Jow Forums can't even do it

Please try and find a security hole in my new webapp
gorz.space/
Thanks anons

Attached: IMG_20180128_131130.jpg (479x343, 28K)

Other urls found in this thread:

gorz-chat-v1.herokuapp.com/api/v1/chat/3/messages/
twitter.com/SFWRedditGifs

nypa

What do I get in return?

10$ if you actually do it

>blease do my work for free
nice try communist

np, comrade

Decent idea, forwarded the website to my Indian friends, they will remake it for a few hundred bucks under my name

op btfo

Stop spamming and do actually something what the fuck

>this.isUserLoggedIn=!1
lmao

what's that yellow thing called?

Brain cancer

fucking liar

Attached: knowyourmeme.png (697x271, 18K)

WHY WOULD YOU LIE ON THE INNERNET

League Of Legends

Jow Forums is full of linux fags that can't do basic hacking and just spam the shit out of everything

water is wet

I sent a custom POST request which just took the username I set(I tried it with "kurac"). Anyways, I think that's a hole in security as you can send messages with anyone's username without logging in?

op btfo

I am not OP nigga

Nvm misread your message

>tfw a bunch of anons click on the link and get logged in a database because they forgot to turn their proxy on

Attached: 1200px-Seal_of_the_Central_Intelligence_Agency.svg.png (1200x1200, 285K)

how did you misread "op btfo"
I forgive you though

but that's a very good point actually

It doesn't look like OP is deleting the data. we might be able to take down the server with reflection alone.

I misread it as "gtfo" heh

Op here, good luck :)

OP, do you have an account on your own site?

>online multiplayer

Attached: db8.jpg (420x480, 26K)

>2MB and 30000 lines of javascript for a simple chat application
the absolute state of modern webdev

Mr. steal yo username here
All messages stored at: gorz-chat-v1.herokuapp.com/api/v1/chat/3/messages/
kek