Don't like ads? PRO users don't see any ads ;-)
Guest

blogger

By: a guest on Sep 9th, 2012  |  syntax: None  |  size: 1.74 KB  |  hits: 2,153  |  expires: Never
download  |  raw  |  embed  |  report abuse  |  print
Text below is selected. Please press Ctrl+C to copy to your clipboard. (⌘+C on Mac)
  1. [#] Author : Shadow008
  2. [#] Reported On : HackersMedia.com
  3. [#] Country : Pakistani Hacker
  4. New BlogDNS 0day, Discovered By Shadow008
  5. Lets just say, any site pointing to Google server can Be Hacked and Defaced
  6.  
  7. 1st) Find a target where as its subdomain or its main domain is pointing to google or blogger server I.P
  8. 2nd) If it is pointing to Google Server I.P, You will see a page 100% like this >> http://ghs.google.com/
  9.  
  10. 404. That’s an error.
  11.  
  12. The requested URL / was not found on this server. That’s all we know.
  13.  
  14. If that shows, That means its vul to BlogDNS 0day
  15.  
  16. 3rd) Go to http://www.blogger.com/ and Login / Create an account
  17. 4th) Create a Blog
  18. 5th) Name it anything you want as a subdomain for blogger.
  19. 6th) Once blog is created, Go to Settings > Publishing > Switch To Advanced Mod and add that site URL domain. (example:direct.site.com) Please note that it MUST be pointing to google or blogger server I.P.
  20. and Save it.
  21.  
  22. Clear You cache and go to that sites subdomain which you added. You will see its in your control  .
  23. Now go to Design > Edit HTML > Revert to Classic Template > Add Deface Code There (Switch of Navbar to OFF) and Hit Save, Clear Cache and check site will be defaced  .
  24.  
  25.  
  26. Note: I have used Old Blogger Interface, I don't use the New Blogger Interface as I find the old one more easy
  27.  
  28. I hope it was clear and understood
  29. Have fun and don't share
  30.  
  31.  
  32. Sites which are hacked using this method:
  33. http://direct.thehackernews.com/
  34. Mirror: http://zone-h.org/mirror/id/18307796
  35.  
  36. Hacked: http://mail.sec4ever.com/
  37. Mirror: http://zone-h.org/mirror/id/18312108
  38.  
  39. http://direct.pkhackerz.com/
  40. Mirror: http://zone-h.org/mirror/id/18307953
  41.  
  42. http://mail.dl4hacks.net/
  43. Mirror: http://zone-hc.com/archive/mirror/8d...t_mirror_.html