Owner-UnArm3D
Showing posts with label SQL Injections. Show all posts
Showing posts with label SQL Injections. Show all posts

Monday, 9 June 2014

Hello Readers,

In this post i will tell you the online way to crack MD5 Hashes.


If you don't want to use online method you can also use "Abel and Cain" software to crack 
password.

Read our Article on Abel and cain



If you want to try online method then try one of the website which i used earlier is 


You can try other websites by just search on google online hd5 Hashes cracker.

If you like our topic then share it and don't forget to add us on social media's.
Hello Readers,

In this post i will tell the way to crack MD5 Hashes.We have to crack MD5 hashes during SQL Injection to get password.In this post we use the software name "Cain and Abel".



Requirements:-
1.Pc 
2.Cain And Abel
3.MD5 Hash which you want to crack
4.Our Article

Now let's come in method to use Cain and Abel to Crack MD5 hashes

1. After Downloaded, First  of All open cain and Abel, Select "Cracker" button at the top and then select "MD5 Hash" and then Click the “+” Sign at the Top.
Enter the MD5 Hash you want to Crack and Click on ok.



2. Now Right Click the Hash and then select the attack you want to use. I will use Brute-Force attack to Crack MD5 hash you can also use Rainbow tables or Dictionary attack to Crack.

3 .Adjust Charset and password length.

4. Click "Start" and it will try passwords until it gets the right one
Usually passwords below 6 or 7 letter get cracked in very short span of time if the password is longer than 7 characters than it can take very long the crack the password. If the password is longer is 7 letters than using rainbow tables is a better option.

That's now you get the password.

If you like our topic then share it and also don't forget to add us on social media.

Guest Post By:- Imp0ssibl3

Wednesday, 24 October 2012


Author --> NoEntryPhc
Vulnerability --> SQL Injection
Google Dork --> inurl:customupload.html
Vulnerable Link --> http://www.website.com/customupload.html?category=2

Finding vulnerable site -->

Search inurl:customupload.html in google and you will find many website. Open any of one like i have one link which is given below
Now add ' after link to find the vulnerability of website like this.
I you get any warning message like error in mysql database than website is vulnerable.

Exploting the vulnerability-->

Exploit the vulnerability manually or using software like Haviji
Download Haviji from here
Password for download and archieve is thedarkarea

Tuesday, 23 October 2012


What is SQL Injections---->

"SQL Injection" is subset of the an unverified/unsanitized user input vulnerability ("buffer overflows" are a different subset), and the idea is to convince the application to run SQL code that was not intended. If the application is creating SQL strings naively on the fly and then running them, it's straightforward to create some real surprises.


Finding SQL Vulnerablities in website----> 

Mainly you have to search this type of url in the website which are given below--->
index.php?id=
cms.php?id=
or some other links like this
To find vulnerable site you have to use dorks..

Now Search for site is vulnerable or not by simple adding '  after the site link. 
Example:--- www.site.com/index.php?id=1'

Now you will be taken on a new site. If u see this error written in webpage given below than site is vulnerable or if u get on the page than site is not vulnerable.
Warning: mysql_fetch_array(): supplied argument is not a valid MySQL result resource in /web/htdocs/www.site.com/home/index.php on line 22

How to exploiting the vulnerable website--->

There are two methods of exploiting the website--->
1. Manually
2. Using software

Here i am gonna use software for exploiting website.


Steps to exploit the site------>

1 .Download Haviji v.1.16 pro cracked from here .
Password for download and archieve is thedarkarea
2. Now open the software in windows.

Now watch the tutorial video from here and perform all the steps same as in video.





Category 2

Category 3