Giter VIP home page Giter VIP logo

alphabetic's Introduction

Alphabetic Exploit

This is a cloaking proxy launcher targeted at Hapara Highlights and Hapara Filter. It can open unfiltered tabs that are invisible on the teacher dashboard.

It will likely also work with other Chrome web filters and monitoring software, as well as with most network-wide filters.

To use it, go to xlak.github.io/alphabetic

Notice about the proxy servers

The main proxy server is currently experiencing a strange issue where elements on a page fail to load properly. For now, use a proxy with cloaking support instead.

Known Support

Filter Supported
Hapara Highlights ✔️
Hapara Filter ✔️
iBoss ✔️
Lightspeed 🧪
ZScaler 🧪
FortiGate 🧪
Securly
LanSchool
GoGuardian
Blocksi

✖ = Unknown

🧪 = Untested but likely works

✔️ = Tested and fully working

Not Working?

Open an issue on this repo with as many details as possible and I'll try to help.

alphabetic's People

Contributors

xlak avatar

Stargazers

mathologicify avatar  avatar gemsvidø avatar Me avatar

Watchers

 avatar mathologicify avatar

alphabetic's Issues

Notice: Second stage payload taken down by 000webhost

The free site hosting the second stage payload for the Alphabetic exploit was reported for abuse and taken down. Apparently this happened because of too many requests being made to the site per day.

The Alphabetic exploit is unfortunately broken for now because of this. In the event that I cannot get the site back online, I will release an update with a new server for the second stage payload.

Click here button not redirecting anymore

Chromebook managed - Lenovo 500e 2nd gen

I follow all the steps, including the bookmarklet and the ctrl-p print, then when I click the button, it no longer redirect me. I know what it's supposed to do because it was working yesterday.

Bug

The proxy is blocked by I-boss (the codeword "codesandbox" is blocked. Therefore, codesandbox won't work.

Question

I'm new to JavaScript, but it seems like the code that is executed is obfuscated, would you mind deobfuscating so I can make a few edits? (That is the point of Github)

Thing

I made a data URL that can bypass a hapara filter session, which makes you have to be on only a few sites. This data URL tricks hapara into thinking it is mathacademy.com. You can replace the "https%3A//mathacademy.com" with https%3A// then the URL. It opens my duplicate of 3kh0 games.

data:text/html,%3Cscript%3E%0A%20%20%20%20var%20win%3Dwindow.open%28%22https%3A//mathacademy.com%22%29%0A%20%20%20%20win.document.write%28%60%0A%20%20%20%20%3Ciframe%20src%3D%22https%3A//m1kecraf.github.io/echo/projects.html%22%20height%3D%22100%25%22%20width%3D%22100%25%22%3E%3C/iframe%3E%3Cscript%3Ewindow.addEventListener%28%27beforeunload%27%2C%20function%28e%29%7Be.preventDefault%28%29%3Be.returnValue%20%3D%20%27%27%3B%7D%29%3B%3C%5C/script%3E%0A%20%20%20%20%60%29%0A%20%20%20%20window.close%28%29%0A%3C/script%3E

Question

What website do you use? And why did you obfuscate it?

Requires javascript: urls

When I clicked on the data url bookmark it said "please enable javascript URLs."
I cant upload screenshot

Stage 2 not working

I've gotten this exploit to work once, but every other time I try to use it, the "click here to try again" text shows as plaintext and clicking it does nothing. Am I missing something?

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.