Login Register




The stories and information posted here are artistic works of fiction and falsehood. Only a fool would take anything posted here as fact.


Damn Small SQLi Scanner filter_list
Author
Message
Damn Small SQLi Scanner #1
[Image: ccb9d88fb9.png]

Damn Small SQLi Scanner (DSSS) is a fully functional SQL injection vulnerability scanner (supporting GET and POST parameters) written in under 100 lines of code.

Code:
$ python dsss.py -h Damn Small SQLi Scanner (DSSS) < 100 LoC (Lines of Code) #v0.2o by: Miroslav Stampar (@stamparm) Usage: dsss.py [options] Options:  --version          show program's version number and exit  -h, --help         show this help message and exit  -u URL, --url=URL  Target URL (e.g. "http://www.target.com/page.php?id=1")  --data=DATA        POST data (e.g. "query=test")  --cookie=COOKIE    HTTP Cookie header value  --user-agent=UA    HTTP User-Agent header value  --referer=REFERER  HTTP Referer header value  --proxy=PROXY      HTTP proxy address (e.g. "http://127.0.0.1:8080")

Code:
$ python dsss.py -u "http://testphp.vulnweb.com/artists.php?artist=1" Damn Small SQLi Scanner (DSSS) < 100 LoC (Lines of Code) #v0.2o by: Miroslav Stampar (@stamparm) * scanning GET parameter 'artist' (i) GET parameter 'artist' could be error SQLi vulnerable (MySQL) (i) GET parameter 'artist' appears to be blind SQLi vulnerable (e.g.: 'http://t estphp.vulnweb.com/artists.php?artist=1%20AND%2061%3E60') scan results: possible vulnerabilities found
[Image: Vs4P58c.png]

Reply

RE: Damn Small SQLi Scanner #2
This seems useful and compact. Thanks k you again for another share man when will it stop lol?

Reply

RE: Damn Small SQLi Scanner #3
(09-15-2017, 08:37 PM)Slacker Wrote: This seems useful and compact. Thanks k you again for another share man when will it stop lol?

ahahhaha, I not stop Tongue, reggars bro !!
[Image: Vs4P58c.png]

Reply