How To Get Free 30Gigs.Com Email Account (Without Invitation)
By Angsuman Chakraborty, Gaea News NetworkTuesday, November 29, 2005
30Gigs.com is an invitation-only email service which offers a whopping 30 Gigabytes of storage for your email. As a reference GMail currently offers around 2.5 GB storage. Unfortunately they poorly implemented the registration interface which can be trivially compromised as shown below.
Here is a proof-of-concept form which allows you to get a 30Gig email account without an invitation, thanks to Retard from Cyber-Crimes via Ch0de.
Note: The data you provide above is directly transmitted to 30gigs.com website. Your data doesn’t pass through our servers.
A trivial fix requires a single line of code. A simple check for referrer should do the trick. So don’t be surprised if the form above suddenly fails to work. It is simply a proof-of-concept.
I am very curious to see how soon they plug this hole as a measure of their responsiveness.
polly