Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
thekos
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
thekos
10y ago
LastPass does actually know URLs. After logging into LastPass.com, you can navigate to https://lastpass.com/getaccts.php (only accessible post authentication with a valid session cookie.) This will return an XML document wi
2.
▲
by
thekos
11y ago
Taviso has been on a rampage.
3.
▲
by
thekos
12y ago
Yep. Here's the code from nginx: https://github.com/nginx/nginx/blob/master/src/http/ngx_http...
4.
▲
by
thekos
12y ago
You can go back further by modifying the startTime parameter in the download link. https://maps.google.com/locationhistory/b/0/kml?startTime=14...
5.
▲
by
thekos
12y ago
This works also, and doesn't require a hosted file: https://xss-game.appspot.com/level6/frame#data:text/plain,al...
6.
▲
by
thekos
13y ago
SSH tunneling, of course! But seriously, the github wiki says that it uses SSL also.
7.
▲
by
thekos
13y ago
Here's the direct streams: http://livestream-f.akamaihd.net/142499_129958_13c898be_1_20... Or lower quality: http://livestream-f.akamaihd.net/142499_129958_13c898be_1_55... http://livestream
8.
▲
by
thekos
13y ago
They are claiming, over their twitter account, that the email was faked: https://twitter.com/purevpn/status/386700121053736963
9.
▲
by
thekos
13y ago
Update URL can be found here: http://www.huluwa.org/download/platfrom/android/update.json
10.
▲
by
thekos
13y ago
Appears that it cascaded across all of their nameservers. Seems like it could be an attack (remote or local DoS condition bug, since all users can create their own zones), or maybe just a random bug - hopefully they'll update us.
11.
▲
by
thekos
13y ago
From the #linode IRC channel, caker (CEO) states it was a segfault in bind. 13:53:14 caker@ : They operate completely independently, other than loading from the same zones. This looks to be a segfault in bind itself