THIS BLOG PROVIDES YOU ALL NECESSARY NEWS AND UPDATES IN THE NATION NIGERIAN AND THE WORLD AT LARGE
Hacking MySQL Online Databases with Sqlmap
Get link
Facebook
X
Pinterest
Email
Other Apps
Welcome back, my amateur hackers!
In this tutorial, we will follow up on a previous tutorial on MySQL.
In that tutorial, I showed you the basics of running a MySQL server on
BackTrack. In addition, you might want to take a look at my tutorial on
the basics of databases,
if you are not familiar with databases and DataBase Management Systems
(DBMS). Since MySQL is SO important in so many web applications, I will
be doing more MySQL tutorials in the future. The more you know about
MySQL, the better you can hack MySQL!
Generally,
MySQL is teamed up with PHP and an Apache web server (often referred to
as LAMPP or XAMPP) to build dynamic, database driven web sites. Such
development packages as Drupal, Joomla, Wordpress, Ruby on Rails and
others all use MySQL as their default database. Millions of websites
have MySQL backends and very often they are "homegrown" websites,
without much attention on security.
In this tutorial, we will
looking to extract information about an online MySQL database before we
actually extract information from the database. Once again, I'll repeat,
the more we know, the more successful we will be in hacking and the
less chance you will be detected.
Here, we will be using one of the best database hacking tools available, sqlmap.
Sqlmap can be used for databases other than MySQL, such Microsoft's SQL
Server and Oracle, but here we will focus its capabilities on those
ubiquitous web sites that are built with PHP, Apache and MySQL.
Step 1Start Sqlmap
First, fire up BackTrack and go to BackTrack, then Information Gathering, then Database Analysis, then MySQL Analysis and finally, sqlmap as shown in the screenshot below.
Step 2Find a Vulnerable Web Site
In
order to get "inside" the web site and ultimately, the database, we are
looking for web sites that end in "php?id=" where XXX represents some
number. Those who are familiar with google hacks/dorks can do a search
on google by entering:
inurl:index.php?id=
inurl:gallery.php?id=
inurl:post.php?id=
inurl:article?id=
...among others.
This
will bring up literally millions of web sites with this basic
vulnerability criteria. If you are creative and ambitious, you can find
numerous web sites that list vulnerable web sites. You might want to
check these out.
For our purposes here and to keep you out of the long reach of the law, we will be hacking a website designed for this purpose, www.webscanhost.org.
We can practice on this web site and refine your skills without
worrying about breaking any laws and having to make bail money for you.
Step 3Open Sqlmap
When
you click on sqlmap, you will be greeted by a screen like that below.
Sqlmap is a powerful tool, written as a Python script (we will be doing
Python tutorial soon) that has a multitude of options. We will just be
scratching the surface of its capabilities in this tutorial.
Step 4Determine the DBMS Behind the Web Site
Before
we begin hacking a web site, we need to gather information. We need to
know WHAT we are hacking. As I have said many times before, most
exploits are very specific to the OS, the application, services, ports,
etc. Let's begin by finding out what the DBMS is behind this web site.
The start sqlmap on this task, we type:
./sqlmap.py -u "the entire URL of the vulnerable web page"
When
we do so, sqlmap will return results like that below. Notice where I
highlighted that the web site back-end is using MySQL 5.0
Step 5Find the Databases
Now
that we know what the database management system (DBMS) is MySQL 5.0,
we need to know what databases it contains. sqlmap can help us do that.
We take the command we used above and append to it --dbs, like this:
search_get_by_id.php?id=4" --dbs
When run this command against www.webscantest.com we get the results like those below. Notice that I have highlighted the two available databases, information schema and scanme.
Information schema is included in every MySQL installation and it
includes information on all the objects in the MySQL instance, but not
data of interest. Although it can be beneficial to explore that database
to find objects in all the databases in the instance, we will focus our
attention on the other database here , scanme, that may have some valuable information. Let's explore it further.
Step 6Get More Info from the Database
So,
now we know what the DBMS is (MySQL 5.0) and the name of a database of
interest (scanme). The next step is to try to determine the tables and
columns in that database. In this way, we will have some idea what data
is in the database, where it is and what type of data (numeric or
string). All of this information is critical and necessary to extracting
the data. To do this, we need to make some small revisions to our
sqlmap command. Everything else we have used above remains the same, but
now we tell sqlmap we want to see the tables and columns from the
scanme database. We can append our command with --columns -D and the name of the database, scanme such as this:
When we do so, sqlmap will target the scanme database and attempt to enumerate the tables and columns in the scanme database.
As
we can see below, sqlmap successfully was able to enumerate three
tables; (1) accounts, (2) inventory, and (3) orders, complete with
column names and datatypes. Not Bad!
Note that the orders table below includes credit card numbers, expiration dates and CVV. The hacker's "Golden Fleece"!!
As
you can see, sqlmap can be very versatile and useful tool for MySQL, as
well as SQL Server and Oracle database hacking. We will plan on coming
back to sqlmap in the near future to explore more of its extensive
database hacking capabilities.
Keep coming back, my amateur hackers, for more adventures in Hackerland!
i was lost with no hope for my wife was cheating and had always got away with it because i did not know how or always too scared to pin anything on her. with the help a friend who recommended me to who help hack her phone, email, chat, sms and expose her for a cheater she is. I just want to say a big thank you to HACKINTECHNOLOGY@GMAIL.COM . am sure someone out there is looking for how to solve his relationship problems, you can also contact him for all sorts of hacking job..he is fast and reliable. you could also text +1 213-295-1376(whatsapp) or telegram +16692252253 contact and thank me later
I am oxford graduated with Banking background. Later on i have learned hacking techniques and now i am very good hacking with 5 to 6 years hacking experience. I have hacked Bank accounts from different countries like, India, Sweden, USA, Canada, Philippines, Egypt, Ghana, Germany, UK, Kenya, Italy, and lot of other countries. I have user name, Password and every security questions and answers. These Accounts are full of money. All these accounts have very high balance in them. I am expert to send money int your personal bank Account, Saving bank account, Checking Bank account, Business Account or Company Account in any country of the world. I Can send money into your Bank account by wire transfer from the Hacked bank account to your account. I have a lot of local bank login, like USA Chase, Wells Fargo, Capital One, SunTrust Banks, HSBC Bank USA, Bank of America, Citigroup, American Express, State Street Bank, Royal Bank of Scotland UK, Barclays UK, Standard Chartered UK, Unity Tru
howing off your rich lifestyle, sure comes at a cost, especially for musicians who tend to want to please their adoring fans with excess glitz and glamour. Such is the case of musical Taliban, Oritsefemi who has coughed up N500k just to rent a private jet for a music video and he didn't even get to take a shot inside of it. For the visuals of his song, 'Happy Day' which is directed by Avalon Okpe, Oritsefemi is shot in one of the scenes singing while ladies danced in front of the jet, another shot sees him stand with vixens dressed as air hostess. The jet didn't leave its position and no scene was shot inside of it. The video for Happy Day, which should be dropping any time soon was shot at, Lekki and Ikeja, Lagos. http://www.tunezmediablog.com/2017/02/singer-oritsefemi-spends-500k-to-rent.html
Some Nigerians have slammed Actress Mercy Aigbe-Gentry for sharing a throwback photo where she was pictured in a hot bikini during her vacation in Dubai. A particular fan wrote on her photo 'This bikini you are wearing is not good for a Mother and a Wife.' A lot of fans have rallied support for Actress Mercy Aigbe though, as some say if it was Beyonce who shared the Bikini photo, they would have complimented her. https://www.instagram.com/p/BQv7VUJAjQB/?taken-by=mercyaigbegentry&hl=en http://www.naijahelm.com/2017/02/fans-slam-actress-mercy-aigbe-throwback-bikini-photo.html
i was lost with no hope for my wife was cheating and had always got away with it because i did not know how or
ReplyDeletealways too scared to pin anything on her. with the help a friend who recommended me to who help hack her phone,
email, chat, sms and expose her for a cheater she is. I just want to say a big thank you to
HACKINTECHNOLOGY@GMAIL.COM . am sure someone out there is looking for how to solve his relationship problems, you can also contact him for all sorts of hacking job..he is fast and reliable. you could also text +1 213-295-1376(whatsapp) or telegram +16692252253 contact and thank me later