Breaking News

dimanche 9 février 2014

How to hack Website using Havij


Hello friends : I've Posted Manual SQL Injection technique complete tutorial + Guide and method of SQL Injection. But do you know? instead of that long procedures and method you can also use Havij Automatic (Advance SQL Injection Tool). So here today I'll show you Website Hacking using Havij.

* What is Website Database ?
The Website Database is a collection of Information like Images, Login ID's, Password, Company Data, etc. That is all stored in a Server Database so that it can be easily acessed, managed and updated. In one view, databases can be classified according to types of content : Bibilographic, full-text, numeric, and Images etc.

What is Havij ?
Havij Pro is an advanced SQLi Vulnerability Exploiter, that can Exploit SQL Injection Vulnerability in Website and and get accessed into website database. Havij is Automatic Advance SQLi Tool.

How to hack Website using Havij ?
First of all there is nothing hard in this tutorial or damn steps to be followed - Just read it once - simply. But if you really want to learn SQL Injection then try to do it manually instead of using any tools..! As i showed in Latest Tutorial SQL Injection Website Hacking techniques.

Requirements :
Steps to Hack Website Database using Havij :
  • Search for SQLi Vulnerable Website.
  • Enter Website URL into Target box and Analyze it.

    Click on Image to Enlarge It
  • After Analyzing you can see that, It will find Database name, Tables etc.
  • Always keep your an eye on STATUS BOX [Log]

    Click on Image to Enlarge It

  • And now, We got Database name and Tables, Let's find out Columns and Data of Users, Password etc.
  • Now after getting Database name, you can see that "Tables" button is activated and we can read Tables.
  • Just click on "Tables" and you will get table like this :-

    Click on Image to Enlarge It

  • Here, we are Successful in finding database Table, now it's time to find Database Row and Columns, So now click on Get DBs.
  • DBs will load all Database to Program and it can be easily access-able. Now again click on Get Tables.

    Click on Image to Enlarge It

  • Huh !! Finally we got up 'users' table, Now select users and click on 'Get Columns' and you will see this :-

    Click on Image to Enlarge It
  • After Getting Columns and all.. Finally Click on 'Get Data' and you will get all login ID and Mdp_user as Shown in the Image :-

    Click on Image to Enlarge It

  • So, here we got up Website Admin login_user ID and mdp_user. Now finally crack mdp_user Code and decode it : to get password.
  • Now, it's time to Enter into Website using this Two Admin login ID and Password.
  • To get the Admin page Click on 'Find Admin' and click on start to Analyze the admin page :-

    Click on Image to Enlarge It
  • Got up :D, Now go to that URL of admin and Login with ID and password you got from Database :D We Hacked into website that's it Done.
  • You  got Admin Seat and Enjoy,Play  with Website :D

Aucun commentaire:

Enregistrer un commentaire