Sinisterly
[SQL] HACK SITES USING Havij v1.14 - Printable Version

+- Sinisterly (https://sinister.li)
+-- Forum: Hacking (https://sinister.li/Forum-Hacking)
+--- Forum: Website & Server Hacking (https://sinister.li/Forum-Website-Server-Hacking)
+--- Thread: [SQL] HACK SITES USING Havij v1.14 (/Thread-SQL-HACK-SITES-USING-Havij-v1-14)

Pages: 1 2 3 4 5 6 7 8


RE: [SQL] HACK SITES USING Havij v1.14 - EVILKING - 02-11-2012

hey dude your given link:

http://lnk.co/GP51L

is not working

update it...


RE: [SQL] HACK SITES USING Havij v1.14 - hacker1989 - 02-12-2012

Wow...The most complete havij tutorial I have ever seen.Thnx a lot. Wink


RE: [SQL] HACK SITES USING Havij v1.14 - webs - 02-18-2012

Here is working download link

http://lnk.co/GP51L
just click at the regular then see


RE: [SQL] HACK SITES USING Havij v1.14 - hybridhack - 02-28-2012

Good tutorial.About havij it's pinned for the begginers


RE: [SQL] HACK SITES USING Havij v1.14 - Emyli - 02-29-2012

Thank you. I am new to all of this and trying to educate myself --I try not to be a stupid* noob. Thank you for this. Look forward to more tutorials ^^


RE: [SQL] HACK SITES USING Havij v1.14 - -SubZer0- - 03-18-2012

get used to manual injection..


RE: [SQL] HACK SITES USING Havij v1.14 - RaInY_EyEs - 10-23-2012

(01-31-2011, 11:59 AM)hellov Wrote: it is simple tut how to use havij to hack sites Smile


Download Havij v1.14


1.First Find a sqli infected site

2-Open havij and copy and paste infected link as shown in figure

3. Then It shows some messages there....Be alert on it and be show patience for sometime to find it's vulernable and type of injection and if db server is mysql and it will find database name.Then after get it's database is name like xxxx_xxxx

[Image: thirdk.jpg]

4.Then Move to another operation to find tables by clicking "tables" as figure shown.Now click "Get tables" Then wait some time if needed

[Image: 37846594.jpg]

5. After founded the tables ,you can see there will be "users" Put mark on it and click in the " get columns " tab as shown in figure

[Image: 4tgh.jpg]


6. In that Just put mark username and password and click "Get data"

[Image: 5tht.jpg]


8. Bingo Got now id and pass that may be admin...
The pass will get as md5 you can crack it also using this tool as shown in figure..

[Image: srfile201088142733796.jpg]


*************************************************************************

HOW TO FInD SQL VU SITES
GO HERE
Quote:http://lnk.co/GP51L

THE GREEN COLLOUR MEAN there is SQL Injection Vulnerability

like this in the pic

[Image: 580714054.jpg]

SQL Dorks

Code:
Aqui les dejo unas cuantas Dorks para buscar webs vulnerables: inurl:index.php?id= inurl:trainers.php?id= inurl:buy.php?category= inurl:article.php?ID= inurl:lay_old.php?id= inurl:declaration_more.php?decl_id= inurl:ageid= inurl:games.php?id= inurl:age.php?file= inurl:newsDetail.php?id= inurl:gallery.php?id= inurl:article.php?id= inurl:show.php?id= inurl:staff_id= inurl:newsitem.php?num= inurl:readnews.php?id= inurl:top10.php?cat= inurl:historialeer.php?num= inurl:rtray-Questions-View.php?num= inurl:forum_bds.php?num= inurl:game.php?id= inurl:view_product.php?id= inurl:newsone.php?id= inurl:sw_comment.php?id= inurl:news.php?id= inurl:avd_start.php?avd= inurl:event.php?id= inurlroduct-item.php?id= inurl:sql.php?id= inurl:news_view.php?id= inurl:select_biblio.php?id= inurl:humor.php?id= inurl:aboutbook.php?id= inurl:fiche_spectacle.php?id= inurl:communique_detail.php?id= inurl:sem.php3?id= inurl:kategorie.php4?id= inurl:news.php?id= inurl:index.php?id= inurl:faq2.php?id= inurl:show_an.php?id= inurl:review.php?id= inurl:loadpsb.php?id= inurlinions.php?id= inurl:spr.php?id= inurl:ages.php?id= inurl:announce.php?id= inurl:clanek.php4?id= inurl:articipant.php?id= inurl:download.php?id= inurl:main.php?id= inurl:review.php?id= inurl:chappies.php?id= inurl:read.php?id= inurl:rod_detail.php?id= inurl:viewphoto.php?id= inurl:article.php?id= inurl:erson.php?id= inurlroductinfo.php?id= inurl:showimg.php?id= inurl:view.php?id= inurl:website.php?id= inurl:hosting_info.php?id= inurl:gallery.php?id= inurl:rub.php?idr= inurl:view_faq.php?id= inurl:artikelinfo.php?id= inurl:detail.php?ID= inurl:index.php?= inurl:rofile_view.php?id= inurl:category.php?id= inurl:ublications.php?id= inurl:fellows.php?id= inurl:downloads_info.php?id= inurl:rod_info.php?id= inurl:shop.php?do=part&id= inurl:roductinfo.php?id= inurl:collectionitem.php?id= inurl:band_info.php?id= inurlroduct.php?id= inurl:releases.php?id= inurl:ray.php?id= inurl:roduit.php?id= inurlp.php?id= inurl:shopping.php?id= inurl:roductdetail.php?id= inurlst.php?id= inurl:viewshowdetail.php?id= inurl:clubpage.php?id= inurl:memberInfo.php?id= inurl:section.php?id= inurl:theme.php?id= inurl:age.php?id= inurl:shredder-categories.php?id= inurl:tradeCategory.php?id= inurl:roduct_ranges_view.php?ID= inurl:shop_category.php?id= inurl:transcript.php?id= inurl:channel_id= inurl:item_id= inurl:newsid= inurl:trainers.php?id= inurl:news-full.php?id= inurl:news_display.php?getid= inurl:index2.php?option= inurl:readnews.php?id= inurl:top10.php?cat= inurl:newsone.php?id= inurl:event.php?id= inurlroduct-item.php?id= inurl:sql.php?id= inurl:aboutbook.php?id= inurl:review.php?id= inurl:loadpsb.php?id= inurl:ages.php?id= inurl:material.php?id= inurl:clanek.php4?id= inurl:announce.php?id= inurl:chappies.php?id= inurl:read.php?id= inurl:viewapp.php?id= inurl:viewphoto.php?id= inurl:rub.php?idr= inurl:galeri_info.php?l= inurl:review.php?id= inurl:iniziativa.php?in= inurl:curriculum.php?id= inurl:labels.php?id= inurl:story.php?id= inurl:look.php?ID= inurl:newsone.php?id= inurl:aboutbook.php?id= inurl:material.php?id= inurlinions.php?id= inurl:announce.php?id= inurl:rub.php?idr= inurl:galeri_info.php?l= inurl:tekst.php?idt= inurl:newscat.php?id= inurl:newsticker_info.php?idn= inurl:rubrika.php?idr= inurl:rubp.php?idr= inurl:ffer.php?idf= inurl:art.php?idm= inurl:title.php?id=

Credits:- I am not the owner


hmmmmm thanks owner for sharing this methode it is easy and working thankx alot :headbash: :wub:


RE: [SQL] HACK SITES USING Havij v1.14 - sentet - 10-30-2012

Thnx bro, worked for me !:dance:


RE: [SQL] HACK SITES USING Havij v1.14 - rocky34 - 11-23-2012

hahhahha all script kiddies


RE: [SQL] HACK SITES USING Havij v1.14 - 8-Core - 11-27-2012

I'll be trying this soon, thanks ++