-On this tutorial I will be teaching you, how to simply use Havij to hack websites.
-Remember this is for education porpuse only
-No images were used on this TuT
-So let's start by opening Havij.
-Once you open it, it should have a place to add your "Target: ________________" and a "Analyze" Button.
-Now its time to search for a target, for that use your "bestfriend"....GOOGLE (google dorks)
Here's a example:
- Code: SELECT ALL
inurl:index.php?id:
-Copy it, and search it on GOOGLE
-Imagine that your target looks like this: [You must be registered and logged in to see this link.]
-To check if it is vulnerable to SQL injection just add a quote on the end of the url, like this:[You must be registered and logged in to see this link.]
-If it is, you probably are going to see a SQL error message or something on the website will dissapear.
-OK, now its time to go back to Havij.
-On Havij just place your target without the quote, TARGET: [You must be registered and logged in to see this link.] , and Press ANALYZE
-If it works properly, on the lower part of the software you will get Columns, then Click to get Tables and for there on...
-Once thats done, search for the Users/Admins and Passwords.
-If you find it, its time to get the "admin login PAGE"
-For that just click on "Find Admin" and paste the website without the index,etc, like this: [You must be registered and logged in to see this link.]
-Let's imagine that mine is: [You must be registered and logged in to see this link.]
-Just Login with the Admin username and Password that you get from the data.
-And now you'r in!
-Get as much data as you can.
-Remember this is for education porpuse only
-No images were used on this TuT
-So let's start by opening Havij.
-Once you open it, it should have a place to add your "Target: ________________" and a "Analyze" Button.
-Now its time to search for a target, for that use your "bestfriend"....GOOGLE (google dorks)
Here's a example:
- Code: SELECT ALL
inurl:index.php?id:
-Copy it, and search it on GOOGLE
-Imagine that your target looks like this: [You must be registered and logged in to see this link.]
-To check if it is vulnerable to SQL injection just add a quote on the end of the url, like this:[You must be registered and logged in to see this link.]
-If it is, you probably are going to see a SQL error message or something on the website will dissapear.
-OK, now its time to go back to Havij.
-On Havij just place your target without the quote, TARGET: [You must be registered and logged in to see this link.] , and Press ANALYZE
-If it works properly, on the lower part of the software you will get Columns, then Click to get Tables and for there on...
-Once thats done, search for the Users/Admins and Passwords.
-If you find it, its time to get the "admin login PAGE"
-For that just click on "Find Admin" and paste the website without the index,etc, like this: [You must be registered and logged in to see this link.]
-Let's imagine that mine is: [You must be registered and logged in to see this link.]
-Just Login with the Admin username and Password that you get from the data.
-And now you'r in!
-Get as much data as you can.
Sat Apr 29, 2017 10:50 am by ubedullah
» Group hackers
Sat Apr 15, 2017 2:37 pm by Group Hackers
» Hacker Needed
Sat Apr 15, 2017 3:57 am by Group Hackers
» Hacker Needed
Sat Apr 15, 2017 1:45 am by Group Hackers
» Hacker Needed
Thu Apr 13, 2017 11:10 pm by Group Hackers
» Hacker Needed
Tue Apr 11, 2017 2:07 pm by Group Hackers
» Hacker Needed
Tue Apr 11, 2017 2:21 am by Group Hackers
» Hacker Needed
Tue Apr 11, 2017 2:06 am by Group Hackers
» Hacker Needed
Tue Apr 11, 2017 1:35 am by Group Hackers