+ Reply to Thread
Page 1 of 2 12 LastLast
Results 1 to 15 of 22

Thread: Splicer's CSS History Checker

  1. #1

    Join Date
    02.01.09
    Location
    Behind you.
    P2P Client
    uTorrent / Azureus / kTorrent
    Posts
    531
    Activity Longevity
    0/20 18/20
    Today Posts
    0/5 ssssss531

    Splicer's CSS History Checker

    We all know BitTorrent trackers hate cheaters, and will go to many lengths to catch us and ban us. It seems some have adopted a new method; using CSS history leaks to see whether you have visited SB-I. Not cool. So, after a bit of snooping on the internet, I found a CSS history checker... but there were flaws, such as it checked whether the user had visited Google.com; but Google.com always changes domain depending on your country, so that checker was not the most accurate.

    Hence, I created my own. Simply modifying the code (nothing special) and adding some instructions so that you can find how safe you are.

    I present to you:

    CSS History Checker

    As you can see there are two tests to be carried out. Test 1 tells us whether sites within the same internet browser session can find out where you've been. Test 2 tells us if sites in futures sessions can find out where you've been in the past.

    You can then adjust your settings accordingly so as not to be caught by this method!
    Last edited by splicer; 02.07.09 at 12:53.
    Reply With QuoteReply With Quote
    Thanks

  2. Who Said Thanks:

    Blocker (06.01.10) , antiseedbox (06.07.09) , Renk (02.07.09) , shoulder (02.07.09) , alpacino (02.07.09) , slikrapid (02.07.09) , anon (02.07.09) , SBfreak (02.07.09) , shadowww (02.07.09) , anonftw (02.07.09) , Dark Knight (02.07.09) , Mihai (02.07.09) , cheatos (02.07.09)

  3. #2
    now i can confirm that css leak works ...

    btw i could not respond to your PM cuz i'm not a full member yet...


    I am cheatos

    Reply With QuoteReply With Quote
    Thanks

  4. #3

    Join Date
    24.02.09
    Location
    █pIrateS Isles█
    P2P Client
    vUze Xtreme & mRatio
    Posts
    291
    Activity Longevity
    0/20 18/20
    Today Posts
    0/5 ssssss291
    ThanX For Posting dude..

    hmm after Performing Both Tests Successfully....I got negative Results...i.e.

    Not Visited

    * Wikipedia

    so this means i m Safe From Css leaks , Currently Using FIreFoX 3.0.11.


    Also is the Test made To Work Only with the Site "http://www.wikipedia.org/" ?
    Reply With QuoteReply With Quote
    Thanks

  5. #4

    Join Date
    02.01.09
    Location
    Behind you.
    P2P Client
    uTorrent / Azureus / kTorrent
    Posts
    531
    Activity Longevity
    0/20 18/20
    Today Posts
    0/5 ssssss531
    Quote Originally Posted by Dark Knight View Post
    Also is the Test made To Work Only with the Site "http://www.wikipedia.org/" ?
    At the moment, yes; I needed a large site which could handle a little extra data flow, and which would not redirect users to a specialised site. Google wouldn't have worked so well because if I had used "http://www.google.com" it would have most like redirected to a specialised site depending on your IP - Google.ca for Canadians. So the CSS check would have failed, making you think you were safe, when you might not be.

    So I chose Wikipedia.org; this can be changed at anytime, and more sites can be added but ultimately they work all the same.
    Last edited by splicer; 02.07.09 at 13:55.
    Reply With QuoteReply With Quote
    Thanks

  6. Who Said Thanks:

    anonftw (02.07.09)

  7. #5
    Not working for me....I am using SRware Iron.So If it worked somehow do I have to use this every time I visit SB-i like 100 times per day??


    Anyway for protection I use SRware's Incognito mode.
    Last edited by SBfreak; 02.07.09 at 14:04.
    Reply With QuoteReply With Quote
    Thanks

  8. #6

    Join Date
    02.01.09
    Location
    Behind you.
    P2P Client
    uTorrent / Azureus / kTorrent
    Posts
    531
    Activity Longevity
    0/20 18/20
    Today Posts
    0/5 ssssss531
    Quote Originally Posted by SBfreak View Post
    Not working for me....I am using SRware Iron.So If it worked somehow do I have to use this every time I visit SB-i like 100 times per day??


    Anyway for protection I use SRware's Incognito mode.
    Like it says, more testing is needed; so far I've only tested Firefox with it, but today I plan to test it with more internet browsers.

    The sitew which I borrowed he code from said it only worked with Firefox...
    __________________________________________________ _

    Also, the incognito mode is meant to be the private mode for Chrome/Iron, so it probably doesn't keep a history, so it wouldn't work.

    You've gone incognito. Pages you view in this window won't appear in your browser history or search history, and they won't leave other traces, like cookies, on your computer after you close the incognito window.
    Last edited by splicer; 02.07.09 at 16:25.
    Reply With QuoteReply With Quote
    Thanks

  9. #7
    Moderator anon's Avatar
    Join Date
    01.02.08
    Posts
    39,435
    Activity Longevity
    7/20 19/20
    Today Posts
    5/5 ssss39435
    Quote Originally Posted by SBfreak View Post
    Not working for me....I am using SRware Iron.So If it worked somehow do I have to use this every time I visit SB-i like 100 times per day??
    I think it's just a checker. You'd need to disable history or use any other settings that make the test say you haven't visited Wikipedia even though you did.

    Quote Originally Posted by splicer View Post
    The sitew which I borrowed he code from said it only worked with Firefox...
    Mmm, that'd explain Wikipedia showing up as not visited even though I did click the link and have history enabled on Opera and IE. Will test it in Firefox when I get home.
    "I just remembered something that happened a long time ago."
    Reply With QuoteReply With Quote
    Thanks

  10. #8

    Join Date
    08.06.09
    Location
    Hell
    P2P Client
    Deluge,Utorrent,Vuze
    Posts
    243
    Activity Longevity
    0/20 18/20
    Today Posts
    0/5 ssssss243
    Now i see how i got banned from X264.me.
    Reply With QuoteReply With Quote
    Thanks

  11. #9

    Join Date
    02.01.09
    Location
    Behind you.
    P2P Client
    uTorrent / Azureus / kTorrent
    Posts
    531
    Activity Longevity
    0/20 18/20
    Today Posts
    0/5 ssssss531
    Quote Originally Posted by anon View Post
    Mmm, that'd explain Wikipedia showing up as not visited even though I did click the link and have history enabled on Opera and IE. Will test it in Firefox when I get home.
    Okay then, I did some testing and these are the result:

    Firefox: Works
    Konqueror: Works
    Opera: Doesn't work
    Internet Explorer (7 and 8): Doesn't work (no surprises)
    Safari: Works
    Google Chrome: Works
    SRWare Iron: Works

    _____________________________________________

    IE, both 7 and 8, give me this error:

    Message: 'document.defaultView' is null or not an object
    Line: 116
    Char: 2
    Code: 0
    URI: http://csshistorychecker.webs.com/
    Anyone got any ideas? I think this is also what is causing Opera to not work correctly with the CSS History Checker.
    Last edited by splicer; 02.07.09 at 17:45.
    Reply With QuoteReply With Quote
    Thanks

  12. Who Said Thanks:

    anonftw (02.07.09) , anon (02.07.09) , cheatos (02.07.09)

  13. #10
    Moderator anon's Avatar
    Join Date
    01.02.08
    Posts
    39,435
    Activity Longevity
    7/20 19/20
    Today Posts
    5/5 ssss39435
    Quote Originally Posted by splicer View Post
    I think this is also what is causing Opera to not work correctly with the CSS History Checker.
    I don't have any CSS knowledge, but Opera has an error console - perhaps you can find more information there.
    "I just remembered something that happened a long time ago."
    Reply With QuoteReply With Quote
    Thanks

  14. #11
    Moderator
    shoulder's Avatar
    Join Date
    12.04.08
    Location
    I*** D* M*****
    Posts
    4,827
    Activity Longevity
    3/20 19/20
    Today Posts
    0/5 sssss4827
    Keep in mind this is not a "real" CSS Leak but a simple Javascript as it seems.

    The attack using CSS works in every browser and doesn't need Java, Flash, ... .

    Check here:

    Sniffing Browser History with NO Javascript!



    ------------------------------>>>>>>>>>> <<<<<<<<<<------------------------------

    Reply With QuoteReply With Quote
    Thanks

  15. Who Said Thanks:

    anonftw (02.07.09) , alpacino (02.07.09) , splicer (02.07.09) , cheatos (02.07.09)

  16. #12

    Join Date
    02.01.09
    Location
    Behind you.
    P2P Client
    uTorrent / Azureus / kTorrent
    Posts
    531
    Activity Longevity
    0/20 18/20
    Today Posts
    0/5 ssssss531
    Agreed, but ultimately both methods are stopped in their tracks by the same thing; clearing your history and disabling your web browser from keeping a history.
    Last edited by splicer; 02.07.09 at 19:53.
    Reply With QuoteReply With Quote
    Thanks

  17. #13
    Moderator anon's Avatar
    Join Date
    01.02.08
    Posts
    39,435
    Activity Longevity
    7/20 19/20
    Today Posts
    5/5 ssss39435
    Confirmed, it works on Firefox 3.5. As already known, disabling history is enough to prevent the leak.
    "I just remembered something that happened a long time ago."
    Reply With QuoteReply With Quote
    Thanks

  18. #14

    Join Date
    02.01.09
    Location
    Behind you.
    P2P Client
    uTorrent / Azureus / kTorrent
    Posts
    531
    Activity Longevity
    0/20 18/20
    Today Posts
    0/5 ssssss531
    Quote Originally Posted by anon View Post
    I don't have any CSS knowledge, but Opera has an error console - perhaps you can find more information there.
    The error console didn't help, but the Java console brought up a whole bunch of things... too long for the sake of displaying on SB-I, but if anyone wants to have a look, it is attached to this post.
    Attached Files Attached Files
    Reply With QuoteReply With Quote
    Thanks

  19. #15
    Moderator anon's Avatar
    Join Date
    01.02.08
    Posts
    39,435
    Activity Longevity
    7/20 19/20
    Today Posts
    5/5 ssss39435
    Are you sure they're related to your checker? It doesn't use Java, right?

    Edit: just enabled Java and refreshed the page, and the console is spammed with the same messages. Strange.
    "I just remembered something that happened a long time ago."
    Reply With QuoteReply With Quote
    Thanks

+ Reply to Thread
Page 1 of 2 12 LastLast

Tags for this Thread

Posting Permissions

  • You may post new threads
  • You may post replies
  • You may not post attachments
  • You may not edit your posts
  •