User Controls

LIVE HACK with Mr High(Security Hole Is Still Open!)

  1. #1
    MrHigh Yung Blood
    This is a live security hole in a fishing license website. I am going to give exact instructions on how to pull personal information out of this website. This security hole is a very easy one and doesn't require any special software. All you need is a browser.

    The website is https://wvhunt.com

    0. Register an account. This doesn't require an email address to verify. Make sure to remember your login and password because you will have to login after making the account.

    1. Click on the View Order History button from the main menu.

    2. Change the number in the URL to a different number.

    3. Keep changing it if it does not reveal any license information.

    4. Click on any of the Select buttons.

    5. Click the Home button. You will notice that the name on the right side is now a different person's name.

    Sometimes the last step will take you directly into the registration area. You will see the person's date of birth. After clicking the next button you will see their social security number.

    If you look at the source code you will be able to see the person's driver's license information and other personal information.

    I obtained these quantities from this.

    SSN = 132,624
    DL = 256,568

    This site may be monitored. They caught on to my last hack and I was hacking this site beforehand. They may know about it. But the security hole is still open as of right now.
    The following users say it would be alright if the author of this post didn't die in a fire!
  2. #2
    Sophie Pedophile Tech Support
    Good job West Virginia DNR. You are literally retarded. I bet it'd be pretty easy to write a script to automate the gathering of the information you are after.
    The following users say it would be alright if the author of this post didn't die in a fire!
  3. #3
    HampTheToker African Astronaut
    Wow. If I were behind 7 proxies, then I would totally utilize this 1337 h4x.
  4. #4
    aldra JIDF Controlled Opposition
    terrible.
  5. #5
    MrHigh Yung Blood
    Originally posted by Sophie Good job West Virginia DNR. You are literally retarded. I bet it'd be pretty easy to write a script to automate the gathering of the information you are after.

    I already did.
  6. #6
    SBTlauien African Astronaut
    Good Lord.
  7. #7
    Sophie Pedophile Tech Support
    Originally posted by MrHigh I already did.

    ZeroBin it.

    http://2pdkdy3eo552mpiz.onion/

    And send me a PM.
  8. #8
    Oh yeah gape that hole
  9. #9
    bling bling Dark Matter
    fail
  10. #10
    -SpectraL coward [the spuriously bluish-lilac bushman]
    Honey pot alert.

    https://en.wikipedia.org/wiki/Honeypot_(computing)
  11. #11
    SBTlauien African Astronaut
    Originally posted by -SpectraL Honey pot alert.

    https://en.wikipedia.org/wiki/Honeypot_(computing)

    Interfering with a federal investigative honeypot is serious crime.
  12. #12
    MrHigh Yung Blood
    This must have been available for a long time. I looked up on it one week after talking about it and it was still working. It seems like it may have been patched now.

    http://pwoah7foa6au2pul.onion/forum/index.php?threads/free-social-security-numbers-from-wvhunt-com.139665/#post-1274063
  13. #13
    wee i can hack im not mean but your wack.
Jump to Top