Search
Search titles only
By:
Search titles only
By:
Log in
Register
Search
Search titles only
By:
Search titles only
By:
Menu
Install the app
Install
Forums
New posts
All threads
Latest threads
New posts
Trending threads
Trending
Search forums
What's new
New posts
New ads
New profile posts
Latest activity
Free Ads
Latest reviews
Search ads
Members
Current visitors
New profile posts
Search profile posts
Contact us
Latest ads
Handmade Character Soft Toy Bluey Bingo
anil1961
Updated:
Monday at 3:55 PM
Colombo
Dahua POE Switch 8 Ports (DH-PFS3010-8ET-65)
hashaz2012
Updated:
Monday at 11:56 AM
Ad icon
Singapore V2Ray VPN for Tunneling
hu KANNA
Updated:
Jul 31, 2026
Dating Website & Online Chat Room
hotvideo
Updated:
Jul 30, 2026
DJI Mini 4 Pro Drone Combo Plus
Hawaka
Updated:
Jul 30, 2026
Electronics
Vehicles
Property
Search
Reply to thread
Forums
General
ElaKiri Talk!
Gmail එකට බඩු හම්බෙලා
Get the App
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Message
<blockquote data-quote="K_ZONE" data-source="post: 17123713" data-attributes="member: 207562"><p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">මම Password නැති එක ගත්තෙ Russian forum එකෙන්ම තමයි මචො, ඒත් ඉයේ දවල් 12 යි ගානකට අරු පාස්වර්ඩ් නැති ෆයිල් එකක් Replace කරලා, ඒත් ගත්ත උන් ගොඩක් ඉන්නවා, </span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">File එකේ නම වෙනස් Original එකේ,</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">මටත් තාම හොයාගන්න නම් බැරි උනා.</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">ඒත් ඒ File එකේ තියෙන PW එයාලා කවදාවත් Gmail වලට පාවිච්චි කලේ නැ කියලා තමයි මිනිස්සු නම් කියන්නෙ.</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">ඒ නිසා මේක හොයලා වැඩක් නැ වගේ,</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">Hash කරනවා මචො, මීට අවුරුදු 3 කට විතර කලින් Google App එකක Sqlinjection Vulnerability එකක් ආවා , ඒ දවස් වල SQL MAP වගේ අපි අද පවිච්චි කරන හැකිං ටූල් මොනාවත් තිබ්බෙ නැ, අපි ඔක්කොමලා අතින් තමයි SQLI කලේ.</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">අපි හෙමීට හෙමීට යනකොට Google එකෙන් Valn එක Patch කරා, ඒත් සමහරු පුලුවන් විදියට User Info Dump කරගත්තා, ඒකෙ තිබ්බා මචො Hash එක අපි දවස් ගානක් try කලා ඒ Hash එක කඩන්න, ඒත් පුලුවන් උනේ නැ, ඒ Hash එක ඇවිත් තිබුනෙ MD5 වත් Sha වත් වෙන අපි දන්න එකකින් වත් නෙමෙයි,</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">ඒ දවස් වල GPU Cracking වත් එච්චර ෆේමස් නැ, ඉතින් අපි වැඩේ අතඇරියා. ඒත් හොදටම Sure Google HASH කරනවා කියන එක නම්.</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">ඒත් Login table එකේ, Hash එකක් තිබ්බට මම ඇතුලුව මම දන්න ගොඩක් උන් කරන දෙයක් තමයි වෙන මොකක් හරි Table එකක User Passwords HASH කරන්නෙ නැතුව Encrypt කරලා save කරගන්නවා, ගොඩක් වෙලාවට අපි කරන්නෙ දැනට තියෙන XOR, RC4 වගේ එකක් පොඩ්ඩක් වෙනස් කරනවා සම්මත විඩියෙන් වෙනස් වෙන්න, </span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">එහෙම එකක් අනිව Google වලටත් තියෙන්න පුලුවන් ඔය NSA කේස් එක්ක බලද්දි. ඒත් NSA එකට නම් කවදාවත් Password වත් 2 way auth වත් ඔන නැ අපේ Account එකකට රින්ගන්න, ඕන ඇඩ්මින් කෙනෙක්ගෙන් ඉල්ලුවා නම් අවශ්හ Account එකට Session එකක් ඇරලා දෙන්න පුලුවන්. Password එක අවශ්යම වෙන්නෙ Data Encrypt කරලා තියෙනවා නම් අපේ Password එකෙන් SALT හරි වෙන මොනා හරි Key එකක් හරි පාවිච්කි කරලා තියෙනවා නම්. </span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">ඒ ඇරෙන්න Server එකේ ඉන්න එකෙක්ට pw ඕන නැ නෙ බං,</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">මෙතන තියෙන Password අවුරුදු ගානක් පරන ඒවා බං, මේවා ගන්න ඇත්තෙ ක්රම දෙකකින්</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">1. Phishing මොකද ඔය ෆෝරම් එකේ ඉන්නෙ හොද වැඩ්ඩො ටිකක්. ඉතින් උන්ට Phishing Server එකක් අටවගන්න එක ලොකු වැඩක් නෙමෙයි. උන් කලුනුත් ඕන තරම් මේ වගේ වැඩ කරා.</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">2. මේවා Gmail accounts උනාට Login එක Gmail PW එක වෙන සයිට් එකක.</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">තාමත් ගොඩක් උන් එකම PW එක තමයි දාන්නෙ හැම Account එකකටම.</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">ඉතින් වෙන වෙන Site Hack කලත් නිකම්ම Gmail පාස් එක හොයාගන්න පුලුවන්.</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">හිටපු ගමන් Linux / Windows Local Prev exploit එකක් එහෙම ආපු ගමන් හැකර් ලා කරන්නෙ ලොකු ලොකු Hosting Company හැම එකකම Hosting අරගෙන අර Exploit එක Run කරනවා, එතකොට උන්ගෙ Account එකෙන් ගිහින් අනිත් උන්ගෙ Account වලට රින්ගන්න පුලුවන්.</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">උබලා උනත් උබලගෙ දැනට Host කරලා තියෙන Server එකක Reverse Lookup එකක් කරලා බැලුවා නම් දැනගන්න පුලුවන් ඒ Server වල කොච්චර වෙන වෙන Sites තියෙනවද කියලා, ඒ එකක හරි මොකක් හරි අවුලක්, Shell Upload වගේ තිබ්බොත් අපේ Site එකේ DB එක Dump කරගන්න එක ලොකු වැඩක් නෙමෙයි.</span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple">අදටත් මේ මොහොතෙත් ලොකු ලොකු හැකර්ලා ඕවා කරනවා, රිංගපු ගමන් කොහොම හරි Stealth Backdoor එකක් හදලා තියලා එන්නේ ආයෙ රිංගන්න. පොඩි පොඩි හැකර්ලා මොකක් හරි හැක් කරලා හැම තැනම කැගහලා ගූ ගාගගත්තට වැඩ කාරයො කියවන්නෙ නැ, උන් අවුරුදු ගනන් data වලට Access තියාගෙන ඉන්නවා, හොද Underground forum එකක IRC එකකට සෙට් වෙලා නිකං අහලා බලන්නකො උන්ගේ ලොගින්ස් Database එක කොහොමද කියලා, 5m කියන්නෙ මොකක්ද කියලා හිතෙයි <img src="/styles/default/xenforo/smilies/default/D.gif" class="smilie" loading="lazy" alt=":D" title="Big grin :D" data-shortname=":D" /></span></span></p> <p style="text-align: center"><span style="font-size: 12px"><span style="color: Purple"></span></span></p></blockquote><p></p>
[QUOTE="K_ZONE, post: 17123713, member: 207562"] [CENTER][SIZE="3"][COLOR="Purple"] මම Password නැති එක ගත්තෙ Russian forum එකෙන්ම තමයි මචො, ඒත් ඉයේ දවල් 12 යි ගානකට අරු පාස්වර්ඩ් නැති ෆයිල් එකක් Replace කරලා, ඒත් ගත්ත උන් ගොඩක් ඉන්නවා, File එකේ නම වෙනස් Original එකේ, මටත් තාම හොයාගන්න නම් බැරි උනා. ඒත් ඒ File එකේ තියෙන PW එයාලා කවදාවත් Gmail වලට පාවිච්චි කලේ නැ කියලා තමයි මිනිස්සු නම් කියන්නෙ. ඒ නිසා මේක හොයලා වැඩක් නැ වගේ, Hash කරනවා මචො, මීට අවුරුදු 3 කට විතර කලින් Google App එකක Sqlinjection Vulnerability එකක් ආවා , ඒ දවස් වල SQL MAP වගේ අපි අද පවිච්චි කරන හැකිං ටූල් මොනාවත් තිබ්බෙ නැ, අපි ඔක්කොමලා අතින් තමයි SQLI කලේ. අපි හෙමීට හෙමීට යනකොට Google එකෙන් Valn එක Patch කරා, ඒත් සමහරු පුලුවන් විදියට User Info Dump කරගත්තා, ඒකෙ තිබ්බා මචො Hash එක අපි දවස් ගානක් try කලා ඒ Hash එක කඩන්න, ඒත් පුලුවන් උනේ නැ, ඒ Hash එක ඇවිත් තිබුනෙ MD5 වත් Sha වත් වෙන අපි දන්න එකකින් වත් නෙමෙයි, ඒ දවස් වල GPU Cracking වත් එච්චර ෆේමස් නැ, ඉතින් අපි වැඩේ අතඇරියා. ඒත් හොදටම Sure Google HASH කරනවා කියන එක නම්. ඒත් Login table එකේ, Hash එකක් තිබ්බට මම ඇතුලුව මම දන්න ගොඩක් උන් කරන දෙයක් තමයි වෙන මොකක් හරි Table එකක User Passwords HASH කරන්නෙ නැතුව Encrypt කරලා save කරගන්නවා, ගොඩක් වෙලාවට අපි කරන්නෙ දැනට තියෙන XOR, RC4 වගේ එකක් පොඩ්ඩක් වෙනස් කරනවා සම්මත විඩියෙන් වෙනස් වෙන්න, එහෙම එකක් අනිව Google වලටත් තියෙන්න පුලුවන් ඔය NSA කේස් එක්ක බලද්දි. ඒත් NSA එකට නම් කවදාවත් Password වත් 2 way auth වත් ඔන නැ අපේ Account එකකට රින්ගන්න, ඕන ඇඩ්මින් කෙනෙක්ගෙන් ඉල්ලුවා නම් අවශ්හ Account එකට Session එකක් ඇරලා දෙන්න පුලුවන්. Password එක අවශ්යම වෙන්නෙ Data Encrypt කරලා තියෙනවා නම් අපේ Password එකෙන් SALT හරි වෙන මොනා හරි Key එකක් හරි පාවිච්කි කරලා තියෙනවා නම්. ඒ ඇරෙන්න Server එකේ ඉන්න එකෙක්ට pw ඕන නැ නෙ බං, මෙතන තියෙන Password අවුරුදු ගානක් පරන ඒවා බං, මේවා ගන්න ඇත්තෙ ක්රම දෙකකින් 1. Phishing මොකද ඔය ෆෝරම් එකේ ඉන්නෙ හොද වැඩ්ඩො ටිකක්. ඉතින් උන්ට Phishing Server එකක් අටවගන්න එක ලොකු වැඩක් නෙමෙයි. උන් කලුනුත් ඕන තරම් මේ වගේ වැඩ කරා. 2. මේවා Gmail accounts උනාට Login එක Gmail PW එක වෙන සයිට් එකක. තාමත් ගොඩක් උන් එකම PW එක තමයි දාන්නෙ හැම Account එකකටම. ඉතින් වෙන වෙන Site Hack කලත් නිකම්ම Gmail පාස් එක හොයාගන්න පුලුවන්. හිටපු ගමන් Linux / Windows Local Prev exploit එකක් එහෙම ආපු ගමන් හැකර් ලා කරන්නෙ ලොකු ලොකු Hosting Company හැම එකකම Hosting අරගෙන අර Exploit එක Run කරනවා, එතකොට උන්ගෙ Account එකෙන් ගිහින් අනිත් උන්ගෙ Account වලට රින්ගන්න පුලුවන්. උබලා උනත් උබලගෙ දැනට Host කරලා තියෙන Server එකක Reverse Lookup එකක් කරලා බැලුවා නම් දැනගන්න පුලුවන් ඒ Server වල කොච්චර වෙන වෙන Sites තියෙනවද කියලා, ඒ එකක හරි මොකක් හරි අවුලක්, Shell Upload වගේ තිබ්බොත් අපේ Site එකේ DB එක Dump කරගන්න එක ලොකු වැඩක් නෙමෙයි. අදටත් මේ මොහොතෙත් ලොකු ලොකු හැකර්ලා ඕවා කරනවා, රිංගපු ගමන් කොහොම හරි Stealth Backdoor එකක් හදලා තියලා එන්නේ ආයෙ රිංගන්න. පොඩි පොඩි හැකර්ලා මොකක් හරි හැක් කරලා හැම තැනම කැගහලා ගූ ගාගගත්තට වැඩ කාරයො කියවන්නෙ නැ, උන් අවුරුදු ගනන් data වලට Access තියාගෙන ඉන්නවා, හොද Underground forum එකක IRC එකකට සෙට් වෙලා නිකං අහලා බලන්නකො උන්ගේ ලොගින්ස් Database එක කොහොමද කියලා, 5m කියන්නෙ මොකක්ද කියලා හිතෙයි :D [/COLOR][/SIZE][/CENTER] [/QUOTE]
Insert quotes…
Verification
Asuwa dahayen wadi kalama keeyada?
Post reply
Top
Bottom