by a crowd of stoned idiots, so see how long it takes to find all the outstanding security holes. The username and password for the twitter module has already been used to its full extent, but see what else you can find. And just a reminder, this code has most likely been through absolutely no security auditing whatsoever due to its formally closed source nature. So is beyond a doubt, full of obvious holes. And possibly some straight-up access to admin cookies.

Have phun

Name: Anonymous 2009-09-22 1:24

420chan's programmers are awesome.
i always ejaculate over some fancy new feature when i visit there.
why can't 4chan have the same kind of awesomeness? the biggest change i've seen in 3 years on 4chan is just the addition of /r9k/, /jp/, etc, and the new board software that's currently being ironed out in /adv/(which is pretty much just a clone of the previous software).

Name: Anonymous 2009-09-22 1:31

>>1
Kirtaner? The same guy that used to run a Ragnarok Online private server?

Name: Anonymous 2009-09-22 1:35

sub post_stuff($$$$$$$$$$$$$$$$$)
Hahaha... Perl.

Name: Anonymous 2009-09-22 1:42

It's not like 4chan's old code is good, but it does the job (with some bugs). I have no idea about the new board software they made.

Name: Anonymous 2009-09-22 1:43

>>2
meh. I used to think so too. But if you take a look at the source I just posted, you'll see it's mostly done with fancy pre-made perl modules.

The drop-down menus are pretty cool i guess.

Name: Anonymous 2009-09-22 3:13

It is Waha's code. If you want to find security holes, diff with wakaba's sources, because things written by waha are pretty much secure. The code is great, too, I started studying perl with wakaba.

№6, if you think that writing everything by yourself from scratch and not using modules is a good thing, you are gravely mistaken.

№4, It can easily be just just sub post_stuff, without and currency.

Name: TRUE TRUTH EXPERT !tQq1sLlmuk 2009-09-22 7:13

i CAN WIP SOME BOARD SOFTWARE IN FUCKING MINUTES. tHAT'S RIGHT, I'M ABLE TO CODE WHILE FUCKING.
>>1
iNVALID POST ID
>>2
4CHAN HAS THOUSANDS OF VISITORS A DAY, tHERE'S HALF A MILLION POSTS DAILY. nOW IMAGINE THAT YOU'RE WRITING SOFTWARE AND YOU HAVE A DEBUG&FEEDBACK TEAM OF 10000 PEOPLE, WHICH WILL EXPLOIT THE BUGS THEY'LL FIND IN THE WORST POSSIBLE WAY FOR YOU, AND NOW TELL ME WHETHER YOU'D ATTEMPT TO IMPLEMENT "NEW FEATURES" OR NOT.
>>3
yES THAT IS HIM.
>>4
HAHAHAHAHAH!

Name: Anonymous 2010-12-17 1:38

FOLLOW THE NEW GNAA TWITTER AT http://twitter.com/Gary_Niger

Name: Anonymous 2011-02-03 1:42

Name: Anonymous 2011-02-17 19:42

check 'em
Don't change these.
Name: Email:
Entire Thread Thread List