24/2/2011
-0-
A fun activity.
Requirements: Firefox with Firebug (or even Chrome with Dev mode) and some basic understanding of 'calls' and related things.
Go to Facebook. Enter your username (which in facebook's case is your email id) and next do not enter your password. Instead enter a wrong password.
Now Facebook Facebook will send you to a 'login_attempt' page.
Now enter you actual password.
In the 'Post' call to 'login.php', in parameters you will see your dear password getting 'pass'ed nakedly.
Isn't that fun.
-0-
A fun activity.
Requirements: Firefox with Firebug (or even Chrome with Dev mode) and some basic understanding of 'calls' and related things.
Go to Facebook. Enter your username (which in facebook's case is your email id) and next do not enter your password. Instead enter a wrong password.
Now Facebook Facebook will send you to a 'login_attempt' page.
Now enter you actual password.
In the 'Post' call to 'login.php', in parameters you will see your dear password getting 'pass'ed nakedly.
Isn't that fun.
P1: 'Standard Behaviour.'.
ReplyDeleteP2:'Really?'
P1:'Yes. Don't you even know that! that is how it is done'
P2:'Should I know all this?'
P1:'Idiot. And you work in this field!'