|
|
|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 80
Members: 0
Total: 80
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
|
Hi guys, I have this SHA1 hash, hope someone can help me out! Thank you!
5dc1e6f2d3592722419704cb273f9f914edf3c3c
No salt. |
|
|
|
oniric |
|
Replies: 10 |
Views: 13999 |
|
|
|
|
|
|
I tested the hash on my wordlists and I didn't find a collision.. |
|
|
|
oniric |
|
Replies: 10 |
Views: 13999 |
|
|
|
|
|
|
You are using a Brute Force Attack, so you checking all the possible passwords in the key space generated by the character set of your choice and the desired range. Try first a dictionary attack? Do y ... |
|
|
|
|
This is also some good information.
http://www.webapptest.org/ms-access-sql-injection-cheat-sheet-EN.html |
|
|
|
|
Try
news.php?id=409%20ORDER%20BY%20n%20--%20
and substitute n with a number. Try first n=4 and it this throws an error try n/2, if it doesn't give errors increment n. Using such a method you sho ... |
|
|
|
oniric |
|
Replies: 27 |
Views: 104668 |
|
|
|
|
|
|
I just download the same zip file and it's there |
|
|
|
oniric |
|
Replies: 12 |
Views: 13754 |
|
|
|
|
|
|
So now you understand why I said it's necessary to be very creative ^_^ Also knowing javascript is extremely important! |
|
|
|
oniric |
|
Replies: 27 |
Views: 104668 |
|
|
|
|
|
|
Isn't it in the ext dir as I said? |
|
|
|
oniric |
|
Replies: 27 |
Views: 104668 |
|
|
|
|
|
|
Look in you php ext dir for the file php_curl.dll ( I assume you use Windows ). If it's there then add to your php.ini the line
extension=php_curl.dll
The extension is included in php for window ... |
|
|
|
oniric |
|
Replies: 10 |
Views: 13999 |
|
|
|
|
|
|
Just looked more carefully at the screenshot and you put admin as the user name but you used the hash of another user.. Which are the two versions of SMF you attacked? |
|
|
|
oniric |
|
Replies: 12 |
Views: 13754 |
|
|
|
|
|
|
Uch, it's a big big big big topic, believe me. You should read something about it. It's really interesting, and very very creative. I built a Javascript worm once, very funny indeed ^_^ |
|
|
|
oniric |
|
Replies: 27 |
Views: 104668 |
|
|
|
|
|
|
You have to enable curl extension from you php.ini. Decomment the related line. |
|
|
|
oniric |
|
Replies: 12 |
Views: 13754 |
|
|
|
|
|
|
Look at this:
http://securityreason.com/securityalert/4000
read carefullly. It's a bit elaborated. |
|
|
Page 1 of 5 |
Goto page 1, 2, 3, 4, 5Next All times are GMT |
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|