Share

Press CTRL+A If Any Post Is Not Seen Please share or checkout free offers below to unlock this page.

Ipad 2: Enter your email and get Apple iPad 2 - Back to School

Pages

nutanemptyssoftandgames

IP

Sign by Danasoft - For Backgrounds and Layouts

Earn Money And 0.1 Minimum Payout

Earn Money To Reveiw Websites

Earn Money Easily And 0.1 Payout

Earn Money And 0.1 Minimum Payout

Earn Money Easily And Payout 1.0

Earn Money And With No Minimal payment

Earn2Life: your online money-making opportunity!

Saturday, March 24, 2012

Hacking Paypal’s Payment portal using JavaScript – Critical Vulnerability

hacking paypal buy now button
PayPal allows payments and money transfers to be made through the Internet. It also performs payment processing for online vendors. Normally when you pay the website using Paypal’s “pay now” button, as soon as you make the payment you will be redirected to a secret download page, where in you can find download links for the described product. Remember this download page is secret, but anyone who knows the URL of this page can access it. Now this hack works only for this type of download pages, i.e. for websites using Paypal’s “Pay Now” button.
Such websites having PayPal portal for payment are vulnerable and can be easily exploited using simple javascript. The javascript bypasses the payment page and redirects the user to download page. below is the piece of code:

javascript:top.location=document.getElementsByName('return')[0].value; javascript:void(0);

Bypass Paypal Payments Easily By JavaScript

-How do i use this code? 

Example Websites :

  1. Magic Tricks Collection
  2. Adsence Tracker
  3. ETC

First make sure you are using Javascript enabled Browser, better use Mozilla Firefox.
Next, Go to the respective download or ‘buy now’ page of the website and copy-paste the above Javascript in the address bar and hit enter. viola!, you are now being redirected to the download page!
To make it simple, Just create on bookmark of this javascrpt. To do so, Just drag and drop this Bookmarklet >> Paypal-Hack on to your bookmarks area of the Mozilla firefox. Now every time you find any website using such Paypal’s “Buy Now” Button, just hit this bookmarklet.

-How do i find more Websites?

You can easily find more infected websites by using google dork: “this order button requires a javascript enabled browserthis order button requires a javascript enabled browserget all the websites that are using this outdated button.
Nutan's Soft And Games (www.nutansoftandgames.blogspot.com)

No comments:

Post a Comment