1. Cross-site scripting (reflected)
1.2. http://www.rockyou.com/developer/opensocial/opensocial-css.php [title parameter]
1.4. http://www.rockyou.com/login/ [name of an arbitrarily supplied request parameter]
1.6. http://www.rockyou.com/login/index.php [name of an arbitrarily supplied request parameter]
2. Cleartext submission of password
2.1. http://www.rockyou.com/login.php
2.2. http://www.rockyou.com/login.php
2.3. http://www.rockyou.com/login.php
3. Password field with autocomplete enabled
3.1. http://www.rockyou.com/login.php
3.2. http://www.rockyou.com/login.php
3.3. http://www.rockyou.com/login.php
3.4. http://www.rockyou.com/login.php
3.5. http://www.rockyou.com/login.php
3.6. http://www.rockyou.com/login.php
4. Cookie scoped to parent domain
4.1. http://www.rockyou.com/ajaxticker.php
4.2. http://www.rockyou.com/login.php
4.3. http://www.rockyou.com/tos.php
5. Cross-domain Referer leakage
6. Cross-domain script include
6.1. http://www.rockyou.com/login.php
6.2. http://www.rockyou.com/rymini/
6.3. http://www.rockyou.com/rymini/index.html
6.4. http://www.rockyou.com/tos.php
7. Cookie without HttpOnly flag set
7.1. http://www.rockyou.com/ajaxticker.php
7.2. http://www.rockyou.com/login.php
7.3. http://www.rockyou.com/tos.php
8.1. http://www.rockyou.com/checkuser.php
8.2. http://www.rockyou.com/js/lightbox/prototype.js
8.3. http://www.rockyou.com/login.php
8.4. http://www.rockyou.com/rymini/
8.5. http://www.rockyou.com/rymini/index.html
8.6. http://www.rockyou.com/tos.php
9. Content type incorrectly stated
9.1. http://www.rockyou.com/ajaxticker.php
9.2. http://www.rockyou.com/checkuser.php
9.3. http://www.rockyou.com/create-slideshow-js-combined.php
9.4. http://www.rockyou.com/events/include/ajaxtrackevent.php
9.5. http://www.rockyou.com/homepage/js/jquery.fancybox-1.3.1/ajax.txt
9.6. http://www.rockyou.com/partner/funmobility-ajax.php
9.7. http://www.rockyou.com/show_my_gallery-ajax.php
Severity: | High |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /developer/opensocial |
GET /developer/opensocial Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.rockyou.com |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:54:09 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=2734 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/css Content-Length: 416 table {color:#414141} th {text-align:left;font .titlebar {background:url(http:/ .featurebox {background-color:#c0c0c0 |
Severity: | High |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /developer/opensocial |
GET /developer/opensocial Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.rockyou.com |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:54:05 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=2674 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/css Content-Length: 415 table {color:#414141} th {text-align:left;font .titlebar {background:url(http:/ .featurebox {background-color:#c0c0c0 |
Severity: | High |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login/ |
GET /login/?%27--%3E%3C/style Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; AAMBLFLAG=SET; lastlogin=1303164368; sns_type=rockyou.com |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:06:26 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=1186 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 493 <form method='post' id='redirect_form' action='https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login/ |
GET /login/?%27--%3E%3C/style Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; AAMBLFLAG=SET; lastlogin=1303164368; sns_type=rockyou.com |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:06:34 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=1276 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 496 <form method='post' id='redirect_form' action='https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login/index.php |
GET /login/index.php?%27--%3E Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; AAMBLFLAG=SET; lastlogin=1303164319 |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:06:09 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=1341 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 502 <form method='post' id='redirect_form' action='https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login/index.php |
GET /login/index.php?%27--%3E Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; AAMBLFLAG=SET; lastlogin=1303164319 |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:06:16 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=1132 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 505 <form method='post' id='redirect_form' action='https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:53 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Set-Cookie: lang=en; expires=Thu, 28-Apr-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303163573; expires=Wed, 27-Jul-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11959 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 35767 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... <div id="createform" style="display:none"> <form name="createforma" id="createforma" method="post" action="" onsubmit="finishLoginNew( Enter password to register.<br /> ...[SNIP]... </span> <input type="password" name="pass" id="pass" value=""><br /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:53 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Set-Cookie: lang=en; expires=Thu, 28-Apr-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303163573; expires=Wed, 27-Jul-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11959 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 35767 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... <div id="loginform" style="display:none"> <form name="loginforma" id="loginforma" method="post" action="" onsubmit="finishLogin();" Enter password to Login..<br /> ...[SNIP]... <input type="hidden" name="mode" value="login"> <input type="password" name="pass" id="pass" value=""><br /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:53 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Set-Cookie: lang=en; expires=Thu, 28-Apr-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303163573; expires=Wed, 27-Jul-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11959 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 35767 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... <div id='createform2' style="display:none"> <form name='createform2a' id="createform2a" method="post" style="padding:0;margin:0 <input type="hidden" name="email"> ...[SNIP]... <td><input id="pass" type="password" name="pass"></td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php?birthyear=3 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; AAMBLFLAG=SET; lastlogin=1303164383; sns_type=rockyou.com |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:08:58 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 22:08:57 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303164538; expires=Wed, 27-Jul-2011 22:08:58 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 22:08:57 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11853 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 36457 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... <div id="loginform" style="display:none"> <form name="loginforma" id="loginforma" method="post" action="" onsubmit="finishLogin();" Enter password to Login..<br /> ...[SNIP]... <input type="hidden" name="mode" value="login"> <input type="password" name="pass" id="pass" value=""><br /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:53 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Set-Cookie: lang=en; expires=Thu, 28-Apr-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303163573; expires=Wed, 27-Jul-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11959 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 35767 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... <div id="loginform" style="display:none"> <form name="loginforma" id="loginforma" method="post" action="" onsubmit="finishLogin();" Enter password to Login..<br /> ...[SNIP]... <input type="hidden" name="mode" value="login"> <input type="password" name="pass" id="pass" value=""><br /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php?birthyear=3 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; AAMBLFLAG=SET; lastlogin=1303164383; sns_type=rockyou.com |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:08:58 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 22:08:57 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303164538; expires=Wed, 27-Jul-2011 22:08:58 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 22:08:57 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11853 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 36457 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... <div id='createform2' style="display:none"> <form name='createform2a' id="createform2a" method="post" style="padding:0;margin:0 <input type="hidden" name="email"> ...[SNIP]... <td><input id="pass" type="password" name="pass"></td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php?birthyear=3 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; AAMBLFLAG=SET; lastlogin=1303164383; sns_type=rockyou.com |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:08:58 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 22:08:57 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303164538; expires=Wed, 27-Jul-2011 22:08:58 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 22:08:57 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11853 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 36457 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... <div id="createform" style="display:none"> <form name="createforma" id="createforma" method="post" action="" onsubmit="finishLoginNew( Enter password to register.<br /> ...[SNIP]... </span> <input type="password" name="pass" id="pass" value=""><br /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:53 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Set-Cookie: lang=en; expires=Thu, 28-Apr-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303163573; expires=Wed, 27-Jul-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11959 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 35767 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... <div id='createform2' style="display:none"> <form name='createform2a' id="createform2a" method="post" style="padding:0;margin:0 <input type="hidden" name="email"> ...[SNIP]... <td><input id="pass" type="password" name="pass"></td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:53 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Set-Cookie: lang=en; expires=Thu, 28-Apr-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303163573; expires=Wed, 27-Jul-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11959 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 35767 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... <div id="createform" style="display:none"> <form name="createforma" id="createforma" method="post" action="" onsubmit="finishLoginNew( Enter password to register.<br /> ...[SNIP]... </span> <input type="password" name="pass" id="pass" value=""><br /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /ajaxticker.php |
POST /ajaxticker.php User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Cache-Control: no-cache Content-Type: application/x-www-form Host: www.rockyou.com Accept-Encoding: gzip, deflate Content-Length: 276 set_default_publish_size ...[SNIP]... |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:54:39 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Cache-Control: no-cache, must-revalidate Set-Cookie: istack=%7C%7C%7Cwww202 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=14138 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 25 {"mode":"song","data":[]} |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:53 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Set-Cookie: lang=en; expires=Thu, 28-Apr-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303163573; expires=Wed, 27-Jul-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11959 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 35767 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /tos.php |
GET /tos.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; lastlogin=1303163572; AAMBLFLAG=SET |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:05:19 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 22:05:18 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303164319; expires=Wed, 27-Jul-2011 22:05:19 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 22:05:18 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=12770 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 32905 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <link href="/css/standard.css" rel="stylesheet" type="text/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php?birthyear=3 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; AAMBLFLAG=SET; lastlogin=1303164383; sns_type=rockyou.com |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:08:58 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 22:08:57 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303164538; expires=Wed, 27-Jul-2011 22:08:58 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 22:08:57 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11853 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 36457 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... <noscript> <a href="http://rocku <img src="http://rocku </a> ...[SNIP]... <noscript> <a href="http://rocku <img src="http://rocku </a> ...[SNIP]... </script> <script src="https://www.google ...[SNIP]... <!-- Start Quantcast tag --> <script type="text/javascript" src="https://edge ...[SNIP]... <noscript> <img src="https://pixel style="display: none" height="1" width="1" alt="Quantcast"/> ...[SNIP]... <noscript> <a href='http://rocku <img src='http://rocku </a> ...[SNIP]... <noscript> <a href="http://rocku <img src="http://rocku </a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:53 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Set-Cookie: lang=en; expires=Thu, 28-Apr-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303163573; expires=Wed, 27-Jul-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11959 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 35767 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... </script> <script src="https://www.google ...[SNIP]... <!-- Start Quantcast tag --> <script type="text/javascript" src="https://edge ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /rymini/ |
GET /rymini/ HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:12 GMT Server: Apache/2.2 Last-Modified: Wed, 13 Apr 2011 01:04:51 GMT ETag: "adc3-4a0c26554d2c0" Accept-Ranges: bytes Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=2102 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 44483 <!doctype html> <html lang="en"> <head> <script src="js/jquery.js" type="text/javascript">< <script src="js/jquery.anchor.js" type="text/javascript">< <script type="text/java ...[SNIP]... </div> <script src="https://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /rymini/index.html |
GET /rymini/index.html HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive Referer: http://newton.newton User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:17 GMT Server: Apache/2.2 Last-Modified: Wed, 13 Apr 2011 01:04:51 GMT ETag: "adc3-4a0c26554d2c0" Accept-Ranges: bytes Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=2206 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 44483 <!doctype html> <html lang="en"> <head> <script src="js/jquery.js" type="text/javascript">< <script src="js/jquery.anchor.js" type="text/javascript">< <script type="text/java ...[SNIP]... </div> <script src="https://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /tos.php |
GET /tos.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; lastlogin=1303163572; AAMBLFLAG=SET |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:05:19 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 22:05:18 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303164319; expires=Wed, 27-Jul-2011 22:05:19 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 22:05:18 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=12770 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 32905 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <link href="/css/standard.css" rel="stylesheet" type="text/ ...[SNIP]... </script> <script src="https://www.google ...[SNIP]... <!-- Start Quantcast tag --> <script type="text/javascript" src="https://edge ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /ajaxticker.php |
POST /ajaxticker.php User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Cache-Control: no-cache Content-Type: application/x-www-form Host: www.rockyou.com Accept-Encoding: gzip, deflate Content-Length: 276 set_default_publish_size ...[SNIP]... |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:54:39 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Cache-Control: no-cache, must-revalidate Set-Cookie: istack=%7C%7C%7Cwww202 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=14138 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 25 {"mode":"song","data":[]} |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:53 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Set-Cookie: lang=en; expires=Thu, 28-Apr-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303163573; expires=Wed, 27-Jul-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11959 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 35767 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /tos.php |
GET /tos.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; lastlogin=1303163572; AAMBLFLAG=SET |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:05:19 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 22:05:18 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303164319; expires=Wed, 27-Jul-2011 22:05:19 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 22:05:18 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=12770 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 32905 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <link href="/css/standard.css" rel="stylesheet" type="text/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /checkuser.php |
POST /checkuser.php HTTP/1.1 User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Cache-Control: no-cache Content-Type: application/x-www-form Host: www.rockyou.com Cookie: istack=%7C%7C%7Cwww202 Accept-Encoding: gzip, deflate Content-Length: 6 user=3 |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:59:29 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=7502 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 40 Invalid Email Format! (joe@somebody.com) |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /js/lightbox/prototype.js |
GET /js/lightbox/prototype.js HTTP/1.1 Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.rockyou.com |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:54:26 GMT Server: Apache/2.2 Last-Modified: Wed, 09 Sep 2009 21:38:59 GMT ETag: "b9f3-4732be922c2c0" Accept-Ranges: bytes Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=2743 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: application/x-javascript Content-Length: 47603 /* Prototype JavaScript framework, version 1.4.0 * (c) 2005 Sam Stephenson <sam@conio.net> * * THIS FILE IS AUTOMATICALLY GENERATED. When sending patches, please diff * against the source tree ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /login.php |
GET /login.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:53 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Set-Cookie: lang=en; expires=Thu, 28-Apr-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303163573; expires=Wed, 27-Jul-2011 21:52:53 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 21:52:52 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=11959 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 35767 <script> function positionAdDiv(centerDivID var centerDiv = document.getElementById var adDiv = document.getElementById // Get ...[SNIP]... e"; setError(""); document.getElementById( // show superpets login hint } } else { if (status == "Invalid Email Format! (joe@somebody.com)") status = "Invalid Email Format! (joe@somebody.com)"; document.getElementById( } return 1; } // Check if the new email is one that can be verified by 3rd party scripts. If so, return the name to be displayed ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /rymini/ |
GET /rymini/ HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:12 GMT Server: Apache/2.2 Last-Modified: Wed, 13 Apr 2011 01:04:51 GMT ETag: "adc3-4a0c26554d2c0" Accept-Ranges: bytes Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=2102 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 44483 <!doctype html> <html lang="en"> <head> <script src="js/jquery.js" type="text/javascript">< <script src="js/jquery.anchor.js" type="text/javascript">< <script type="text/java ...[SNIP]... <br>support@rockyou.com</span> ...[SNIP]... <span>pr@rockyou.com</span> ...[SNIP]... <a href="mailto:pr@rockyou.com" style="color:#00aeef;">pr@rockyou.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /rymini/index.html |
GET /rymini/index.html HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive Referer: http://newton.newton User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:52:17 GMT Server: Apache/2.2 Last-Modified: Wed, 13 Apr 2011 01:04:51 GMT ETag: "adc3-4a0c26554d2c0" Accept-Ranges: bytes Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=2206 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 44483 <!doctype html> <html lang="en"> <head> <script src="js/jquery.js" type="text/javascript">< <script src="js/jquery.anchor.js" type="text/javascript">< <script type="text/java ...[SNIP]... <br>support@rockyou.com</span> ...[SNIP]... <span>pr@rockyou.com</span> ...[SNIP]... <a href="mailto:pr@rockyou.com" style="color:#00aeef;">pr@rockyou.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.rockyou.com |
Path: | /tos.php |
GET /tos.php HTTP/1.1 Host: www.rockyou.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: lang=en; lastlogin=1303163572; AAMBLFLAG=SET |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 22:05:19 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Set-Cookie: ryuserid=deleted; expires=Sun, 18-Apr-2010 22:05:18 GMT; path=/; domain=.rockyou.com Set-Cookie: lastlogin=1303164319; expires=Wed, 27-Jul-2011 22:05:19 GMT; path=/; domain=.rockyou.com Set-Cookie: sns_type=deleted; expires=Sun, 18-Apr-2010 22:05:18 GMT; path=/; domain=.rockyou.com Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=12770 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 32905 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <link href="/css/standard.css" rel="stylesheet" type="text/ ...[SNIP]... <br />Email: support@rockyou.com <br /> ...[SNIP]... <p> A. Send an email message to support@rockyou.com with the word "Remove" in the subject field; or </p> ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.rockyou.com |
Path: | /ajaxticker.php |
POST /ajaxticker.php User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Cache-Control: no-cache Content-Type: application/x-www-form Host: www.rockyou.com Accept-Encoding: gzip, deflate Content-Length: 276 set_default_publish_size ...[SNIP]... |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:54:39 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Cache-Control: no-cache, must-revalidate Set-Cookie: istack=%7C%7C%7Cwww202 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=14138 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 25 {"mode":"song","data":[]} |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.rockyou.com |
Path: | /checkuser.php |
POST /checkuser.php HTTP/1.1 User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Cache-Control: no-cache Content-Type: application/x-www-form Host: www.rockyou.com Cookie: istack=%7C%7C%7Cwww202 Accept-Encoding: gzip, deflate Content-Length: 6 user=3 |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:59:29 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=7502 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 40 Invalid Email Format! (joe@somebody.com) |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.rockyou.com |
Path: | /create-slideshow-js |
GET /create-slideshow-js Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.rockyou.com |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:54:26 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=8322 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 103975 function Ghost_Popup(objName) { this._objName = objName; this._obj = ''; } Ghost_Popup.prototype. Ghost_Popup.prototype. Ghost_Popup.prototype. Ghost_Popup.prototype._o ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.rockyou.com |
Path: | /events/include |
POST /events/include User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Cache-Control: no-cache Content-Type: application/x-www-form Host: www.rockyou.com Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Content-Length: 43 name=rockyou-login |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:54:00 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=6386 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 1 1 |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.rockyou.com |
Path: | /homepage/js/jquery |
GET /homepage/js/jquery User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Accept: */* Cache-Control: no-cache Host: www.rockyou.com Accept-Encoding: gzip, deflate |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:54:12 GMT Server: Apache/2.2 Last-Modified: Tue, 21 Sep 2010 01:53:05 GMT ETag: "2bc-490bb4a334240" Accept-Ranges: bytes Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=300 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/plain; charset=UTF-8 Content-Length: 700 <div style="width:400px <h2>This comes from ajax request</h2> <p> Lorem ipsum dolor sit amet, consectetur adipiscing elit. Aenean non velit. Donec pharetra, felis ut tristique a ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.rockyou.com |
Path: | /partner/funmobility-ajax |
POST /partner/funmobility-ajax User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Cache-Control: no-cache Content-Type: application/x-www-form Host: www.rockyou.com Cookie: istack=%7C%7C%7Cwww202 Accept-Encoding: gzip, deflate Content-Length: 12 mode=carrier |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:56:14 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Cache-Control: no-cache, must-revalidate Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=106024 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 31 {"mode":"carrier","data" |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.rockyou.com |
Path: | /show_my_gallery-ajax.php |
POST /show_my_gallery-ajax.php User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Cache-Control: no-cache Content-Type: application/x-www-form Host: www.rockyou.com Cookie: istack=%7C%7C%7Cwww202 Accept-Encoding: gzip, deflate Content-Length: 6 vote=1 |
HTTP/1.1 200 OK Date: Mon, 18 Apr 2011 21:56:20 GMT Server: Apache/2.2 X-Powered-By: PHP/5.2.6 Cache-Control: no-cache, must-revalidate Vary: Accept-Encoding,User X-RyHeader: www202.rockyou.com took D=15140 microseconds to serve this request P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE" Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 38 {"mode":"vote","data":["1 |