A preserved archive of the Logical Gamers community forums, 2009-2025. The original threads and posts, served read-only. Registration, posting and private messages are gone for good.

So how do people work those T35 password image exploits?

1.3k views · started by JustAStupidAsshole ·
#1
So how do people work those T35 password image exploits?
Just curious..I wouldnt mind dipping into the persons password dump since I see his t35

Edit:
Looks like it tricks the server into thinking the request is from pixel.quantserve.com which allows it to be ran into the pages html...hm..
#2
It is called an Flw and is pure PHP scripting.
You can not 'Dip into his password list' unless you guess his Password list URL, Since it us purly PHP.
#3
It is called an Flw and is pure PHP scripting.
You can not 'Dip into his password list' unless you guess his Password list URL, Since it us purly PHP.


All you have to do is figure out where it is being sent to =P I have dipped into plenty of password lists in the past. and I have dipped into one of these ones before.

I am simply asking how they are made.
#4
Right, and you can not see where they are going because it is PHP.
#5
Right, and you can not see where they are going because it is PHP.

Page source or look at the link it says it is from.
#6
You can NOT see PHP script for THIS reason...
You can look at where it says it is from but that still leaves you guessing the .txt file name.
Unless you plan to Bruteforce guess the page title then you are SOL.
#7
You can NOT see PHP script for THIS reason...
You can look at where it says it is from but that still leaves you guessing the .txt file name.
Unless you plan to Bruteforce guess the page title then you are SOL.


Thats not exactly hard.

Someone sure hasn't heard of intelitamper
#8
If the FLW is on gaiafag.t35.com/login.php, go to gaiafag.t35.com and you might see an index showing where the password is stored.