Hacker sells access to Pornhub servers for 1000 dollars

A hacker who το ψευδώνυμο Revolver (@ 1x0123 στο Twitter) δήλωσε ότι πουλάει πρόσβαση σε διακομιστές του Pornhub, ζητώντας 1.000 δολάρια για πρόσβαση shell και δυνατότητες έγχυσης εντολών.

In less than 20 hours, Revolver announced that someone contacted him, and sold the exploit (this tweet has been deleted).pornhub

According to Twitter, Revolver discovered a vulnerability in the script that handles the additions to the user profile image, which he used to upload a webshell to Pornhub's servers.

The exploit came a week after ImageTragick's vulnerability was announced, but Revolver said he did not use this exploit.

Tο Pornhub απάντησε στο Twitter 15 ώρες αργότερα, αναφέροντας ότι μετά από έρευνες, "δεν φαίνεται να αποκτήθηκε πρόσβαση σε κάποιο διακομιστή παραγωγής."

Pornhub has between 30 and 60 daily visitors and the service will be a valuable target for any hacker.

Revolver only asked for $1.000 for selling the exploit, while four days ago, Pornhub launched a program , which pays exploits like Revolver's well over $1.000. But the hacker wrote that he no longer participates in bug bounty programs.

https://twitter.com/1x0123/status/731627800814321664

Revolver is already famous when it discovered a vulnerability that allowed SQL injection into one of the servers of Mossack Fonseca, the company from which the Papers.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).