EvilZone
		Hacking and Security => Hacking and Security => : M1lak0  March 07, 2014, 08:27:33 PM
		
			
			- 
				Please help me with basic starting of this attack and some useful link...
 I tried finding such tutorials on attack based on this but couldn't found much!
 Thank u in advance! :)
- 
				1 - How long did you actually search for?
 
 2 - This is not the place to request help, this is the place to post tutorials. So, moved.
 
- 
				I tried a youtube search but no attack was mentioned there or gave any kind of tutorial.
 httpfox and temperdata. but i want to know how can an attack carried out with this any useful link would also do. :)
- 
				You should take a look at programs like Burp Suite and WebScarab. I wrote a program that could do this, but it's not public yet (And very minimalistic).
			
- 
				Thank you ThePH30N1X (https://evilzone.org/profile/?u=17848) for your guidance.. :) You should take a look at programs like Burp Suite and WebScarab. I wrote a program that could do this, but it's not public yet (And very minimalistic).
 
 
- 
				You should take a look at programs like Burp Suite and WebScarab. I wrote a program that could do this, but it's not public yet (And very minimalistic).
 
 
 Thank you ThePH30N1X (https://evilzone.org/profile/?u=17848) for your guidance.. :) 
 
 
 REALLY???
 EZ is not a skid factory. If all you want is too brag to your friends or all you care about is the destination then go to fucking HF and download Cain&Abel infected by some other skid.
- 
				I tried a youtube search but no attack was mentioned there or gave any kind of tutorial.
 
 Yeah you're right there must not be any resources out there then...
- 
				Here's some detailed examples.I hope this helps? 
 
 http://xss.cx/examples/dork/http-injection/http-header-injection-0x20-crlf-splitting.travel.travelocity.com.html (http://xss.cx/examples/dork/http-injection/http-header-injection-0x20-crlf-splitting.travel.travelocity.com.html)
- 
				You'll have to be more specific about your question here. Do you want to know about attacks like HTTP Response Splitting? If so check out https://www.owasp.org/index.php/HTTP_Response_Splitting (https://www.owasp.org/index.php/HTTP_Response_Splitting) . In fact, check out OWASP for anything web app hacking related and you'll often get a plethora of info
 
 Here's some detailed examples.I hope this helps? 
 
 http://xss.cx/examples/dork/http-injection/http-header-injection-0x20-crlf-splitting.travel.travelocity.com.html (http://xss.cx/examples/dork/http-injection/http-header-injection-0x20-crlf-splitting.travel.travelocity.com.html)
 
 
 WOW Thank you guys to share me few link and help.
 I have actually tried xss and sqli via header manipulation but I want to play and explore more about this and few ways. Well I'll Surely check these links and let you know about it! :D
 Is there any other types of attack based on Header manipulation? Please let me know!
 Thank you all for your reply. . .
- 
				WOW Thank you guys to share me few link and help. 
 I have actually tried xss and sqli via header manipulation but I want to play and explore more about this and few ways. Well I'll Surely check these links and let you know about it! :D
 Is there any other types of attack based on Header manipulation? Please let me know!
 Thank you all for your reply. . .
 
 https://evilzone.org/hacking-and-security/session-hijacking-evilzone/msg72536/#msg72536
 No longer works coz they finally fixed it :)