Related
THIS WOULD BE A FREE SERVICE, OFFERED TO ALL XDA-MEMBERS
alright, while sitting in the xda IRC somebody complained about everyone using rapidsahre links, them dying, and the need for a new XDA posting service.
this coupled with the completely empty XDA ftp, we got to talking. Chainfire suggested using usenet for the roms/files/whatever. he said he attempted to get it more widely used years ago, but nobody really cared.
now, my thought is i setup a webUI frontend for the xda usenet group, and make it alot like the current xda-ftp stucture is. simple uploading, simple downloading. no real knowedlge of usenet needed to do it, and the files would be good for at least a year on the servers.
maybe even write a FTP frontend for the group.
what are your guy's thoughts on this. no download limits, no YOU HAVE TO WAIT 9HOURS TO DOWNLOAD ANOTHER ROM, no YOURE ALREADY DOWNLOADING A FILE LOLWAIT, no random deletions of files, uncensored content uploading(you can figure what that means), and super-fast downloading of ROMs, with a que.
we need your thoughts on this project.
edit:
usenet is a pay service, however the concept of this is to provide a free frontend for the usenet posts to the xda community. IT WILL BE FREE.
IT WILL BE FREE
I'm pdbogen, and I approve of this message.
/me is in favor and would love to help make this happen somehow.
posting in an epic thread
i believe this is a genius plan. I SHALL HELP MAKE IT HAPPEN!
I'm all for faster file transfers and less "LOL YOU BETTER WAIT BECAUSE YOU'RE A NOOB" messages.
Who would be supplying the servers? And how much would it cost to set up?
between me and turbzy, we have enough resources/servers to handle a good 3 mirrors of the setup, so we're good on the money/servers.
we just have to write the webinterface and get people to use it.
if you and the freenode crew whip up something good and badass, i will aggressively promote it on my heavily-trafficked websites
(bumping thread)
very nice idea indeed, just what xda was missing =]
This sounds awesome, I say go for it!
me and turbzy will start work on this as soon as we get a few uploaders/chefs willing to use the new system in place of rapidshare.
it's toomuch work to just write and then have wasted because nobody uses it.
the idea is, we're going to maybe write a built in FTP server. so as far as uploading is concerned to upload a file you'll
a) go to the site, and be presented with a upload form. just select the zip/rar and press upload. it'll upload to the multiple backend servers, and give you a direct link. OR possible upload it to a few other options, im thinking maybe add a rapidshare+mediafire+multiple FTP mirrors.
or b) connect to our custom FTP server and upload the file that way. after the file is completed, it will upload it to the other servers and give you the direct url. i'll make a more simplistic description later.
all in all, everyone i've talked ot about the idea thinks its genius. help us get people on board=
oh also, i'm thinking there may be a registration system needed for uploading. it's unfortunate we couldnt just sync it with the XDA login system, but it'll be needed to post verified files. it'd be better for file organization and whatnot.
then again, we may be able to sync with the XDA userdatabase if it gets big enough.
cerjam said:
oh also, i'm thinking there may be a registration system needed for uploading. it's unfortunate we couldnt just sync it with the XDA login system, but it'll be needed to post verified files. it'd be better for file organization and whatnot.
then again, we may be able to sync with the XDA userdatabase if it gets big enough.
Click to expand...
Click to collapse
I doubt Flar and company would let you touch the user database. However, maybe they could host the front-end on their servers? For example: fileshare.xda-developers.com
That would then interact with all your middleman servers, etc etc.
So the XDA server would just be the front-end, but it would redirect the file to your servers... is this possible?
Or even better, have XDA auth the user (via login to the forums) and then have it redirect to your server with some fun authing stuff. Then you guys don't need the database, but it would still be secure.
yaaaap. that was my idea, just attempt login. much simpler and lord knows precious xda administration wouldnt dare have their hands on a project meant to..actually maintain the files produced by the community!
they won't help us. even if they offered, i think running them seperate from this site is better and safer.
bump because i actually care about the project.
just a thought and i didnt see it covered
how will the virus scanning be implemnted. will you put a system in place at you end so its get scanned after uploadthen accepted or will you be asking the uploaders to scan them.
just a note because im pretty sure the current FTP scans files and lets you know whether the threaten. but if you leave it multiple uploaders then maybe well get ton of viruses littering the database
i am unsure as to how to handle that. thats why im thinking a user database would be useful, somehow mark the legit uploads with a key of some sort. i'll think about that, but im sure we can handle that.
from what ive seen clamav is pretty easy to tack on to whatever system youre using
edit: as for user database integration, all we'd need xda to do is toss a small api on their server that lets us verify accounts and return a userid that we can associate posts with. we wouldn't need actual access to the database
all im saying is yes you can verify the user who uploads the stuff
but we can verify the stuff
there was a problem a while back with ppl adding cracked apps to the ftp and viruses aswell
i don't think we care about cracked apps. thats somewhat the point.
cerjam said:
i don't think we care about cracked apps. thats somewhat the point.
Click to expand...
Click to collapse
well I think you should. This isn't a warez site, nor should it be affiliated to anything to do with it.
It sounds more to me like you're trying to set up a new warez service based on the good name of xda-devs!
Don't know if you all consider this "warez" or not, but I don't. I call it selling open source code. If you do, feel free to just delete this.
Also, I'm aware someone already posted FreeRoot (same thing as this), but I just wanted to crack it myself for fun/experience.
Enter anything for email and key, it doesn't check them (no contact with the server at all).
EasyRoot - uppit
Wasnt quite sure were to ask, so i just posted here.
Hoping someone can help.
Anyone know of a website that will allow me to create my own website with simple building tools, i.e. does not require me to know code or html. And is free or cheap? Thank you for any help.
Andromendous said:
Wasnt quite sure were to ask, so i just posted here.
Hoping someone can help.
Anyone know of a website that will allow me to create my own website with simple building tools, i.e. does not require me to know code or html. And is free or cheap? Thank you for any help.
Click to expand...
Click to collapse
You can try Skylium (completely free). I have my web there and I didn't have problems in one year. Without banners and ads. With a lot of utilities: joomla, php, mysql...
Saludos
M110A2
Thanks for the quick response however, it seems to be all in Spanish...
Yes it's in Spanish, but it has a lot of services.
During a lot of years I had the web in 000Webhost (English), but it gave me some problems. You can test it.
I had another web in Aruba.it (not free, but cheap, and several languages). But I don't remember if it had building tools.
Saludos
M110A2
Probably the best site I've used is wix. It's super easy and looks awesome and everything is easy enough to edit with a little bit of practice.
Thanks for the suggestions guys, ill give em a shot
Wix is nice, but lots of ad and very proprietary (can not extract your data and move it somewhere) and you must pay to have your own domain name etc
In the same spirit you have jimdo and weebly which are less markettingly aggressive
jimdo.com
weebly.com
And Silex, which is free, open source, no hidden costs, but with far less templates (you are supposed to start your site from a blank page)
silex.me
Wix is my fave!
Thought I'll update this website for the times. My favorite website builder is hPage ( https://www.hpage.com ). I have created two websites there already and it's really good. I love all the features and it's very affordable too compared to other website builders.
Andromendous said:
Wasnt quite sure were to ask, so i just posted here.
Hoping someone can help.
Anyone know of a website that will allow me to create my own website with simple building tools, i.e. does not require me to know code or html. And is free or cheap? Thank you for any help.
Click to expand...
Click to collapse
Try to use Wix, I've heard a lot of good things about it.
Wix is my fave
Andromendous said:
Wasnt quite sure were to ask, so i just posted here.
Hoping someone can help.
Anyone know of a website that will allow me to create my own website with simple building tools, i.e. does not require me to know code or html. And is free or cheap? Thank you for any help.
Click to expand...
Click to collapse
Hello, I suggest trying sites.google.com. I know that this is a google, and maybe you don't want to share data with them.
I use it for ~4 sites and I don't know much code (except some HTML things), and it didn't ask to know it. Yeah, you can add HTML blocks yourself. But all can be done through interface.
I will not publish any links to the examples, because you can find through your favourite search engine yourself.
Google gives a "domain" like "sites.google.com /view/{name which can be configured before and after publishing}"
If you don't want that, try services for DDNS like noip .com or just shorten a link to the page you want (for example, bit .ly does that).
I also use Jimdo and it only annoys in some places where google's service is better (like >100 fonts (Jimdo offers only one, similar to Times)).
Give them a try.
HTH,
Anonymous
Hello XDA,
I'm releasing a modified version of Kik to the public. This is version 7.9 - without video playback support. I created this in January after discovering an exploit within Kik Messenger that allowed me to crash other users. This gave birth to what are known as "lag codes", which are long strings that cause instability within Kik.
If you're on kik and people post strings like:
0la.3p.snai7.eo.490.0la.3p.snai7.eo.490.0la.3p.snai7.eo.490.0la.3p.snai7.eo.490.(etc)(shout out to TL1 for his work in this area)
you will lag, ios and android are affected by this.
I have modified the parser within Kik to stop those short lag codes from causing lag.
I issued these Pikik clients to only a handful of individuals (hardcoded their usernames and disabled editing) , typically being used to crash pedophile chatrooms. Someone in this handful decided to leak the file. They attached AndroRat and distributed it under my credibility and name and I don't appreciate that.
The exploit (along with other exploits I've discovered) and suggested fixes have been emailed to Kik without reply.
This is version 7.9 without video support. You can do the same with 8.0+ as I have done but I don't want to distribute that yet. as I'd like to make a menu via smali to add additional features to Kik. (Confirmed fake camera is possible among other things) Hopefully within that time, Kik will patch the exploits I've emailed them about.
Please be respectful to one another with Pikik, it can cause issues for other users without Pikik if you so choose.
I will create additional links if necessary. Happy Easter.
May 6 update:
Added Kik 8.0apk for video playback. Added another layer of lag protection.
-gunther210
Admin note: APK has been removed due to legal complaint from Kik. Do not re-upload. https://github.com/xda/Notices/blob/master/2015/Kik-20150624.md
Warning, I would not recommend trusting. The app was leaked. Gunther stated that he would release the application to the public in the month of July.
424aca said:
Warning, I would not recommend trusting. The app was leaked. Gunther stated that he would release the application to the public in the month of July.
Click to expand...
Click to collapse
Hey mate, that wasn't the case.
I planned to publish the technical details of the xss exploit within kik.com in July but that also leaked.
I encourage anyone to decompile this apk and look for anything malicious or suspicious if they don't trust it. It isn't my style to do that.
I understand you're just looking out for the community.
Take care mate.
Apologies and Results
Yah sorry to come out as aggressive or as if I was pointing fingers. If you are truly gunther, then you are very much aware of the presence of individuals on kik who post links which intercept IP's and I see a new exploit regarding a phishing link "video" with your name on it etc. I just want individuals to be careful. Because I made seemingly false accusations, I have done the task of running a scan on the app in a virtual machine (genymotion) running a various security scans on it. Only avast gave a security warning, but upon rescan it was gone. I have uploaded four images of four different tests. Please, proceed with caution for this application is as wonderful as you anticipate it to be. To those that have root and xposed, i would advise using I believe xprivacy to block any SMS or call log interaction which this app may present if the proof supplied below does not suffice your paranoia which I seem to be having right now.
-424aca
View attachment 3247779
View attachment 3247780
View attachment 3247781
View attachment 3247782
Thx for the tests.
I'm aware of the games being played on Kik. That's not likely to go away but their lack of willingness to correct the problems leaves everyone vulnerable. At least this protects a regular user from another regular user being annoying. The xss exploit needs to be patched immediately. The amount of people getting phished is amazing. I regret sharing info about that exploit.
As I mentioned long ago to anyone on Kik who asks the status quo kik hacker question "can you get ips thru kik?" My response has always been the image handler. The way kik handles their images has been exploitable forever but I'm not yet certain to what degree. After reporting the 2 "main" exploits to Kik, I moved onto checking out my suspicions and getting some confirmation/vindication.
The entire handler for images is a wreck. It's possible to create corrupt image headers (see my pastebin) which will crash Android upon receiving said picture. It's possible to create corrupt image headers to get IP addresses via images (confirmed on iOS by Host 4/6/2015). It's possible to create corrupt image headers to crash Android for lack of associated action.
It's possible to send videos as Gallery, Gallery as Camera, Camera as "Gunther", custom icons, and most likely offsite pngs (apache log taps). It is possible to build a card that exploits these same flaws but with more parameters. The card:// handler is probably only "more secure" because less people use it.
The fact that I can send you a picture that crashes your kik is absurd and it was obvious to me this style of attack would be possible from the first glance at it.
I like Kik but it is a dangerous hangout lately.
424aca said:
Yah sorry to come out as aggressive or as if I was pointing fingers. If you are truly gunther, then you are very much aware of the presence of individuals on kik who post links which intercept IP's and I see a new exploit regarding a phishing link "video" with your name on it etc. I just want individuals to be careful. Because I made seemingly false accusations, I have done the task of running a scan on the app in a virtual machine (genymotion) running a various security scans on it. Only avast gave a security warning, but upon rescan it was gone. I have uploaded four images of four different tests. Please, proceed with caution for this application is as wonderful as you anticipate it to be. To those that have root and xposed, i would advise using I believe xprivacy to block any SMS or call log interaction which this app may present if the proof supplied below does not suffice your paranoia which I seem to be having right now.
-424aca
View attachment 3247779
View attachment 3247780
View attachment 3247781
View attachment 3247782
Click to expand...
Click to collapse
So is it safe or not?
I don't like its dark background. Fix it
PrinceCoc said:
I don't like its dark background. Fix it
Click to expand...
Click to collapse
I changed mine to white.
I recommended you do not try this app. Probably the maker of this modified version add some malicious things. Or something for stealing personal infos
GreekDragon said:
I recommended you do not try this app. Probably the maker of this modified version add some malicious things. Or something for stealing personal infos
Click to expand...
Click to collapse
Damn I've already been using it
GreekDragon said:
I recommended you do not try this app. Probably the maker of this modified version add some malicious things. Or something for stealing personal infos
Click to expand...
Click to collapse
I didn't. Instead of talking dumb ****, why don't you decompile it and check for yourself. I have no desire to take anyone's info.
ODSTZ3RO said:
Damn I've already been using it
Click to expand...
Click to collapse
You're fine mate.
Me Host and Link have been working together on adding several features for pikik2 and their similar releases.
For now pikik2 will be:
Based on 8.1.x
Probable:
Turn off read receipts (Host)
Turn off typing notification (Host)
AntiLagV2 (Gunther)
Fake-Camera Mod (Gunther)
AntiLagv2 secondary check (Link)
(Theme choices by download if below doesn't work)
Possible:
Turning links on/off
AntiLagv2 override by conditional regex by input
Selectable Theme by input
Selectable Image background (Link/Host)*
*This works now but needs some more tweaking.
If you or someone you know is a smali pro, please PM me.
We are hoping to build these ideas as switches from a panel within kik
Also. If you're interested in building an Xposed Module to do these things, please PM me and I will help point to where the above things are taking place.
All credits will be given
If someone wants to reach us on kik. Check in #pikik
Appreciative said:
I didn't. Instead of talking dumb ****, why don't you decompile it and check for yourself. I have no desire to take anyone's info.
You're fine mate.
Me Host and Link have been working together on adding several features for pikik2 and their similar releases.
For now pikik2 will be:
Based on 8.1.x
Probable:
Turn off read receipts (Host)
Turn off typing notification (Host)
AntiLagV2 (Gunther)
Fake-Camera Mod (Gunther)
AntiLagv2 secondary check (Link)
(Theme choices by download if below doesn't work)
Possible:
Turning links on/off
AntiLagv2 override by conditional regex by input
Selectable Theme by input
Selectable Image background (Link)
If you or someone you know is a smali pro, please PM me.
We are hoping to build these ideas as switches from a panel within kik
Also. If you're interested in building an Xposed Module to do these things, please PM me and I will help point to where the above things are taking place.
All credits will be given
If someone wants to reach us on kik. Check in #pikik
Click to expand...
Click to collapse
OK I wasn't going to delete it I just changed its appearance a bit.
NOT working?
I have tried to download the File but i keep getting an error saying I don't have the app installed when I do? Maybe it's because a recent update that I did yesterday April 14, 2016. Any help?
Delete the kik you already have
INTRUTHS said:
I have tried to download the File but i keep getting an error saying I don't have the app installed when I do? Maybe it's because a recent update that I did yesterday April 14, 2016. Any help?
Click to expand...
Click to collapse
Yeah man your in the future, please tell us what its like in 2016
I reeeaally enjoy this app. Buuuut I like the new material design update (8.2.0) more. Pls update.
gallowsArisen said:
I reeeaally enjoy this app. Buuuut I like the new material design update (8.2.0) more. Pls update.
Click to expand...
Click to collapse
Didn't you read the post, their working on it, if you know someone that's good with smali tell them to contact us at #pikik
theattackingdildo said:
Didn't you read the post, their working on it, if you know someone that's good with smali teller them to contact us at #pikik
Click to expand...
Click to collapse
Sorry. I'll look out for anyone with experience. I'm in a few good groups so I'll ask around.
gallowsArisen said:
Sorry. I'll look out for anyone with experience. I'm in a few good groups so I'll ask around.
Click to expand...
Click to collapse
I'll ask some people about it.
First, let me/us say thanks for all the support. It helps keep us motivated to get pikik2 how we want it.
Updates:
We have pretty much narrowed down all the future feature locations.
We are still stuck in the same spot however.
We need a little advice or guidance on how to use toggles and inputs.
We can build the toggles, we can associate them in the places they need to be. But, we aren't sure how to do the following:
We need a generic or simple way to write and read toggle values into the database or preferences. We need to be able to pull these into smali. We are getting progress on Smali knowledge and may be able to import the values ourselves but we need to have a better understanding of how to implement this.
We want to create a check box, no problem. How do we add the value of check box (or inputs) into the db or prefs in the simplest way?
Next, how do we then read the value out of these?
We are reading to use <checkboxprefs but that's not working easy for us so far. We have tried literally hundreds of tests at this point.
My last test was duplicating the widget check box and associating it.
We need help. Someone. Give us a run down of the fastest way to what we need, please. As always, credits will be given.
Thanks mates,
gunther210
I will make a thread asking for more direct help when I have enough posts to do so. Anyone out there who has any advice, we will investigate.
Thanks again.
There are extensive possibilities to edit an XDA account. Your can specify and fiddle with almost everything. But:
The essential option 'delete account' is missing!
This should have been implemented directly after the 'register account' functionality. Actually even before that!
Please fix this! (In fact, this is not a 'feature request' but a bug report.)
Regards.
lefr0nk said:
There are extensive possibilities to edit an XDA account.........
Click to expand...
Click to collapse
This may not be something that is clearly pointed out for many but, it's available.
If you go to the following link...
https://www.xda-developers.com/contact/
... You'll see various options available to you like the "Change username or cancel an account."
If that preferred method doesn't work out for you, you can also contact an administrator like @MikeChannon via PM or email and he'll be more than happy to help you out with account management/support.
Good Luck!
~~~~~~~~~~~~~~~
Unless asked to do so, PLEASE don't PM me regarding support. Sent using The ClaRetoX Forum App on my Apple Macintosh.
lefr0nk said:
There are extensive possibilities to edit an XDA account. Your can specify and fiddle with almost everything. But:
The essential option 'delete account' is missing!
This should have been implemented directly after the 'register account' functionality. Actually even before that!
Please fix this! (In fact, this is not a 'feature request' but a bug report.)
Regards.
Click to expand...
Click to collapse
??
Please follow the link below to have your deletion processed:
https://www.xda-developers.com/gdpr-data/
Mike
Ibuprophen said:
This may not be something that is clearly pointed out for many but, it's available.
If you go to the following link...
https://www.xda-developers.com/contact/
... You'll see various options available to you like the "Change username or cancel an account."
If that preferred method doesn't work out for you, you can also contact an administrator like @MikeChannon via PM or email and he'll be more than happy to help you out with account management/support.
Click to expand...
Click to collapse
Sorry, it's NOT available. What you tell me to do, is to fill out the contact form. That's not what is widely considered as a web interface.
Or would you say, the 'register new user' functionality was complete by saying: "Well, just send an email to the administrator and beg for an account."
I suppose not. I'm disappointed by that answer.
MikeChannon said:
??
Please follow the link below to have your deletion processed:
https://www.xda-developers.com/gdpr-data/
Mike
Click to expand...
Click to collapse
Yeah, that's better than nothing. But:
I can edit my user profile and settings just like that, while I am logged in. I don't have to type in my user name and email again and again. How does that work? Well: because I am logged in already!
But the said deletion process totally ignores that I am logged in. I have to enter my details again and then have a verification... yaaawn.
Why do sites like XDA put up so many artificial obstacles for people to get away.
The easier a process is, the more likely people will follow it. So, if the process was just one or two clicks away, your could boost the number of canceled accounts. Wouldn't that be something?
lefr0nk said:
Yeah, that's better than nothing. But:
I can edit my user profile and settings just like that, while I am logged in. I don't have to type in my user name and email again and again. How does that work? Well: because I am logged in already!
But the said deletion process totally ignores that I am logged in. I have to enter my details again and then have a verification... yaaawn.
Why do sites like XDA put up so many artificial obstacles for people to get away.
The easier a process is, the more likely people will follow it. So, if the process was just one or two clicks away, your could boost the number of canceled accounts. Wouldn't that be something?
Click to expand...
Click to collapse
Well small sites and sites that moderate content before it shows in open forums may allow user controlled account deletion. However, many larger sites and sites that permit user content to show instantly, generally do not allow users/members to delete their own accounts. Why? well because it opens the door to assive amounts of abuse. A user could post all kinds of bad stuff and then delete the account thus making the culprit uncatchable, unstoppable. You see an account deletion that is compliant with GDPR meansno trace is left of the account. That means remaining posts cannot be tracked and cannot even be found since the user database no longer recognises the account. So we would have no idea where the user had posted or how many times... important if it is abusive or spam content.
In addition user controlled account deletion would render anning users effectively useless because the user wouldb still need access to the sites account deletion system even if banned. It would allow them to delete their account and simply create another one immediately.
We have multiple thousands of users online at a time, 60000 posts per day and because we cannot monitor all that in real time we have to have some control over what the "bad" users are doing. Changing user names and creating / deleting accounts every other day are things we would be 100% guaranteed to suffer from if we handed over direct control. We have massive numbers of users and inevitably we are constantly challenged by hackers, DDOS attackers, spammers and other abusers and the ability to create and delete accounts with ease is not a good idea for us or the "good" users who would suffer the ill effects if we changed things.
Mike
Thanks for the clarification.