Thursday, April 16, 2020

Web Hacking Video Series #4 MySQL Part 2 (Injection And Coding)

Video Lesson Topics:

  1. Setting up your victim application, databases and lab
  2. Attacking a simple injection with information Schema
  3. Automating your injections with python and beautiful soup
  4. Dealing with various web encoding in Python and PHP
  5. Bypassing LoadFile Size restrictions and automating it
  6. Decrypting sensitive data via PHP and Python interactions
  7. As always me rambling about stupid nonsense :P FTW

Part 2 of Mysql covers the topic of injecting a simple SQL injection example. Starts out slow then combines techniques and moves into more advanced topics. Prior to attempting this lesson make sure you have watched the videos in the previous blog or understand both SQL and basic python coding. I will show how to automate the injection process via python utilizing simple HTML processing abilities of beautiful soup.  I will cover many python libraries for encoding data and calling web based applications. I also talk about how to deal with encrypted data and methods of enumerating files and folders looking for possible implementation issues and attack points to decrypt sensitive data via PHP/Python interaction with whats available on the server. This is the 2nd part of a 3 part series on MySQL for attacking web applications.

Files Needed:
Lab Files
BT5

Video Lesson:

Whats Next:
PHP source code analysis
Recoding PHP applications to fix SQLi

Related posts


  1. Blackhat Hacker Tools
  2. Nsa Hack Tools
  3. Blackhat Hacker Tools
  4. Hacker Search Tools
  5. Hack Tools For Windows
  6. Hacking Tools Windows
  7. Wifi Hacker Tools For Windows
  8. Hak5 Tools
  9. Hacker Tool Kit
  10. Pentest Automation Tools
  11. Pentest Tools Bluekeep
  12. Beginner Hacker Tools
  13. Hack Tools For Games
  14. Nsa Hack Tools Download
  15. Hacker Techniques Tools And Incident Handling
  16. Hacking Tools
  17. Hacking Tools For Pc
  18. Hacking Tools Software
  19. Hacking Tools Pc
  20. Best Pentesting Tools 2018

No comments:

Post a Comment