Torrent Invites - Get your free bittorrent tracker invitations! - Powered by vBulletin
Ad
Page 1 of 18 123411 ... LastLast
Results 1 to 10 of 171
Like Tree38Likes

Thread: Security Warning (CSS Hack)

  1. #1

    Posts
    3,079
    UPDATE [November 2011] Only Opera is still vulnerable to this hack (latest version of 11.52). All other browsers appear to have been patched and are no longer susceptible. This includes: Internet Explorer 9, FireFox 7, Chrome 15, and Safari 5.

    It has come to our attention that certain trackers (what.cd, x264, GFT and Tophos) are utilizing an internet browser exploit to identify and ban T-I members. The vulnerability is caused by some browsers' implementation of Cascading Style Sheets (CSS). This allows trackers to query your computer and identify which sites you have visited, including Torrent-Invites.com.


    Is your computer vulnerable?

    CSS Hack Test (without JavaScript)

    CSS Hack Test (with JavaScript)


    What can you do to protect yourself?


    OPTION 1 - Disable CSS Visited Links [Firefox Only]
    • Type "about:config" in the address bar
    • Type "layout.css.visited_links_enabled" in the filter list
    • Change the default value of "True" to "False" by double clicking it
    • Restart Firefox
    OPTION 2 - Disable Browser History [Firefox Only]
    • Tools --> Clear Recent History
    • Tools --> Options --> uncheck "Remember my browsing history"
    OPTION 3 - Use a Different Browser for TI
    • e.g. Use Firefox for TI and Internet Explorer for Trackers
    OPTION 4 - Temporarily Enable Private Browsing
    • [Firefox 3.5] Tools --> Start Private Browsing
    • [IE 8] Tools --> InPrivate Browsing
    • [Chrome] Press Ctrl+Shift+N (Incognito)
    • [Safari] Safari --> Private Browsing
    • [Opera] Opera button --> Tabs and Windows --> New Private Tab or Right click the new tab icon (+ symbol) --> New Private Tab
    NOTE: You will need re-enable Private Browsing each time you start the browser.


    Additional Information:
    CSS History Probing Explained
    Sniff Browser History Tutorial
    BrowserSpy Test Site
    StartPanicking Test Site


    UPDATES [October 10th, 2009]

    UPDATE 1 - HistoryBlock & NoScript Add-ons
    • NoScript only works with JavaScript based exploits
    • HistoryBlock does not work if you browse both sites at the same time*
    *HistoryBlock utilizes the tab closed & download complete addEventListeners to initiate a history wipe. That leaves you exposed if you have both sites open in separate tabs at the same time or open T-I from the same tab without going to an intermediate page first.

    UPDATE 2 - Disabling Browser History
    • Does not work in IE
    • Does not work in Opera
    • Does not work in Safari
    *Disabling history only works properly in Firefox.

    Last edited by Vegas; 10-25-2011 at 11:16 PM. Reason: Updated Opera Private Browsing Option (per Swftazmar)


  2. To remove ads become VIP. Inquire about advertising here.
  3. #2

    Posts
    570
    What about the chrome users ?

    I guess deleting browsing history will work here too. Correct me if I am wrong.

  4. #3
    Retired Staff

    Posts
    1,165
    I like having my history, so i now use noscript, hope i will not get banned for using it !!
    Thanks for the tip tough, highly appreciated.

  5. #4

    Posts
    80
    wudnt using one browser of T-I and another for trackers solve this prob...my guess is this might work 100%....with this users can keep their browse history without any fear of others finding out where else we r members of.

    just my thots...dont know if it works this way

  6. #5

    Posts
    3,079
    Quote Originally Posted by bmwxl33 View Post
    What about the chrome users ?

    I guess deleting browsing history will work here too. Correct me if I am wrong.
    Disabling history ONLY works properly in Firefox..


    Quote Originally Posted by MaaNYaN View Post
    wudnt using one browser of T-I and another for trackers solve this prob...
    Yes, a separate browser for trackers will also work.
    Last edited by Vegas; 10-10-2009 at 06:07 PM. Reason: Updated disabling browser history response.

  7. #6

    Posts
    1,442
    So they have moved up to banning T-I members with this now. Trackers such as GFT (I think) have been using this method to detect cheaters from forums such as SB-I for a while... bit of a shame they're using it on us now. Maybe it's becoming well known.

  8. #7

    Posts
    336

    If you are using mozilla:
    First of all, open your history tabs, delete all with keyword torrent-invites.com.
    Then install below plugin :
    History Blocker
    Add *.torrent-invites.com as your blacklist.

    Now you can use browser freely, together with history feature. No worries.

    Ive tested it. Works wonderfully.
    I hope I'm helping out.
    Cheers.
    Kitsigol, SimonFelix and raph like this.
    My big THANKS to: Pascualito, goover, konVILEeuted, smtsh, Knievel and The-Deh

  9. #8

    Posts
    250
    Those big private trackers are such meanies :(

    ...lets DDOS them :D



    lol

    But seriously: Download noscript set it to global whitelist in settings and find the blacklist exceptions and copy and paste all the URLs of every private tracker you belong too into that blacklist.

    I have always found noscript to be a pain in the arse because it blocks everything under the sun under its default global blacklist. Change it to global whitelist so flash and other user friendly stuff isn't killed in the process and block your tracker URLs.
    Last edited by wtfmate; 10-08-2009 at 06:57 AM.

  10. #9

    Posts
    563
    x264 sucks anyway, so it really dont matter either way.

    Oh and its only a matter of time before more trackers catch up.

  11. #10

    Posts
    124
    This vulnerability that allows trackers to query my computer and identify which sites I belong to works only with Browser History or it also checks my cookies ?
    Should I delete all my saved cookies ?

Page 1 of 18 123411 ... LastLast

LinkBacks (?)

  1. 06-27-2010, 12:59 AM
  2. 05-07-2010, 03:09 AM
  3. 04-30-2010, 02:57 AM
  4. 03-22-2010, 12:13 PM
  5. 03-03-2010, 11:33 PM
  6. 02-01-2010, 06:11 AM
  7. 01-16-2010, 02:13 PM
  8. 01-16-2010, 12:20 PM
  9. 12-08-2009, 07:57 PM
  10. 12-06-2009, 09:16 AM
  11. 12-04-2009, 07:33 PM
  12. 10-29-2009, 03:14 PM
  13. 10-26-2009, 06:51 AM
  14. 10-24-2009, 07:59 PM
  15. 10-14-2009, 12:41 PM
  16. 10-12-2009, 09:55 AM
  17. 10-12-2009, 09:46 AM
  18. 10-09-2009, 08:23 PM
  19. 10-09-2009, 04:13 PM
  20. 10-09-2009, 01:20 PM
  21. 10-09-2009, 02:14 AM
  22. 10-08-2009, 06:15 PM

Similar Threads

  1. CSS Hack
    By Ching_Fu in forum Help
    Replies: 5
    Last Post: 10-26-2011, 09:23 PM
  2. Replies: 0
    Last Post: 05-01-2011, 08:18 AM
  3. [Approved] CSS Hack publicity
    By Cpomer in forum Suggestions
    Replies: 15
    Last Post: 01-18-2011, 04:26 PM
  4. CSS Hack info test
    By Canadian in forum BitTorrent Discussion
    Replies: 5
    Last Post: 01-11-2011, 12:07 AM
  5. CSS Hack precaution procedures
    By the0ne in forum Suggestions
    Replies: 1
    Last Post: 10-19-2009, 09:16 PM

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •