H@cking websites : How to hack websites By using SQL Injection

Discussion in 'DELETED POSTS' started by L£g£nD_NaRuTo, Sep 13, 2011.

Users Viewing Thread (Users: 0, Guests: 0)

    L£g£nD_NaRuTo Member

    Member Since:
    Jul 10, 2011
    Message Count:
    138
    Likes Received:
    0
    DISCLAIMER: THIS TUTORIAL IS FOR EDUCATIONAL PURPOSES ONLY . IF ANY ONE MISUSED IT I AM NOT RESPONSIBLE FOR THAT.  [img width=360 height=162]http://i969.photobucket.com/albums/ae178/rajvid99/hackwebsite1.jpg[/img]

    L£g£nD_NaRuTo Member

    Member Since:
    Jul 10, 2011
    Message Count:
    138
    Likes Received:
    0
    HOW TO HACK THE WEBSITES? Today I am Going to Discuss the Easiest Way to hack the Websites i.e SQL Injection Techniques.
    We Will Use The Software SQLI Helper to Perform This. I have provided link for software download... just read on.




    How to hack website using SQLI Helper:
    SQLI Helper is handy software to hack website. You don't need to have any knowledge of SQL to hack website using SQLI Helper. Just follow the guidelines below:
    [link=http://www.ziddu.com/download/13568819/SQLHelperMaherHackers.blogspot.com.rar.html]SQLI Helper [/link]2. Unzip the file to obtain SQLI Helper to hack website.


    3. Now, when you have website H@cking software, you need to find website with potential vulnerability. There are some websites that are unhackable. While finding hackable websites, it is better to search for sites with format "article.php?id=[number]" in url.

    Lets consider one example which I will use in this article:

    http://encycl.anthropology.ru/article.php?id=1

    Check whether your searched victim site can be hacked by entering:

    http://encycl.anthropology.ru/article.php?id='1

    in address bar and hit enter. You will get error message like:

    Query failed.You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '\'1 ORDER BY lastname' at line 1 SELECT * FROM person_old WHERE id=\'1 ORDER BY lastname

    If you get such error message, it is confirmed that you can hack website using this method and now you can move forward to hack website.

    4. Run SQLI Helper on your Computer.

    L£g£nD_NaRuTo Member

    Member Since:
    Jul 10, 2011
    Message Count:
    138
    Likes Received:
    0
    [img width=360 height=162]http://i969.photobucket.com/albums/ae178/rajvid99/hackwebsite1.jpg[/img] 5. In target field, enter http://encycl.anthropology.ru/article.php?id=1 (the website url you just discovered as hackable) and hit on "Inject".


    6. SQLI Helper will search for columns and you will have something like this:[img width=305 height=199]http://i969.photobucket.com/albums/ae178/rajvid99/hackwebsite2.jpg[/img] 7. Hit on "Get Database" to get:[img width=305 height=376]http://i969.photobucket.com/albums/ae178/rajvid99/hackwebsite3.jpg[/img] 8. Select any element from "Database Name" and click on "Get Tables".


    9. Now, select element from table and hit on "Get Columns". I have selected "user" to get userid and password required for login.


    10. Now, when you know "user" table has columns "usr_login" and "usr_pass", select them and hit on "Dump Now".


    11. You will get values like these:[img width=473 height=170]http://i969.photobucket.com/albums/ae178/rajvid99/hackwebsite5.jpg[/img] u knw hw 2 get d pass naw ... if u dnt request

    Phemi Upcoming Guru

    Member Since:
    Oct 1, 2010
    Message Count:
    223
    Likes Received:
    43
    How oh,help guy,ds s 9ce,hash key?

    →♥♥ HALARBYâ„¢♥♥ ← Member

    Member Since:
    Oct 31, 2010
    Message Count:
    1,446
    Likes Received:
    0
    ???
    • GL Legend
    • Guru Member

    kesty GL Legend

    Member Since:
    Feb 23, 2011
    Message Count:
    887
    Likes Received:
    5
    Current Phone:
    Samsung Galaxy Note 3
    nice share...............

    but..............

    this is overload of database
    we have thread like dis already


Share This Page