Senin, 05 Maret 2012

DVWA advance web hacking

1. Go to dvwa website, then log in and change the security password to medium level, after that choose sql injection in menu.
2. Try to fill "1" inside of user id login then see what happend
3. Open sqlmap in console and follow this step
    a. get the database

                                                          and we get the database are :
     b. get the user and password

         c. get the table and column
         d. then dump the password

        
 finally we already get the password.lets move to the next steps


4. Right now we will create the backdoor inside mysql
 but when i try to go inside mysql something went wrong like this, try to solve it :
 

Tidak ada komentar:

Posting Komentar