Tin. I thought the team was better there ...
That's exactly some kind of banter :)
I do not believe a divorce.
In the code, according to analysts, lines were found that allow the superuser rights to be obtained by simply setting a cookie with a special name.
It looks like a virus to attract attention to SuperHabr.
Well, yes, of course, they specifically did so in order to plant all the dwechs.
Apparently by chance, the developers of “Habrakhabr” turned off PHP processing during the work on updating the site code (apparently to the long-awaited “SuperHabr”), so the files with the code began to be sent as regular binary files.
In fact, by installing a cookie in the browser named 'habrahabr_11223', you can get full project rights. Such a classic hole that is not clouded by considerations of secularity.
Thousands of Internet. I downloaded everything, although I do not know how to use it.
of course lay out, I will be glad when these bydlokoder will have after analyzing their bydlakoda
Worse. This is a kind of epicfile, even without a tachometer. Logan can, xs.
where to enter invite code on blogging?
Also, while I was downloading something, I managed to change the file:
habrahabr.ru/super/etc/blogistan
adding a line to it
> ^^^^^ ---- ostalnoe moe !!!
dvuchuyu, potsy, how to enter blogging ??? where to invite - code to drive something?
PR blogging attempt to invites to the masses. For me, the habry’s reputation has been shaken, and I will not even visit blogging.
Already a couple of days on the site hanging stub. It turned out that they were hacked, or rather just entered the super directory in the browser and saw that it is open for reading. It contained passwords, photos, information for investors, etc.
What a corny - just funny to watch. Failure.
Source: https://habr.com/ru/post/36563/
All Articles