Hacker News new | past | comments | ask | show | jobs | submit login

I asked the guy who did this what the entry point was,

The file name was not guessed, it was a shell command injection on the website, doing a ls listed an interestingly named file "allinfo.txt". Looking at this, it had the ssh username/password...




Cool, that's why it's called HACKER news here :)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: