Wilders Security Forums  

Go Back   Wilders Security Forums > Official ESET Support Forum > ESET Home Users Products Forum > ESET Smart Security
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old August 10th, 2012, 07:41 PM
berryracer's Avatar
berryracer berryracer is offline
Very Frequent Poster
 
Join Date: Jan 2008
Location: Dubai, UAE
Posts: 1,640
Exclamation Huge security hole in Eset's Licensing!!

I need a moderator to contact me immediately so I can show you how easily one could get people's username / password and use their licenses on the Eset page!!

I am shocked that an Antivirus company can make it very easily for people to steal usernames / passwords!

Thank god I didn't renew my license!

Once I am contacted I will show you how easily you can steal anyone's username / password so you can pass it on to the concerned department!
-------------------------------------------------------------------------------------------------------------------------------------------------------------

I have found a very easy way to steal someone's Eset license directly from the Eset site,

Pls inform Eset that I am ready to show them exactly how to replicate this security whole which allows anyone to view someone else's password if they know his email


I expect to receive a 2 year license for ESS valid to be installed on 3 PCs if I prove to Eset how an ESS license can be stolen and an easy fix to this security hole
__________________
ASUS G75VW-T1086V
CPU: i7-3610QM 2.30/3.30 GHz.
Memory: 16 GB DDR3 1600 Mhz. RAM
Storage: 256GB SSD + 1TB HDD
Graphics: GeForce GTX 670M 3GB
Screen: 17.3' Full HD LED Screen

Last edited by berryracer : August 10th, 2012 at 08:31 PM.
  #2  
Old August 10th, 2012, 10:04 PM
Dark Shadow's Avatar
Dark Shadow Dark Shadow is offline
Massive Poster
 
Join Date: Oct 2007
Location: USA
Posts: 4,550
Default Re: Huge security hole in Eset's Licensing!!

And if they refuse to give you a free License will you refuse to help?. DHYB on the free license.
__________________
OS X 10.8.3 - 2.9 GHz Intel core i7 - 8 GB 1600 MHz DDR3 - 750 SATA HD - Intel HD 4000 Graphics 512 MB.
  #3  
Old August 10th, 2012, 10:20 PM
berryracer's Avatar
berryracer berryracer is offline
Very Frequent Poster
 
Join Date: Jan 2008
Location: Dubai, UAE
Posts: 1,640
Default Re: Huge security hole in Eset's Licensing!!

Quote:
Originally Posted by Dark Shadow
And if they refuse to give you a free License will you refuse to help?. DHYB on the free license.

well I am doing them a HUGE favor because if you see how easy it is to grab someone else's license your jaw will drop in awe if you see that a big security company such as ESET makes it very easy for others to steal their customers' licenses

I have nothing to lose, I am doing a favor to ESET and I expect a small reward. Asking for 1 license is worthless if you look at the glitch I have accidentally found

Also, I have been using Eset's products since 8 years and paying them annually this is the least I deserve I think
__________________
ASUS G75VW-T1086V
CPU: i7-3610QM 2.30/3.30 GHz.
Memory: 16 GB DDR3 1600 Mhz. RAM
Storage: 256GB SSD + 1TB HDD
Graphics: GeForce GTX 670M 3GB
Screen: 17.3' Full HD LED Screen
  #4  
Old August 10th, 2012, 10:30 PM
Dark Shadow's Avatar
Dark Shadow Dark Shadow is offline
Massive Poster
 
Join Date: Oct 2007
Location: USA
Posts: 4,550
Default Re: Huge security hole in Eset's Licensing!!

Well if its as you say,then thats not good at all and probably should be a private matter.Perhaps a PM of one of the Eset support staff at wilders.
__________________
OS X 10.8.3 - 2.9 GHz Intel core i7 - 8 GB 1600 MHz DDR3 - 750 SATA HD - Intel HD 4000 Graphics 512 MB.
  #5  
Old August 10th, 2012, 10:34 PM
berryracer's Avatar
berryracer berryracer is offline
Very Frequent Poster
 
Join Date: Jan 2008
Location: Dubai, UAE
Posts: 1,640
Default Re: Huge security hole in Eset's Licensing!!

Quote:
Originally Posted by Dark Shadow
Well if its as you say,then thats not good at all and probably should be a private matter.Perhaps a PM of one of the Eset support staff at wilders.
yes exactly, I am waiting for a PM for someone from the mods to discuss this
__________________
ASUS G75VW-T1086V
CPU: i7-3610QM 2.30/3.30 GHz.
Memory: 16 GB DDR3 1600 Mhz. RAM
Storage: 256GB SSD + 1TB HDD
Graphics: GeForce GTX 670M 3GB
Screen: 17.3' Full HD LED Screen
  #6  
Old August 11th, 2012, 01:12 AM
Marcos Marcos is online now
Eset Moderator
 
Join Date: Nov 2002
Posts: 14,186
Default Re: Huge security hole in Eset's Licensing!!

You can PM me if you're able to prove how to get a "victim's" license details without having access to the user's computer/network.
  #7  
Old August 11th, 2012, 01:26 AM
berryracer's Avatar
berryracer berryracer is offline
Very Frequent Poster
 
Join Date: Jan 2008
Location: Dubai, UAE
Posts: 1,640
Default Re: Huge security hole in Eset's Licensing!!

Quote:
Originally Posted by Marcos
You can PM me if you're able to prove how to get a "victim's" license details without having access to the user's computer/network.

Hi, I have sent you a PM
__________________
ASUS G75VW-T1086V
CPU: i7-3610QM 2.30/3.30 GHz.
Memory: 16 GB DDR3 1600 Mhz. RAM
Storage: 256GB SSD + 1TB HDD
Graphics: GeForce GTX 670M 3GB
Screen: 17.3' Full HD LED Screen
  #8  
Old August 11th, 2012, 02:04 AM
zfactor's Avatar
zfactor zfactor is offline
Massive Poster
 
Join Date: Mar 2005
Location: on my zx10-r
Posts: 4,274
Default Re: Huge security hole in Eset's Licensing!!

well im for sure interested though i highly doubt eset would have a exploit like this not defending them or anything but this kind of stuff normally has a ton of time put in and yes i know many av's have exploits. but im for sure interested to see what comes of this.
__________________
Meatwad you're up next, with your knock-knock.
Meatwad make the money see. Meatwad get the honeys G. Drivin in my car, living like a star ice on my fingers and my toes, and im a taurus

"Some days your the windshield. Some days your the bug"
Eset ESS V6 / Webroot WSA / Avast! IS V8
  #9  
Old August 11th, 2012, 02:59 AM
berryracer's Avatar
berryracer berryracer is offline
Very Frequent Poster
 
Join Date: Jan 2008
Location: Dubai, UAE
Posts: 1,640
Default Re: Huge security hole in Eset's Licensing!!

Quote:
Originally Posted by zfactor
well im for sure interested though i highly doubt eset would have a exploit like this not defending them or anything but this kind of stuff normally has a ton of time put in and yes i know many av's have exploits. but im for sure interested to see what comes of this.

I just sent the proof to the mod and he verified it, NEVER say never
  #10  
Old August 11th, 2012, 03:17 AM
aladdin's Avatar
aladdin aladdin is offline
Very Frequent Poster
 
Join Date: Jan 2006
Location: Oman
Posts: 2,262
Default Re: Huge security hole in Eset's Licensing!!

Quote:
Originally Posted by berryracer
I just sent the proof to the mod and he verified it, NEVER say never
You seem like you have discovered moon. It is a well known fact, the temporary trial licenses (30 days) for ESET are available as warez. It is their policy.......
__________________
aladdin™
Samsung Galaxy Note II, Samsung Galaxy S3, Google Nexus 10 and Google Nexus 7

Last edited by Cudni : August 11th, 2012 at 06:42 AM. Reason: mod edit
  #11  
Old August 11th, 2012, 03:19 AM
zfactor's Avatar
zfactor zfactor is offline
Massive Poster
 
Join Date: Mar 2005
Location: on my zx10-r
Posts: 4,274
Default Re: Huge security hole in Eset's Licensing!!

which is what i was thinking^^
__________________
Meatwad you're up next, with your knock-knock.
Meatwad make the money see. Meatwad get the honeys G. Drivin in my car, living like a star ice on my fingers and my toes, and im a taurus

"Some days your the windshield. Some days your the bug"
Eset ESS V6 / Webroot WSA / Avast! IS V8
  #12  
Old August 11th, 2012, 03:52 AM
berryracer's Avatar
berryracer berryracer is offline
Very Frequent Poster
 
Join Date: Jan 2008
Location: Dubai, UAE
Posts: 1,640
Default Re: Huge security hole in Eset's Licensing!!

Quote:
Originally Posted by aladdin
You seem like you have discovered moon. It is a well known fact, the temporary trial licenses (30 days) for ESET are available as warez. It is their policy.......


what the heck are you talking about? What trial license? I am talking about a breach that could allow ppl to steal others' full and valid licenses

*
__________________
ASUS G75VW-T1086V
CPU: i7-3610QM 2.30/3.30 GHz.
Memory: 16 GB DDR3 1600 Mhz. RAM
Storage: 256GB SSD + 1TB HDD
Graphics: GeForce GTX 670M 3GB
Screen: 17.3' Full HD LED Screen

Last edited by Cudni : August 11th, 2012 at 06:42 AM. Reason: mod edit
  #13  
Old August 14th, 2012, 02:42 PM
tommy456 tommy456 is offline
Regular Poster
 
Join Date: Jun 2011
Posts: 136
Default Re: Huge security hole in Eset's Licensing!!

Quote:
Originally Posted by berryracer
what the heck are you talking about? What trial license? I am talking about a breach that could allow ppl to steal others' full and valid licenses

*
Yeah but without the victims registered e-mail address there is no risk , or if there is then that would be a concern im sure
  #14  
Old August 15th, 2012, 03:08 AM
berryracer's Avatar
berryracer berryracer is offline
Very Frequent Poster
 
Join Date: Jan 2008
Location: Dubai, UAE
Posts: 1,640
Default Re: Huge security hole in Eset's Licensing!!

Quote:
Originally Posted by tommy456
Yeah but without the victims registered e-mail address there is no risk , or if there is then that would be a concern im sure

It is still a risk, I know a few people's email addresses that I was able to get their licenses, for testing of the security hole only I didn't misuse this

It's been fixed now
__________________
ASUS G75VW-T1086V
CPU: i7-3610QM 2.30/3.30 GHz.
Memory: 16 GB DDR3 1600 Mhz. RAM
Storage: 256GB SSD + 1TB HDD
Graphics: GeForce GTX 670M 3GB
Screen: 17.3' Full HD LED Screen
 

Wilders Security Forums > Official ESET Support Forum > ESET Home Users Products Forum > ESET Smart Security « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 08:53 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums