Welcome to HBH! If you had an account on hellboundhacker.org you will need to reset your password using the Lost Password system before you will be able to login.

Beginner & Intermediate Guide To Blind SQL Injection


ghost's Avatar
0 0

Visual Beginner's Guide To Blind SQL Injection

*In this video, i cover the basics of blind sql injection. We find a vulnerable page, test it for vulnerability, and exploit them. I attack two sites and gain admin priveleges in two different ways.

http://4filehosting.com/file/23692/blindsql-swf.html

Visual Intermediate Guide To Blind SQL Injection

*In this video, i attack retrieve root mysql information and use load_file() to retrieve more information on the site.

[edit]Full version available now ;)[/edit]

http://4filehosting.com/file/32539/blindsqlint-swf.html

–>I forgot to do INSERT INTO VALUES() in the intermediate one, so expect another intermediate guide somewhat in the future, hopefully ;).


ghost's Avatar
0 0

just finished watching, very clever work. I enjoy your videos.


ghost's Avatar
0 0

DigitalFire wrote: i feel like an idiot but i couldn't find a download button… nor did http://4filehosting.com/file/23692/blindsql.swf get me anywhere. nights_shadow you should put those on rapidshare that worked a lot better.

it's very light yellow text about halfway down the page.


ghost's Avatar
0 0

omg i cant find it…

what does the text say?


ghost's Avatar
0 0

DigitalFire wrote: omg i cant find it…

what does the text say?

it says "Please wait 30 seconds.."

and after 30 seconds, it gets replaced with a blue "Download" link…

Nice Videos Nights_shadow :) ‮


ghost's Avatar
0 0

hey man just watched the vids,, very very good!!

u should do some more

thanks alot!


ghost's Avatar
0 0

how to do INSERT/UPDATE just after i 've figured all of the tables name and the fields name ? i tried it once using UNION UPDATE , but it failed. any suggestion ?:love:


ap101's Avatar
Quite Psycho
0 0

The links are bad. Does anyone have the files and are willing to upload them again? Please?


ghost's Avatar
0 0

join the forum owned by mr. nights_shadow ;) there you can find all the videos + much more.

you'll find the URL in his profile.