Create an account

Very important

  • To access the important data of the forums, you must be active in each forum and especially in the leaks and database leaks section, send data and after sending the data and activity, data and important content will be opened and visible for you.
  • You will only see chat messages from people who are at or below your level.
  • More than 500,000 database leaks and millions of account leaks are waiting for you, so access and view with more activity.
  • Many important data are inactive and inaccessible for you, so open them with activity. (This will be done automatically)


Thread Rating:
  • 577 Vote(s) - 3.54 Average
  • 1
  • 2
  • 3
  • 4
  • 5
[FREE] SQL GET/POST Injection tool ~ SpotnikInjection

#1
BEEP BEEP

-- Transmission Received / SpotnikInjection --

Hey everybody!

Here I will explain a hobby tool I recently made called SpotnikInjection. I made it to learn more about SQL injection
in a fun way and the logic is based on some techniques I have used on live sites and wanted to automate.

How does it work
It can handle GET and POST requests. If you have a website like "example.com/index.php?id=1" then sometimes
you can do "id=1 and 1 = 1". If this still shows the correct page and "id=1 and 1 = 2" shows something else, then
you can use this tool (if there is no WAF). You can also inject this logic with POST requests. If all goes well then
you should be able to retrieve the databases/tables/columns and rows! It will be saved to an XML file.

Requirements
- Local Apache server with PHP
- Curl (I am on Linux and it's installed by default)
- Write permission on the txt files in the docs folder

Tutorials
I've made two tutorial video's to have a more visual explanation of how it can be used ^^
GET:
POST:

Download
You can download the obfuscated version for FREE on my website. I also was planning to implement an
update feature (using update queries to change HTML content to have a faster loop) and I will make this
a PRO version. If you want the source then you can contact me on my e-mail.

Site:

[To see links please register here]

Non javascript site:

[To see links please register here]

Contact: see site or pm.

Image
[Image: screenshot-spotnik-injection.png]

Feedback
Any feedback and/or possible cool features are always welcome! and if you have any questions or want
some help with other stuff, feel free to message me ^^ Use this tool at own risk, I am not responsible for
your actions. Read the disclaimer provided with the tool carefully!

-- Transmission ended --

EDIT: proof of virustotal:
[Image: proof-spotnikinjection.png]
Reply

#2
Moved from Software & Programs to Hacking Tools.
Reply



Forum Jump:


Users browsing this thread:
1 Guest(s)

©0Day  2016 - 2023 | All Rights Reserved.  Made with    for the community. Connected through