Smiley face
Smiley face

Thursday, February 6, 2014

Hack a website using WebCruiser

[*]Introduction

Welcome to my step by step tutorial on how to hack a website using WebCruiser Scanner.

As always I will try to explain it in the easiest way so it will be n00b friendly.

I suggest you to practice "hacking" manually as using tools wont make your skills go higher. 

Whatsoever there are lazy-ass guys :P who find it better to perform these attacks by tools.

Ok , first of all we need to download WebCruiser Scanner.

Download me here !

Note: If you need a serial code for the program , leave a comment here and I will generate one for you with your nickname, DO NOT PM ME.

_____________________________
________________________


[*]Let's start:
You will need a target , you can use google dorks to find vuln websites.

I won't bother on that part as there are billions of google dorks out there.

Ok , I found my vulnerable website:

Code:
http://www.target.com/vmarket.php?id=17

Let's open WebCruiser Scanner and check the target for vulnerabilities like on the picture below:

[Image: 6yqz.png]


Then click Scan Site.

[Image: uiba.png]

Now we will wait a minute or two , depends on you internet connection speed for the scan to finish , then we will see the results like the image below.

[Image: 6f7u.png]

As we can see the website is vulnerable to Sql injection & XSS

We will perform a SQL injection this time.

[*]Attack
Right click on the vulnerable url and then SQL INJECTION POC , now you
just need to follow the steps below.

I have explained step by step with pictures so it will be easier for you to understand.

[Image: tIYUXPt.png]
[Image: Zz3KsjE.png]
[Image: phfVa9g.png]

Image has been scaled down 15% (814x505). Click this bar to view original image (954x591). Click image to open in new window.
[Image: 3YvtmUW.png]

Image has been scaled down 16% (814x504). Click this bar to view original image (961x594). Click image to open in new window.
[Image: Gxoh9BY.png]

Image has been scaled down 17% (814x469). Click this bar to view original image (975x561). Click image to open in new window.
[Image: mjqc.png]



So that's all guys , we got the admin info in just 5 minutes :>

0 Comments:

Post a Comment

Smiley face
Smiley face