[Developers only] Runegear.net Login [VB.Net 2010]

Dykerosoft said:
Post the source, we don't generally allow third party applications, as they can be infected.

I'm not saying that you would infect something, but just in case.

He's PMing the source privately, I believe. I don't think there are any 3rd party applications involved, besides possible debugged/built executable files if he sends the whole source over. At least at this point.
 
Yes, he is pm'ing it privately.

Btw, DarkCode.
Europe=By far, one of the best coders I have ever seen.
 
Dusk i'm not disputing that. I know he's a good coder and yes, if you want I'll pm you the full source. Ill just post the download link.
 
lol, i'm working on an update that will allow people to register with out going to the site. It downloads the captcha and asks for all the information, only thing is you need to wait 9000 hours before making a new account -.-
 
What's the significance of this? In all honesty, it's incredibly insecure and it doesn't have too many good uses. A good login script would be a php script that visual basic manipulates without passing any sql data.
 
Hm... well lets see. THERE IS NO WAY that the site owner would give me the mysql information. incredibly insecure? explain to me how the program is "insecure" lol.
 
DarkCore said:
Hm... well lets see. THERE IS NO WAY that the site owner would give me the mysql information. incredibly insecure? explain to me how the program is "insecure" lol.

You could edit the response in real time using a proxy (like Paros Proxy, for instance). Another (easily fixed) security whole is that, depending on how you coded it, they can just disconnect their internet and the error should allow the user to continue through. There's also the ability to simply use a hex editor and edit the POST url to your own PHP page that simply returns what it's looking for every time.

Those are all fixable, but still. There's more, but that's not to say Tate's idea was entirely sound, either.
 
Back
Top