Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
How to get linked from Dmoz instantly (hm2k.com)
2 points by hm2k on March 24, 2011 | hide | past | favorite | 2 comments


Exploiting HTML injection woes and Cross-Site Scripting vulnerabilities to get some backlinks is bad advice, really bad advice.

If you discover HTML injection bugs or XSS vulnerabilities you can contact the owners of the site and tell them about the problem, doing responsible disclosure - the DMOZ people are running a forum, bugs can be reported there. After the problem is fixed you can write a blog article if you think that it is really that interesting. Or you remain silent about the vulnerability you have discovered. Publishing the vulnerability without telling the owners is questionable. Writing some tutorial about how to get links out of this existing vulnerability is bad style.


Dmoz and AOL were contacted, they did not reply.

This vulnerability was already in the public domain before I wrote my article.

The article is written as a satirical proof of concept to highlight the issue.

Thanks for your concern.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: