<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>justAFewClicks</title>
	<atom:link href="http://justafewclicks.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://justafewclicks.wordpress.com</link>
	<description>silly things you can do with Web, notepad and a few minutes of spare time</description>
	<lastBuildDate>Fri, 21 Sep 2007 09:50:38 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='justafewclicks.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>justAFewClicks</title>
		<link>http://justafewclicks.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://justafewclicks.wordpress.com/osd.xml" title="justAFewClicks" />
	<atom:link rel='hub' href='http://justafewclicks.wordpress.com/?pushpress=hub'/>
		<item>
		<title>The summer is over</title>
		<link>http://justafewclicks.wordpress.com/2007/09/21/the-summer-is-over/</link>
		<comments>http://justafewclicks.wordpress.com/2007/09/21/the-summer-is-over/#comments</comments>
		<pubDate>Fri, 21 Sep 2007 09:50:38 +0000</pubDate>
		<dc:creator>justafewclicks</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://justafewclicks.wordpress.com/2007/09/21/the-summer-is-over/</guid>
		<description><![CDATA[I haven&#8217;t posted anything for quite a few weeks &#8211; been on vacations Now the summer&#8217;s over and I&#8217;m getting back to work. Expect a new clip on YouTube soon, along withfew exciting posts here.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=15&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<ul>
<li>I haven&#8217;t posted anything for quite a few weeks &#8211; been on vacations <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  Now the summer&#8217;s over and I&#8217;m getting back to work. Expect a new clip on YouTube soon, along withfew exciting posts here.</li>
</ul>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/justafewclicks.wordpress.com/15/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/justafewclicks.wordpress.com/15/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/justafewclicks.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/justafewclicks.wordpress.com/15/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/justafewclicks.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/justafewclicks.wordpress.com/15/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/justafewclicks.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/justafewclicks.wordpress.com/15/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/justafewclicks.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/justafewclicks.wordpress.com/15/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/justafewclicks.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/justafewclicks.wordpress.com/15/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/justafewclicks.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/justafewclicks.wordpress.com/15/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/justafewclicks.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/justafewclicks.wordpress.com/15/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=15&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://justafewclicks.wordpress.com/2007/09/21/the-summer-is-over/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/072301e83e2fed48b28aafc90c688b1b?s=96&#38;d=identicon" medium="image">
			<media:title type="html">justafewclicks</media:title>
		</media:content>
	</item>
		<item>
		<title>Still working on Metacafe</title>
		<link>http://justafewclicks.wordpress.com/2007/07/30/still-working-on-metacafe/</link>
		<comments>http://justafewclicks.wordpress.com/2007/07/30/still-working-on-metacafe/#comments</comments>
		<pubDate>Mon, 30 Jul 2007 15:28:15 +0000</pubDate>
		<dc:creator>justafewclicks</dc:creator>
				<category><![CDATA[bugs]]></category>
		<category><![CDATA[MetaCafe]]></category>
		<category><![CDATA[MyBlogLog]]></category>
		<category><![CDATA[MySpace]]></category>

		<guid isPermaLink="false">http://justafewclicks.wordpress.com/2007/07/30/still-working-on-metacafe/</guid>
		<description><![CDATA[I&#8217;ve been working for last few days on Metacafe hack. I&#8217;m quite sure they don&#8217;t check input data from therr forms as precisely as it should be. I hope I&#8217;d be able to post new vid today, showing how to hack Metacafe. MyBlogLog case: I don&#8217;t know how mysterious h_chk parameter is computed, but it [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=10&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://justafewclicks.wordpress.com/2007/07/23/tens-of-bugs-on-popular-websites/metacafe/" rel="attachment wp-att-12" title="Metacafe"><img src="http://justafewclicks.files.wordpress.com/2007/08/metacafe.thumbnail.png?w=450" alt="Metacafe" border="0" /></a></p>
<p>I&#8217;ve been working for last few days on <a href="http://www.metacafe.com">Metacafe</a> hack. I&#8217;m quite sure they don&#8217;t check input data from therr forms as precisely as it should be.  I hope I&#8217;d be able to post new vid today, showing how to hack Metacafe.</p>
<p><a href="http://www.mybloglog.com">MyBlogLog</a> case: I don&#8217;t know how mysterious <strong>h_chk</strong> parameter is computed, but it seems <strong>h_chk</strong> remains the same for whole day and for different user accounts. That means there&#8217;s a huge security hole that allows to post data without user&#8217;s knowledge.</p>
<p>Last but not least: <a href="http://www.myspace.com">MySpace</a>. It is known to be one of the most dangerous places you can visit. Lot of MySpace pages is used by criminals to infect user computers with e.g. Zlob or Hackstore. Why MySpace is so buggy? Because it&#8217;s so open. You can write your own page, providing content you wish. So evil person can make a MySpace page full of nasty things.</p>
<p>But is MySpace secure in terms of user access? I&#8217;m investing this right now&#8230;</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/justafewclicks.wordpress.com/10/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/justafewclicks.wordpress.com/10/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/justafewclicks.wordpress.com/10/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/justafewclicks.wordpress.com/10/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/justafewclicks.wordpress.com/10/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/justafewclicks.wordpress.com/10/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/justafewclicks.wordpress.com/10/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/justafewclicks.wordpress.com/10/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/justafewclicks.wordpress.com/10/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/justafewclicks.wordpress.com/10/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/justafewclicks.wordpress.com/10/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/justafewclicks.wordpress.com/10/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/justafewclicks.wordpress.com/10/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/justafewclicks.wordpress.com/10/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/justafewclicks.wordpress.com/10/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/justafewclicks.wordpress.com/10/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=10&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://justafewclicks.wordpress.com/2007/07/30/still-working-on-metacafe/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/072301e83e2fed48b28aafc90c688b1b?s=96&#38;d=identicon" medium="image">
			<media:title type="html">justafewclicks</media:title>
		</media:content>

		<media:content url="http://justafewclicks.files.wordpress.com/2007/08/metacafe.thumbnail.png" medium="image">
			<media:title type="html">Metacafe</media:title>
		</media:content>
	</item>
		<item>
		<title>Is MyBlogLog safe?</title>
		<link>http://justafewclicks.wordpress.com/2007/07/24/is-mybloglog-safe/</link>
		<comments>http://justafewclicks.wordpress.com/2007/07/24/is-mybloglog-safe/#comments</comments>
		<pubDate>Tue, 24 Jul 2007 11:35:34 +0000</pubDate>
		<dc:creator>justafewclicks</dc:creator>
				<category><![CDATA[bugs]]></category>
		<category><![CDATA[MyBlogLog]]></category>

		<guid isPermaLink="false">http://justafewclicks.wordpress.com/2007/07/24/is-mybloglog-safe/</guid>
		<description><![CDATA[I&#8217;ve been looking at MyBlogLog HTML code for a few days and I have to say MyBlogLog in terms of security is far better than many other &#8220;web 2.0&#8243; sites. Still, there are some problems worth mentioning. For example, it&#8217;s possible to prepare evil page which sends MyBlogLog user&#8217;s invitations to selected emails without user&#8217;s [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=8&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://mybloglog.com" title="MyBlogLog"><img src="http://justafewclicks.files.wordpress.com/2007/08/mybloglog.png?w=450" alt="MyBlogLog" border="0" /></a></p>
<p>I&#8217;ve been looking at <a href="http://www.mybloglog.com">MyBlogLog</a> HTML code for a few days and I have to say MyBlogLog in terms of security is far better than many other &#8220;web 2.0&#8243; sites. Still, there are some problems worth mentioning.</p>
<p>For example, it&#8217;s possible to prepare evil page which sends MyBlogLog user&#8217;s invitations to selected emails without user&#8217;s knowledge. All you have to do is to make a fake form based on HTML document at http://www.mybloglog.com/buzz/invite/ and then put this document into an iframe. The method used here is exactly the same as in &#8220;YouTube profile editing bug&#8221; example.</p>
<p>Of course it&#8217;s not that dangerous: sending invitations doesn&#8217;t hurt anynone. This method cannot be used to send spam, because MyBlogLog servers <a href="http://mybloglogb.typepad.com/my_weblog/2007/07/mybloglog-crawl.html">do not accept more than 1000 pages request per hour</a>. In my humble opinion every form inside users area, which can be remotely executed without user&#8217;s knowledge is a flaw in overall security of the website. But this is just a pretty innocent trick, not a bug.</p>
<p>Is it possible to remotely execute other MyBlogLog forms? The answer is not obvious. Forms in MyBlogLog user&#8217;s area are secured with mysterious <strong>h_chk</strong> parameter, which seems to be a result of md5() on some unknown string. Form values posted without this <strong>h_chk </strong>parameter will not be accepted.<br />
Is this enough to ensure security? If you know what <strong>h_hck</strong> parameter to use, you can hack MyBlogLog. How can someone find proper <strong>h_chk</strong> value? I found that h_chk have same value for many user accounts (i.e. it doesn&#8217;t depend on users name or id). It changes every day, so it may be based on date. It doesn&#8217;t change within a few hours time.</p>
<p>If I am right and <strong>h_chk</strong> parameter is the same for all user accounts, MyBlogLog can be easily hacked. I&#8217;ll check this today&#8217;s evening, if time permits.</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/justafewclicks.wordpress.com/8/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/justafewclicks.wordpress.com/8/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/justafewclicks.wordpress.com/8/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/justafewclicks.wordpress.com/8/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/justafewclicks.wordpress.com/8/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/justafewclicks.wordpress.com/8/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/justafewclicks.wordpress.com/8/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/justafewclicks.wordpress.com/8/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/justafewclicks.wordpress.com/8/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/justafewclicks.wordpress.com/8/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/justafewclicks.wordpress.com/8/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/justafewclicks.wordpress.com/8/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/justafewclicks.wordpress.com/8/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/justafewclicks.wordpress.com/8/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/justafewclicks.wordpress.com/8/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/justafewclicks.wordpress.com/8/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=8&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://justafewclicks.wordpress.com/2007/07/24/is-mybloglog-safe/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/072301e83e2fed48b28aafc90c688b1b?s=96&#38;d=identicon" medium="image">
			<media:title type="html">justafewclicks</media:title>
		</media:content>

		<media:content url="http://justafewclicks.files.wordpress.com/2007/08/mybloglog.png" medium="image">
			<media:title type="html">MyBlogLog</media:title>
		</media:content>
	</item>
		<item>
		<title>Dozens of bugs on popular websites?</title>
		<link>http://justafewclicks.wordpress.com/2007/07/23/tens-of-bugs-on-popular-websites/</link>
		<comments>http://justafewclicks.wordpress.com/2007/07/23/tens-of-bugs-on-popular-websites/#comments</comments>
		<pubDate>Mon, 23 Jul 2007 12:34:08 +0000</pubDate>
		<dc:creator>justafewclicks</dc:creator>
				<category><![CDATA[bugs]]></category>
		<category><![CDATA[MetaCafe]]></category>
		<category><![CDATA[MyBlogLog]]></category>
		<category><![CDATA[Revver]]></category>
		<category><![CDATA[YouTube]]></category>

		<guid isPermaLink="false">http://justafewclicks.wordpress.com/2007/07/23/tens-of-bugs-on-popular-websites/</guid>
		<description><![CDATA[It&#8217;s so obvious I&#8217;m surprised I didn&#8217;t noticed it when writing previous posts&#8230; Let&#8217;s get back to YouTube &#8220;tabbed attack&#8221; security flaw. You don&#8217;t have to visit YouTube to be attacked from another site. It&#8217;s perfectly enough to open evil HTML document and attack will be performed. Why is it possible? Because you&#8217;re automatically logged [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=7&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://mybloglog.com" title="MyBlogLog"><img src="http://justafewclicks.files.wordpress.com/2007/08/mybloglog.png?w=450" alt="MyBlogLog" border="0" /></a> <a href="http://justafewclicks.wordpress.com/2007/07/23/tens-of-bugs-on-popular-websites/metacafe/" rel="attachment wp-att-12" title="Metacafe"><img src="http://justafewclicks.files.wordpress.com/2007/08/metacafe.thumbnail.png?w=450" alt="Metacafe" border="0" /></a></p>
<p>It&#8217;s so obvious I&#8217;m surprised I didn&#8217;t noticed it when writing previous posts&#8230;</p>
<p>Let&#8217;s get back to YouTube &#8220;tabbed attack&#8221; security flaw. You don&#8217;t have to visit YouTube to be attacked from another site. It&#8217;s perfectly enough to open evil HTML document and attack will be performed. Why is it possible? Because you&#8217;re automatically logged in whenever YouTube.com is loaded. So it can be loaded into invisible <strong>iframe</strong> tag on evil website and voila! &#8211; your subscriptions on YouTube are modified.</p>
<p>So, automatic login based on cookie information is definetely dangerous, especially when any kind of token or session id (passed with url or with form data) is not used.</p>
<p>Are there any other websites, which log you in automatically? I&#8217;m really excited to find out. If I only had some time this evening&#8230; I think MetaCafe, Revver, MyBlogLog are just worth a try <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/justafewclicks.wordpress.com/7/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/justafewclicks.wordpress.com/7/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/justafewclicks.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/justafewclicks.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/justafewclicks.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/justafewclicks.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/justafewclicks.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/justafewclicks.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/justafewclicks.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/justafewclicks.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/justafewclicks.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/justafewclicks.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/justafewclicks.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/justafewclicks.wordpress.com/7/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/justafewclicks.wordpress.com/7/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/justafewclicks.wordpress.com/7/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=7&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://justafewclicks.wordpress.com/2007/07/23/tens-of-bugs-on-popular-websites/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/072301e83e2fed48b28aafc90c688b1b?s=96&#38;d=identicon" medium="image">
			<media:title type="html">justafewclicks</media:title>
		</media:content>

		<media:content url="http://justafewclicks.files.wordpress.com/2007/08/mybloglog.png" medium="image">
			<media:title type="html">MyBlogLog</media:title>
		</media:content>

		<media:content url="http://justafewclicks.files.wordpress.com/2007/08/metacafe.thumbnail.png" medium="image">
			<media:title type="html">Metacafe</media:title>
		</media:content>
	</item>
		<item>
		<title>A bug in YouTube fixed, but problem still exists</title>
		<link>http://justafewclicks.wordpress.com/2007/07/22/one-bug-in-youtube-fixed-but-other-exist/</link>
		<comments>http://justafewclicks.wordpress.com/2007/07/22/one-bug-in-youtube-fixed-but-other-exist/#comments</comments>
		<pubDate>Sun, 22 Jul 2007 09:50:42 +0000</pubDate>
		<dc:creator>justafewclicks</dc:creator>
				<category><![CDATA[bugs]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[YouTube]]></category>

		<guid isPermaLink="false">http://justafewclicks.wordpress.com/2007/07/22/one-bug-in-youtube-fixed-but-other-exist/</guid>
		<description><![CDATA[In my last post I&#8217;ve shown how to remotely and invisibly change someone&#8217;s YouTube profile. Apparently YouTube team spotted this post and fixed the bug &#8211; it doesn&#8217;t work anymore. However, a few other bugs exist and can be used against user logged into YouTube account. As I mentioned before, logging into YouTube is automatic [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=6&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://youtube.com" title="YouTube"><img src="http://justafewclicks.files.wordpress.com/2007/08/youtube.thumbnail.png?w=450" alt="YouTube" border="0" /></a></p>
<p>In my last post I&#8217;ve shown how to remotely and invisibly change someone&#8217;s YouTube profile. Apparently YouTube team spotted this post and fixed the bug &#8211; it doesn&#8217;t work anymore. However, a few other bugs exist and can be used against user logged into YouTube account. As I mentioned before, logging into YouTube is automatic (using cookies), so for most users it&#8217;s enough to visit YouTube.com and evil page at the same time (using tabbed browser).</p>
<p>Here&#8217;s a short example of another bug: you can be logged out of YouTube when you visit another page: look at <a href="http://bragoszewski.com/yt2">this example at bragoszewski.com</a>.</p>
<p>Or someone can edit your <em>Subscriptions</em> lis e.g by adding new keyword, check <a href="http://bragoszewski.com/yt3">this example</a>, which adds <strong>hacking</strong> word to your subscription list.</p>
<p>The problem with YouTube authorization I describe is not a single bug in a single form. It&#8217;s more dangerous security flaw in user authentication procedure and should be treated seriously. Guys form YouTube: when you fix this, you can buy me a drink <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/justafewclicks.wordpress.com/6/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/justafewclicks.wordpress.com/6/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/justafewclicks.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/justafewclicks.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/justafewclicks.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/justafewclicks.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/justafewclicks.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/justafewclicks.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/justafewclicks.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/justafewclicks.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/justafewclicks.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/justafewclicks.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/justafewclicks.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/justafewclicks.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/justafewclicks.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/justafewclicks.wordpress.com/6/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=6&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://justafewclicks.wordpress.com/2007/07/22/one-bug-in-youtube-fixed-but-other-exist/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/072301e83e2fed48b28aafc90c688b1b?s=96&#38;d=identicon" medium="image">
			<media:title type="html">justafewclicks</media:title>
		</media:content>

		<media:content url="http://justafewclicks.files.wordpress.com/2007/08/youtube.thumbnail.png" medium="image">
			<media:title type="html">YouTube</media:title>
		</media:content>
	</item>
		<item>
		<title>How to hack into YouTube</title>
		<link>http://justafewclicks.wordpress.com/2007/07/20/how-to-hack-into-youtube/</link>
		<comments>http://justafewclicks.wordpress.com/2007/07/20/how-to-hack-into-youtube/#comments</comments>
		<pubDate>Fri, 20 Jul 2007 17:28:56 +0000</pubDate>
		<dc:creator>justafewclicks</dc:creator>
				<category><![CDATA[bugs]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[video]]></category>
		<category><![CDATA[YouTube]]></category>

		<guid isPermaLink="false">http://justafewclicks.wordpress.com/2007/07/20/how-to-hack-into-youtube/</guid>
		<description><![CDATA[If you open YouTube and another page in one browser at the same time (e.g. on two different tabs), this other page can invisibly hack into your YouTube profile and change your personal data. Let&#8217;s see how it&#8217;s possible. When you open YouTube, you&#8217;re automatically logged in, provided you have a YouTube account and you [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=5&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://youtube.com"><img src="http://justafewclicks.files.wordpress.com/2007/08/youtube.thumbnail.png?w=450" alt="YouTube" border="0" /></a></p>
<p>If you open <a href="http://www.youtube.com">YouTube </a>and another page in one browser at the same time (e.g. on two different tabs), this other page can invisibly hack into your YouTube profile and change your personal data. Let&#8217;s see how it&#8217;s possible.</p>
<p>When you open  YouTube, you&#8217;re automatically logged in, provided you have a YouTube account and you have cookies in your browser enabled. So you can go straight to your profile editing page. When you check the code of e.g. <em>Personal Info</em> page, you can see huge <strong>form</strong> tag.</p>
<p>Now let&#8217;s see this: I copied  this <strong>form</strong> tag to an empty HTML document and with some modifications (it should point to YouTube server, so I needed to add <strong>action</strong> parameter). I added some JavaScript, so the form is automatically submited when document opens. <em>Of course, I changed home page address (this is not visible on the video)</em>. To make this totally invisible, we need another HTML document, which contains simple <strong>iframe</strong> tag set to be invisible (using CSS) and pointed to first document (one with automatically submited form).</p>
<p>We can upload both HTML documents to a server (or it just fine to open second document from disc). When a victim opens <em>both</em> YouTube and evil HTML document at the same time, his/her account is automatically and invisibly hacked&#8230;</p>
<p>Why is it possible? YouTube doesn&#8217;t use any kind of token or session id tranferred along with form data. So an attacker does not need to know user&#8217;s personal nor session id data to attack. Second, and important, issue: when your&#8217;e logged into a website (even other than YouTube) there&#8217;s a lot of things that can be done from another page, provided it&#8217;s opened at the same time in tabbed browser&#8230;</p>
<p align="center"> <span style="text-align:center; display: block;"><a href="http://justafewclicks.wordpress.com/2007/07/20/how-to-hack-into-youtube/"><img src="http://img.youtube.com/vi/MWChV3gOROk/2.jpg" alt="" /></a></span></p>
<p align="left">You can see an example of this attack by visiting <a href="http://bragoszewski.com/yt1">this page on my Polish blog</a>. If you have YouTube opened on another tab in the browser and you are logged in, your personal info will change&#8230;</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/justafewclicks.wordpress.com/5/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/justafewclicks.wordpress.com/5/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/justafewclicks.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/justafewclicks.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/justafewclicks.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/justafewclicks.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/justafewclicks.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/justafewclicks.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/justafewclicks.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/justafewclicks.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/justafewclicks.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/justafewclicks.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/justafewclicks.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/justafewclicks.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/justafewclicks.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/justafewclicks.wordpress.com/5/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=5&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://justafewclicks.wordpress.com/2007/07/20/how-to-hack-into-youtube/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/072301e83e2fed48b28aafc90c688b1b?s=96&#38;d=identicon" medium="image">
			<media:title type="html">justafewclicks</media:title>
		</media:content>

		<media:content url="http://justafewclicks.files.wordpress.com/2007/08/youtube.thumbnail.png" medium="image">
			<media:title type="html">YouTube</media:title>
		</media:content>
	</item>
		<item>
		<title>just a few words :)</title>
		<link>http://justafewclicks.wordpress.com/2007/07/20/just-a-few-words/</link>
		<comments>http://justafewclicks.wordpress.com/2007/07/20/just-a-few-words/#comments</comments>
		<pubDate>Fri, 20 Jul 2007 11:21:04 +0000</pubDate>
		<dc:creator>justafewclicks</dc:creator>
				<category><![CDATA[bugs]]></category>

		<guid isPermaLink="false">http://justafewclicks.wordpress.com/2007/07/20/just-a-few-words/</guid>
		<description><![CDATA[Let&#8217;s start. I&#8217;m going to publish some examples what can you do with basic tools, some free time and big, popular websites. They aren&#8217;t that safe as we could expect.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=3&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Let&#8217;s start. I&#8217;m going to publish some examples what can you do with basic tools, some free time and big, popular websites. They aren&#8217;t that safe as we could expect.</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/justafewclicks.wordpress.com/3/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/justafewclicks.wordpress.com/3/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/justafewclicks.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/justafewclicks.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/justafewclicks.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/justafewclicks.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/justafewclicks.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/justafewclicks.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/justafewclicks.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/justafewclicks.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/justafewclicks.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/justafewclicks.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/justafewclicks.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/justafewclicks.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/justafewclicks.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/justafewclicks.wordpress.com/3/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=justafewclicks.wordpress.com&amp;blog=1394045&amp;post=3&amp;subd=justafewclicks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://justafewclicks.wordpress.com/2007/07/20/just-a-few-words/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/072301e83e2fed48b28aafc90c688b1b?s=96&#38;d=identicon" medium="image">
			<media:title type="html">justafewclicks</media:title>
		</media:content>
	</item>
	</channel>
</rss>
