Post: [TUT] SQL injection w/ Havij free download
05-11-2011, 01:21 PM #1
MrBelfast
I am Bi-Winning
(adsbygoogle = window.adsbygoogle || []).push({}); Don't hate, I know how to do SQLi the real way as well.
This is by far the easiest way to SQL inject a website!

1. Download Havij You must login or register to view this content. and install
2. Find a vulnerable site with the .php?id=123 sort of ending that gives an error when you add a ' to the url.
3. Hit analyze.
4. Have some tea or whatever while it's working :P
5. If it says Target Vulnerable at the bottom, you're good to go.
6. When you get this,
7. Hit 'Get Tables' and wait till you find users or admin or whatever the DB with the admin info is.
8. Check said table, and hit 'Get Columns' and wait until you find columns, and then check appropriate columns, like so, and hit get data.
9. If you have a hash and/or don't know where the admincp is, use 'Find Admin' / 'MD5'
10.Congrats!
(adsbygoogle = window.adsbygoogle || []).push({});
05-14-2011, 06:13 PM #2
Eggy551
I am error
Originally posted by BELFAST View Post
Don't hate, I know how to do SQLi the real way as well.
This is by far the easiest way to SQL inject a website!

1. Download Havij You must login or register to view this content. and install
2. Find a vulnerable site with the .php?id=123 sort of ending that gives an error when you add a ' to the url.
3. Hit analyze.
4. Have some tea or whatever while it's working :P
5. If it says Target Vulnerable at the bottom, you're good to go.
6. When you get this,
7. Hit 'Get Tables' and wait till you find users or admin or whatever the DB with the admin info is.
8. Check said table, and hit 'Get Columns' and wait until you find columns, and then check appropriate columns, like so, and hit get data.
9. If you have a hash and/or don't know where the admincp is, use 'Find Admin' / 'MD5'
10.Congrats!


avast comes up saying its infected with a trj
05-14-2011, 09:49 PM #3
MrBelfast
I am Bi-Winning
Originally posted by eggy551 View Post
avast comes up saying its infected with a trj


really? It might be a false positive cuz it is a hack program but it is up to you to download
05-14-2011, 09:53 PM #4
<Jimbo>
</Jimbo>
People would prefer a virus scan. Smile
05-22-2011, 06:33 PM #5
Eggy551
I am error
Go to the official website and download the free program because this is not real! notice how it is not spelled right when u download it

Copyright © 2026, NextGenUpdate.
All Rights Reserved.

Gray NextGenUpdate Logo