Hack a website using WebCruiser [Highly detailed with pictures] 12-03-2013, 07:40 PM
#1
S u p H C
Gaara is another nickname I keep so dont think I've l33ched this tutorial.
Anything you do you do it on your own. Not me nor HC take responsibility about the actions you take as this is for educational purpose only.
[*]Introduction
Welcome to my step by step tutorial on how to hack a website using WebCruiser Scanner.
As always I will try to explain it in the easiest way so it will be n00b friendly.
I suggest you to practice "hacking" manually as using tools wont make your skills go higher.
Whatsoever there are lazy-ass guys
who find it better to perform these attacks by tools.
Ok , first of all we need to download WebCruiser Scanner.
Download me here !
Note: If you need a serial code for the program , leave a comment here and I will generate one for you with your nickname, DO NOT PM ME.
_____________________________
________________________
[*]Let's start:
You will need a target , you can use google dorks to find vuln websites.
I won't bother on that part as there are billions of google dorks out there.
Ok , I found my vulnerable website:
Let's open WebCruiser Scanner and check the target for vulnerabilities like on the picture below:
![[Image: 6yqz.png]](http://img819.imageshack.us/img819/9458/6yqz.png)
Then click Scan Site.
![[Image: uiba.png]](http://img15.imageshack.us/img15/1069/uiba.png)
Now we will wait a minute or two , depends on you internet connection speed for the scan to finish , then we will see the results like the image below.
![[Image: 6f7u.png]](http://img96.imageshack.us/img96/4141/6f7u.png)
As we can see the website is vulnerable to Sql injection & XSS.
We will perform a SQL injection this time.
[*]Attack
Right click on the vulnerable url and then SQL INJECTION POC , now you
just need to follow the steps below.
I have explained step by step with pictures so it will be easier for you to understand.
![[Image: tIYUXPt.png]](http://i.imgur.com/tIYUXPt.png)
![[Image: Zz3KsjE.png]](http://i.imgur.com/Zz3KsjE.png)
![[Image: phfVa9g.png]](http://i.imgur.com/phfVa9g.png)
![[Image: 3YvtmUW.png]](http://i.imgur.com/3YvtmUW.png)
![[Image: Gxoh9BY.png]](http://i.imgur.com/Gxoh9BY.png)
![[Image: mjqc.png]](http://img5.imageshack.us/img5/6847/mjqc.png)
So that's all guys , we got the admin info in just 5 minutes :>
This tutorial is all written by me so if you plan to share it don't forget to give credits.
Hopefully you learn't smth new.
Greets,
-๖ۣۜǤaara- aka dR.0xYw0Rm
Gaara is another nickname I keep so dont think I've l33ched this tutorial.
Anything you do you do it on your own. Not me nor HC take responsibility about the actions you take as this is for educational purpose only.
[*]Introduction
Welcome to my step by step tutorial on how to hack a website using WebCruiser Scanner.
As always I will try to explain it in the easiest way so it will be n00b friendly.
I suggest you to practice "hacking" manually as using tools wont make your skills go higher.
Whatsoever there are lazy-ass guys
who find it better to perform these attacks by tools.Ok , first of all we need to download WebCruiser Scanner.
Download me here !
Note: If you need a serial code for the program , leave a comment here and I will generate one for you with your nickname, DO NOT PM ME.
_____________________________
________________________
[*]Let's start:
You will need a target , you can use google dorks to find vuln websites.
I won't bother on that part as there are billions of google dorks out there.
Ok , I found my vulnerable website:
Code:
http://www.target.com/vmarket.php?id=17Let's open WebCruiser Scanner and check the target for vulnerabilities like on the picture below:
![[Image: 6yqz.png]](http://img819.imageshack.us/img819/9458/6yqz.png)
Then click Scan Site.
![[Image: uiba.png]](http://img15.imageshack.us/img15/1069/uiba.png)
Now we will wait a minute or two , depends on you internet connection speed for the scan to finish , then we will see the results like the image below.
![[Image: 6f7u.png]](http://img96.imageshack.us/img96/4141/6f7u.png)
As we can see the website is vulnerable to Sql injection & XSS.
We will perform a SQL injection this time.
[*]Attack
Right click on the vulnerable url and then SQL INJECTION POC , now you
just need to follow the steps below.
I have explained step by step with pictures so it will be easier for you to understand.
![[Image: tIYUXPt.png]](http://i.imgur.com/tIYUXPt.png)
![[Image: Zz3KsjE.png]](http://i.imgur.com/Zz3KsjE.png)
![[Image: phfVa9g.png]](http://i.imgur.com/phfVa9g.png)
![[Image: 3YvtmUW.png]](http://i.imgur.com/3YvtmUW.png)
![[Image: Gxoh9BY.png]](http://i.imgur.com/Gxoh9BY.png)
![[Image: mjqc.png]](http://img5.imageshack.us/img5/6847/mjqc.png)
So that's all guys , we got the admin info in just 5 minutes :>
This tutorial is all written by me so if you plan to share it don't forget to give credits.
Hopefully you learn't smth new.
Greets,
-๖ۣۜǤaara- aka dR.0xYw0Rm
If you need help , drop me a PM and I will help you with the best I can !
![[Image: V7mYdF6.png]](http://i.imgur.com/V7mYdF6.png)




![[+]](https://sinister.li/images/modern/collapse_collapsed.png)