Reiluke

nobody is safe online

Blind Sqli Dumper

September 25, 2008

     
i know there are tools out there, but i like to make my own tool and make it simpler for me

ok i made is as simple as possible, to add vuln url just click on “+” and input values the program needs (url, columns and table)

to make it simpler, added mysql schema template, click on get database/tables/columns and you just have to input the url, program will generate the vuln url

can extract data from mysql4/5

app:
http://www.rapidspread.com/file.jsp?id=r9iicb6xxd

sample vid:
http://www.rapidspread.com/file.jsp?id=s0al4fy44s

if you have questions just reply here

Blind SQLi is slow and not for dumping large data, so you need to find the admin credentials and dump from there

 

Image

Posted by reiluke at 10:33 am | permalink

Previous Comments

I have a serious problem with e SQLI dumper Blind
when I run the programe it show me characters strange. (image)

http://img220.imageshack.us/img220/9062/005y.jpg

Posted by cool men at April 17, 2009, 10:54 pm

please use the built in blind dumper in sqlhelper 2.6 its more updated, btw keyword true is a unique word displayed when sql statement is true ( and 1=1 )

Posted by reiluke at April 18, 2009, 11:34 am

All comments are moderated. Your comments will not appear here unless approved by the blog owner. Thank you.

Add a comment








Meter