<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; Database Hacking</title>
	<atom:link href="http://www.darknet.org.uk/category/database-hacking/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>MySQLPasswordAuditor &#8211; Free MySQL Audit/Password Recovery &amp; Cracking Tool</title>
		<link>http://www.darknet.org.uk/2011/12/mysqlpasswordauditor-free-mysql-auditpassword-recovery-cracking-tool/</link>
		<comments>http://www.darknet.org.uk/2011/12/mysqlpasswordauditor-free-mysql-auditpassword-recovery-cracking-tool/#comments</comments>
		<pubDate>Mon, 19 Dec 2011 19:12:34 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[database-security]]></category>
		<category><![CDATA[hacking mysql]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[mysql password auditing]]></category>
		<category><![CDATA[mysql password cracking]]></category>
		<category><![CDATA[mysql password recovery]]></category>
		<category><![CDATA[mysql security]]></category>
		<category><![CDATA[mysqlpasswordauditor]]></category>
		<category><![CDATA[password-recovery]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3119</guid>
		<description><![CDATA[MysqlPasswordAuditor is the FREE Mysql password recovery and auditing software. Mysql is one of the popular and powerful database software used by most of the web based and server side applications. If you have ever lost or forgotten your Mysql database password then MysqlPasswordAuditor can help in recovering it easily. It can also help you [...]]]></description>
			<content:encoded><![CDATA[<p>MysqlPasswordAuditor is the FREE Mysql password recovery and auditing software. Mysql is one of the popular and powerful database software used by most of the web based and server side applications.</p>
<p>If you have ever lost or forgotten your Mysql database password then MysqlPasswordAuditor can help in recovering it easily. It can also help you to audit Mysql database server setup in an corporate environment by discovering the weak password configurations. This makes it one of the must have tool for IT administrators &#038; Penetration Testers.</p>
<p>MysqlPasswordAuditor is very easy to use with the simple dictionary based password recovery method. By default it includes small password list file, however you can find more password dictionary files at OpenWall collection. You can also use tools like Crunch, Cupp to generate custom password list files on your own and then use it with MysqlPasswordAuditor.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<p>MysqlPasswordAuditor works on wide range of platforms starting from Windows XP to latest operating system Windows 7.</p>
<p><strong>Features</strong></p>
<ul>
<li>Free and Simple software to Recover/Audit Mysql Password.</li>
<li>Very useful for IT administrators &#038; Penetration Testers</li>
<li>Dictionary based Password Recovery method</li>
<li>Detailed statistics such as  tested passwords, elapsed time, progress bar is displayed during Audit operation.</li>
<li>Simple, easy to use GUI interface</li>
<li>Integrated Installer for local Installation &#038; Uninstallation. </li>
</ul>
<p>You can download MysqlPasswordAuditor here:</p>
<p><a href="http://securityxploded.net/getfile.php?file=MysqlPasswordAuditor.zip">MysqlPasswordAuditor.zip</a></p>
<p>Or read more <a href="http://securityxploded.com/mysql-password-auditor.php">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=MySQLPasswordAuditor+%E2%80%93+Free+MySQL+Audit%2FPassword+Recovery+%26+Cracking+Tool+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3119+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/12/mysqlpasswordauditor-free-mysql-auditpassword-recovery-cracking-tool/&amp;t=MySQLPasswordAuditor+%E2%80%93+Free+MySQL+Audit%2FPassword+Recovery+%26+Cracking+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/12/mysqlpasswordauditor-free-mysql-auditpassword-recovery-cracking-tool/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/12/mysqlpasswordauditor-free-mysql-auditpassword-recovery-cracking-tool/&amp;title=MySQLPasswordAuditor+%E2%80%93+Free+MySQL+Audit%2FPassword+Recovery+%26+Cracking+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/12/mysqlpasswordauditor-free-mysql-auditpassword-recovery-cracking-tool/&amp;title=MySQLPasswordAuditor+%E2%80%93+Free+MySQL+Audit%2FPassword+Recovery+%26+Cracking+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/12/mysqlpasswordauditor-free-mysql-auditpassword-recovery-cracking-tool/&amp;title=MySQLPasswordAuditor+%E2%80%93+Free+MySQL+Audit%2FPassword+Recovery+%26+Cracking+Tool" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/12/mysqlpasswordauditor-free-mysql-auditpassword-recovery-cracking-tool/&amp;title=MySQLPasswordAuditor+%E2%80%93+Free+MySQL+Audit%2FPassword+Recovery+%26+Cracking+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F12%2Fmysqlpasswordauditor-free-mysql-auditpassword-recovery-cracking-tool%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/12/mysqlpasswordauditor-free-mysql-auditpassword-recovery-cracking-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Mole &#8211; Automatic SQL Injection SQLi Exploitation Tool</title>
		<link>http://www.darknet.org.uk/2011/12/the-mole-automatic-sql-injection-sqli-exploitation-tool/</link>
		<comments>http://www.darknet.org.uk/2011/12/the-mole-automatic-sql-injection-sqli-exploitation-tool/#comments</comments>
		<pubDate>Thu, 01 Dec 2011 16:50:44 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[automatic sql injection tool]]></category>
		<category><![CDATA[database-security]]></category>
		<category><![CDATA[exploitation tool]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[sql injection exploitation]]></category>
		<category><![CDATA[sql-injection]]></category>
		<category><![CDATA[sql-injection-tool]]></category>
		<category><![CDATA[sqli tool]]></category>
		<category><![CDATA[the mole]]></category>
		<category><![CDATA[the mole sql injection tool]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3234</guid>
		<description><![CDATA[The Mole is an automatic SQL Injection exploitation tool. Only by providing a vulnerable URL and a valid string on the site it can detect the injection and exploit it, either by using the union technique or a boolean query based technique. Features Support for injections using Mysql, SQL Server, Postgres and Oracle databases. Command [...]]]></description>
			<content:encoded><![CDATA[<p>The Mole is an automatic SQL Injection exploitation tool. Only by providing a vulnerable URL and a valid string on the site it can detect the injection and exploit it, either by using the union technique or a boolean query based technique.</p>
<p align="center"><img src="http://farm8.staticflickr.com/7016/6436951245_06f742897a.jpg" alt="The Mole SQL Injection Tool" /></p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<p><strong>Features</strong></p>
<ul>
<li>    Support for injections using Mysql, SQL Server, Postgres and Oracle databases.</li>
<li>    Command line interface. Different commands trigger different actions.</li>
<li>    Auto-completion for commands, command arguments and database, table and columns names.</li>
<li>    Support for query filters, in order to bypass certain IPS/IDS rules using generic filters, and the possibility of creating new ones easily.</li>
<li>    Developed in python 3.</li>
</ul>
<p>If you want to know how to use The Mole there&#8217;s a good tutorial <a href="http://themole.sourceforge.net/?q=tutorial">here</a>.</p>
<p>You can download The Mole here:</p>
<p>Windows: <a href="http://sourceforge.net/projects/themole/files/themole-0.2.6/themole-0.2.6-win32.zip/download">themole-0.2.6-win32.zip</a><br />
Linux: <a href="http://sourceforge.net/projects/themole/files/themole-0.2.6/themole-0.2.6-lin-src.tar.gz/download">themole-0.2.6-lin-src.tar.gz</a></p>
<p>Or read more <a href="http://themole.sourceforge.net/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=The+Mole+%E2%80%93+Automatic+SQL+Injection+SQLi+Exploitation+Tool+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3234+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/12/the-mole-automatic-sql-injection-sqli-exploitation-tool/&amp;t=The+Mole+%E2%80%93+Automatic+SQL+Injection+SQLi+Exploitation+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/12/the-mole-automatic-sql-injection-sqli-exploitation-tool/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/12/the-mole-automatic-sql-injection-sqli-exploitation-tool/&amp;title=The+Mole+%E2%80%93+Automatic+SQL+Injection+SQLi+Exploitation+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/12/the-mole-automatic-sql-injection-sqli-exploitation-tool/&amp;title=The+Mole+%E2%80%93+Automatic+SQL+Injection+SQLi+Exploitation+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/12/the-mole-automatic-sql-injection-sqli-exploitation-tool/&amp;title=The+Mole+%E2%80%93+Automatic+SQL+Injection+SQLi+Exploitation+Tool" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/12/the-mole-automatic-sql-injection-sqli-exploitation-tool/&amp;title=The+Mole+%E2%80%93+Automatic+SQL+Injection+SQLi+Exploitation+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F12%2Fthe-mole-automatic-sql-injection-sqli-exploitation-tool%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/12/the-mole-automatic-sql-injection-sqli-exploitation-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>sqlsus 0.7.1 Released &#8211; MySQL Injection &amp; Takeover Tool</title>
		<link>http://www.darknet.org.uk/2011/11/sqlsus-0-7-1-released-mysql-injection-takeover-tool/</link>
		<comments>http://www.darknet.org.uk/2011/11/sqlsus-0-7-1-released-mysql-injection-takeover-tool/#comments</comments>
		<pubDate>Mon, 21 Nov 2011 14:15:08 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[database-security]]></category>
		<category><![CDATA[hacking mysql]]></category>
		<category><![CDATA[hacking toold]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[mysql hacking tool]]></category>
		<category><![CDATA[mysql injection]]></category>
		<category><![CDATA[mysql injection tool]]></category>
		<category><![CDATA[mysql security]]></category>
		<category><![CDATA[mysql takeover]]></category>
		<category><![CDATA[sql-injection]]></category>
		<category><![CDATA[sql-injection-tool]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1680</guid>
		<description><![CDATA[sqlsus is an open source MySQL injection and takeover tool, written in perl. Via a command line interface, you can retrieve the database(s) structure, inject your own SQL queries (even complex ones), download files from the web server, crawl the website for writable directories, upload and control a backdoor, clone the database(s), and much more&#8230;Whenever [...]]]></description>
			<content:encoded><![CDATA[<p>sqlsus is an open source MySQL injection and takeover tool, written in perl. Via a command line interface, you can retrieve the database(s) structure, inject your own SQL queries (even complex ones), download files from the web server, crawl the website for writable directories, upload and control a backdoor, clone the database(s), and much more&#8230;Whenever relevant, sqlsus will mimic a MySQL console output.</p>
<p>sqlsus focuses on speed and efficiency, optimising the available injection space, making the best use (I can think of) of MySQL functions. It uses stacked subqueries and an powerful blind injection algorithm to maximise the data gathered per web server hit. Using multithreading on top of that, sqlsus is an extremely fast database dumper, be it for inband or blind injection.If the privileges are high enough, sqlsus will be a great help for uploading a backdoor through the injection point, and takeover the web server.</p>
<p>It uses SQLite as a backend, for an easier use of what has been dumped, and integrates a lot of usual features (see below) such as cookie support, socks/http proxying, https..</p>
<p><strong>What&#8217;s New</strong></p>
<p>Starting with version 0.7, sqlsus now supports time-based blind injection and automatically detects web server / suhosin / etc.. length restrictions.</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<ul>
<li>Added time-based blind injection support (added option &#8220;blind_sleep&#8221;, and renamed &#8220;string_to_match&#8221; to &#8220;blind_string&#8221;).</li>
<li>It is now possible to force sqlsus to exit when it&#8217;s hanging (i.e.: retrieving data), by hitting Ctrl-C more than twice.</li>
<li>Rewrite of &#8220;autoconf max_sendable&#8221;, so that sqlsus will properly detect which length restriction applies (WEB server / layer above). (removed option &#8220;max_sendable&#8221;, added options &#8220;max_url_length&#8221; and &#8220;max_inj_length&#8221;)</li>
<li>Uploading a file now sends it into chunks under the length restriction.</li>
<li>sqlsus now saves variables after each command, so that forcing it to quit (or killing it) will not discard the changes that were made.</li>
<li>Added a progress bar to inband mode, sqlsus now determines the number of rows to be returned prior to fetching them.</li>
<li>get db (tables/columns) in inband mode now uses multithreading (like everything else).</li>
<li>clone now uses count(*) if available (set by &#8220;get count&#8221; / &#8220;get db&#8221;), instead of using fetch-ahead.</li>
<li>In blind mode, &#8220;start&#8221; will now test if things work the way they should, by injecting 2 queries : one true and one false.</li>
<li>sqlsus now prints what configuration options are overridden (when a saved value differs from the configuration file).</li>
</ul>
<p>You can download sqlsus 0.7.1 here:</p>
<p><a href="http://sourceforge.net/projects/sqlsus/files/sqlsus/sqlsus-0.7.1.tgz/download">sqlsus-0.7.1.tgz</a></p>
<p>Or read more <a href="http://sqlsus.sourceforge.net/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=sqlsus+0.7.1+Released+%E2%80%93+MySQL+Injection+%26+Takeover+Tool+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D1680+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/11/sqlsus-0-7-1-released-mysql-injection-takeover-tool/&amp;t=sqlsus+0.7.1+Released+%E2%80%93+MySQL+Injection+%26+Takeover+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/11/sqlsus-0-7-1-released-mysql-injection-takeover-tool/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/11/sqlsus-0-7-1-released-mysql-injection-takeover-tool/&amp;title=sqlsus+0.7.1+Released+%E2%80%93+MySQL+Injection+%26+Takeover+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/11/sqlsus-0-7-1-released-mysql-injection-takeover-tool/&amp;title=sqlsus+0.7.1+Released+%E2%80%93+MySQL+Injection+%26+Takeover+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/11/sqlsus-0-7-1-released-mysql-injection-takeover-tool/&amp;title=sqlsus+0.7.1+Released+%E2%80%93+MySQL+Injection+%26+Takeover+Tool" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/11/sqlsus-0-7-1-released-mysql-injection-takeover-tool/&amp;title=sqlsus+0.7.1+Released+%E2%80%93+MySQL+Injection+%26+Takeover+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F11%2Fsqlsus-0-7-1-released-mysql-injection-takeover-tool%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/11/sqlsus-0-7-1-released-mysql-injection-takeover-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>w3af v1.1 Released For Download &#8211; Web Application Attack &amp; Audit Framework</title>
		<link>http://www.darknet.org.uk/2011/11/w3af-v1-1-released-for-download-web-application-attack-audit-framework/</link>
		<comments>http://www.darknet.org.uk/2011/11/w3af-v1-1-released-for-download-web-application-attack-audit-framework/#comments</comments>
		<pubDate>Mon, 14 Nov 2011 17:37:57 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[auditing-framework]]></category>
		<category><![CDATA[cross site scriping]]></category>
		<category><![CDATA[hacking-web-application]]></category>
		<category><![CDATA[hacking-web-sites]]></category>
		<category><![CDATA[Python]]></category>
		<category><![CDATA[sql-injection]]></category>
		<category><![CDATA[sql-injection-tool]]></category>
		<category><![CDATA[w3af]]></category>
		<category><![CDATA[web-applicaton-security]]></category>
		<category><![CDATA[web-auditing]]></category>
		<category><![CDATA[XSS]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3225</guid>
		<description><![CDATA[w3af is a Web Application Attack and Audit Framework. The project&#8217;s goal is to create a framework to find and exploit web application vulnerabilities that is easy to use and extend. The w3af core and it&#8217;s plugins are fully written in python. The project has more than 130 plugins, which check for SQL injection, cross [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.darknet.org.uk/tag/w3af/">w3af</a> is a Web Application Attack and Audit Framework. The project&#8217;s goal is to create a framework to find and exploit web application vulnerabilities that is easy to use and extend.</p>
<p>The w3af core and it&#8217;s plugins are fully written in python. The project has more than 130 plugins, which check for <a href="http://www.darknet.org.uk/tag/sql-injection/">SQL injection</a>, cross site scripting (<a href="http://www.darknet.org.uk/tag/xss/">xss</a>), local and remote file inclusion and much </p>
<p>Finally it&#8217;s out of BETA and RC and there&#8217;s now a stable core for the codebase.</p>
<p><strong>New in v1.1</strong></p>
<ul>
<li>Considerably increased performance by implementing gzip encoding</li>
<li>Enhanced embedded bug report system using Trac&#8217;s XMLRPC</li>
<li>Fixed hundreds of bugs</li>
<li>Fixed critical bug in auto-update feature</li>
<li>Enhanced integration with other tools (bug fixed and addedmore info to the file)</li>
</ul>
<p>You can download w3af v1.1 here:</p>
<p><a href="http://downloads.sourceforge.net/project/w3af/w3af/w3af%201.1/w3af-1.1.tar.bz2?r=http%3A%2F%2Fsourceforge.net%2Fprojects%2Fw3af%2Ffiles%2Fw3af%2Fw3af%25201.1%2F&#038;ts=1321290325&#038;use_mirror=cdnetworks-kr-1">w3af-1.1.tar.bz2</a></p>
<p>Or you can read more <a href="http://www.w3af.com/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=w3af+v1.1+Released+For+Download+%E2%80%93+Web+Application+Attack+%26+Audit+Framework+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3225+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/11/w3af-v1-1-released-for-download-web-application-attack-audit-framework/&amp;t=w3af+v1.1+Released+For+Download+%E2%80%93+Web+Application+Attack+%26+Audit+Framework" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/11/w3af-v1-1-released-for-download-web-application-attack-audit-framework/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/11/w3af-v1-1-released-for-download-web-application-attack-audit-framework/&amp;title=w3af+v1.1+Released+For+Download+%E2%80%93+Web+Application+Attack+%26+Audit+Framework" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/11/w3af-v1-1-released-for-download-web-application-attack-audit-framework/&amp;title=w3af+v1.1+Released+For+Download+%E2%80%93+Web+Application+Attack+%26+Audit+Framework" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/11/w3af-v1-1-released-for-download-web-application-attack-audit-framework/&amp;title=w3af+v1.1+Released+For+Download+%E2%80%93+Web+Application+Attack+%26+Audit+Framework" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/11/w3af-v1-1-released-for-download-web-application-attack-audit-framework/&amp;title=w3af+v1.1+Released+For+Download+%E2%80%93+Web+Application+Attack+%26+Audit+Framework" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F11%2Fw3af-v1-1-released-for-download-web-application-attack-audit-framework%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/11/w3af-v1-1-released-for-download-web-application-attack-audit-framework/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>MySQL.com Compromised &amp; Spreading Malware</title>
		<link>http://www.darknet.org.uk/2011/09/mysql-com-compromised-spreading-malware/</link>
		<comments>http://www.darknet.org.uk/2011/09/mysql-com-compromised-spreading-malware/#comments</comments>
		<pubDate>Tue, 27 Sep 2011 06:02:47 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[blackhole exploit kit]]></category>
		<category><![CDATA[hacking mysql]]></category>
		<category><![CDATA[hacking mysql.com]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[mwjs159]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[mysql.com compromised]]></category>
		<category><![CDATA[mysql.com hack]]></category>
		<category><![CDATA[mysql.com spreading malware]]></category>
		<category><![CDATA[mysql.com trojan]]></category>
		<category><![CDATA[sucuri security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3193</guid>
		<description><![CDATA[The latest story doing the rounds is that MySQL.com got hacked and was serving malware which put it on the Google malware block list. It appears to be in the clear now though and it&#8217;s accessible again via Google. It seems to be a similar case with that of the recent Linux.com and Kernel.org hacks [...]]]></description>
			<content:encoded><![CDATA[<p>The latest story doing the rounds is that <a href="http://mysql.com/">MySQL.com</a> got hacked and was serving malware which put it on the Google malware block list.</p>
<p>It appears to be in the clear now though and it&#8217;s accessible again via <a href="http://www.darknet.org.uk/tag/google/">Google</a>. It seems to be a similar case with that of the recent Linux.com and Kernel.org hacks &#8211; in which the sites were compromised via developers who had access.</p>
<p>In this case it seems MySQL.com was compromised by <a href="http://www.darknet.org.uk/category/virustrojanswormsrootkits/">malware</a> that spreads itself via FTP from client machines, it then uploads malicious JavaScript to any sites the client machine has access to and propagates malware using those sites.</p>
<blockquote><p>Hackers recently compromised the website hosting the open-source MySQL database management system and caused it to infect the PCs of visitors who used unpatched browsers and plug-ins, security researchers said.</p>
<p>MySQL.com was infected with mwjs159, website malware that often spreads when compromised machines are used to access restricted FTP clients, a blog post from Sucuri Security reported. The hack caused people visiting the site to be redirected to a site that attempted to install malware on visitors&#8217; computers using code from the Blackhole exploit kit, separate researchers from Armorize said.</p>
<p>“It exploits the visitor&#8217;s browsing platform (the browser, the browser plugins like Adobe Flash, Adobe PDF, etc, Java, &#8230;), and upon successful exploitation, permanently installs a piece of malware into the visitor&#8217;s machine, without the visitor&#8217;s knowledge,” Armorize researchers warned. “The visitor doesn&#8217;t need to click or agree to anything; simply visiting mysql.com with a vulnerable browsing platform will result in an infection.”</p>
<p>Officials with the Oracle-owned MySQL didn&#8217;t respond to email seeking comment for this post.</p></blockquote>
<p>I would say MySQL.com is a fairly high traffic site so this attack may have triggered a fair amount of infections &#8211; especially if the people visiting were using outdated versions of <a href="http://www.darknet.org.uk/category/windows-hacking/">Windows</a> or old versions of Internet Explorer.</p>
<p>But then again, I&#8217;d find that fairly unlikely &#8211; people browsing to the site of the #1 Open Source RDBMS would most likely be using Linux, or fully updated Windows systems with <a href="http://www.darknet.org.uk/tag/chrome/">Chrome</a> or <a href="http://www.darknet.org.uk/tag/firefox/">Firefox</a>.</p>
<p>That&#8217;s what I&#8217;d like to think anyway&#8230;</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<blockquote><p>The reported breach is the latest to affect the distribution system for a widely used piece of open-source software. The kernel.org and Linux.com websites used to develop and distribute the Linux operating system remain inaccessible four weeks after it was infected with malware that gained root access, modified system software, and logged passwords and transactions of the people who used them. Representatives haven&#8217;t said when they expect the sites to be operational again.</p>
<p>Besides sullying the reputation of open-source software as more secure alternative to competing applications from Microsoft and other for-profit companies, the compromises have sparked concerns about the purity of the code the sites host. If attackers were able to secretly alter the code with backdoors, they could potentially surveil or gain control over sensitive networks that rely on the applications.</p>
<p>In the MySQL.com hack, the attackers appear to have aimed for the less ambitious goal of infecting the desktop machines of those who visited the site. At time of writing, just five of the top 44 antivirus providers were detecting the threat, according to this analysis from VirusTotal.</p>
<p>Sucuri speculated the site was infected after a MySQL developer was compromised and had his password stolen.</p></blockquote>
<p>It doesn&#8217;t seem to be as serious as the Linux.com/Kernel.org compromises as in this case it&#8217;s simply JavaScript uploaded via FTP from a developer account &#8211; the actual server hosting MySQL.com wasn&#8217;t really hacked and there was no root access gained.</p>
<p>It seems like they have cleared the infection up now, I wonder if they have any stats on how many people were effected by the malware?</p>
<p>Source: <a href="http://www.theregister.co.uk/2011/09/26/mysql_hacked/">The Register</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=MySQL.com+Compromised+%26+Spreading+Malware+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3193+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/09/mysql-com-compromised-spreading-malware/&amp;t=MySQL.com+Compromised+%26+Spreading+Malware" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/09/mysql-com-compromised-spreading-malware/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/09/mysql-com-compromised-spreading-malware/&amp;title=MySQL.com+Compromised+%26+Spreading+Malware" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/09/mysql-com-compromised-spreading-malware/&amp;title=MySQL.com+Compromised+%26+Spreading+Malware" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/09/mysql-com-compromised-spreading-malware/&amp;title=MySQL.com+Compromised+%26+Spreading+Malware" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/09/mysql-com-compromised-spreading-malware/&amp;title=MySQL.com+Compromised+%26+Spreading+Malware" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F09%2Fmysql-com-compromised-spreading-malware%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/09/mysql-com-compromised-spreading-malware/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>sqlmap 0.9 Released &#8211; Automatic Blind SQL Injection Tool</title>
		<link>http://www.darknet.org.uk/2011/04/sqlmap-0-9-released-automatic-blind-sql-injection-tool/</link>
		<comments>http://www.darknet.org.uk/2011/04/sqlmap-0-9-released-automatic-blind-sql-injection-tool/#comments</comments>
		<pubDate>Thu, 14 Apr 2011 09:16:51 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[automatic sql injection]]></category>
		<category><![CDATA[database-security]]></category>
		<category><![CDATA[sql-injection]]></category>
		<category><![CDATA[sql-injection-tool]]></category>
		<category><![CDATA[sqlmap]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[web-application-security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3087</guid>
		<description><![CDATA[It&#8217;s been a while since we&#8217;ve written about sqlmap, the last time was when 0.7 was released back in July 2009 &#8211; sqlmap 0.7 Released – Automatic SQL Injection Tool. Well sqlmap 0.9 has been released and has a considerable amount of changes including an almost entirely re-written SQL Injection detection engine. For those that [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s been a while since we&#8217;ve written about <a href="http://www.darknet.org.uk/tag/sqlmap/">sqlmap</a>, the last time was when 0.7 was released back in July 2009 &#8211; <a href="http://www.darknet.org.uk/2009/07/sqlmap-0-7-released-automatic-sql-injection-tool/">sqlmap 0.7 Released – Automatic SQL Injection Tool</a>.</p>
<p>Well sqlmap 0.9 has been released and has a considerable amount of changes including an almost entirely re-written <a href="http://www.darknet.org.uk/tag/sql-injection/">SQL Injection</a> detection engine.</p>
<p>For those that aren&#8217;t familiar with the tool, sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers. It comes with a kick-ass detection engine, many niche features for the ultimate penetration tester and a broad range of switches lasting from database fingerprinting, over data fetching from the database, to accessing the underlying file system and executing commands on the operating system via out-of-band connections.</p>
<p><strong>New Features/Changes</strong></p>
<ul>
<li>Rewritten SQL injection detection engine (Bernardo and Miroslav).</li>
<li>Support to directly connect to the database without passing via a SQL injection, -d switch (Bernardo and Miroslav).</li>
<li>Added full support for both time-based blind SQL injection and error-based SQL injection techniques (Bernardo and Miroslav).</li>
<li>Implemented support for SQLite 2 and 3 (Bernardo and Miroslav).</li>
<li>Implemented support for Firebird (Bernardo and Miroslav).</li>
<li>Implemented support for Microsoft Access, Sybase and SAP MaxDB (Miroslav).</li>
<li>Added support to tamper injection data with &#8211;tamper switch (Bernardo and Miroslav).</li>
<li>Added automatic recognition of password hashes format and support to crack them with a dictionary-based attack (Miroslav).</li>
<li>Added support to fetch unicode data (Bernardo and Miroslav).</li>
<li>Added support to use persistent HTTP(s) connection for speed improvement, &#8211;keep-alive switch (Miroslav).</li>
<li>Implemented several optimization switches to speed up the exploitation of SQL injections (Bernardo and Miroslav).</li>
<li>Support to parse and test forms on target url, &#8211;forms switch (Bernardo and Miroslav).</li>
<li>Added switches to brute-force tables names and columns names with a dictionary attack, &#8211;common-tables and &#8211;common-columns.</li>
</ul>
<p>The complete changelog is available for viewing <a href="https://svn.sqlmap.org/sqlmap/trunk/sqlmap/doc/ChangeLog">here</a>.</p>
<p>You can also download the user manual here [PDF] &#8211; <a href="http://sqlmap.sourceforge.net/doc/README.pdf">sqlmap README</a></p>
<p>You can download sqlmap 0.9 here:</p>
<p><a href="http://downloads.sourceforge.net/sqlmap/sqlmap-0.9.tar.gz">sqlmap-0.9.tar.gz</a></p>
<p>Or read more <a href="http://sqlmap.sourceforge.net/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=sqlmap+0.9+Released+%E2%80%93+Automatic+Blind+SQL+Injection+Tool+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3087+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/04/sqlmap-0-9-released-automatic-blind-sql-injection-tool/&amp;t=sqlmap+0.9+Released+%E2%80%93+Automatic+Blind+SQL+Injection+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/04/sqlmap-0-9-released-automatic-blind-sql-injection-tool/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/04/sqlmap-0-9-released-automatic-blind-sql-injection-tool/&amp;title=sqlmap+0.9+Released+%E2%80%93+Automatic+Blind+SQL+Injection+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/04/sqlmap-0-9-released-automatic-blind-sql-injection-tool/&amp;title=sqlmap+0.9+Released+%E2%80%93+Automatic+Blind+SQL+Injection+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/04/sqlmap-0-9-released-automatic-blind-sql-injection-tool/&amp;title=sqlmap+0.9+Released+%E2%80%93+Automatic+Blind+SQL+Injection+Tool" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/04/sqlmap-0-9-released-automatic-blind-sql-injection-tool/&amp;title=sqlmap+0.9+Released+%E2%80%93+Automatic+Blind+SQL+Injection+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F04%2Fsqlmap-0-9-released-automatic-blind-sql-injection-tool%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/04/sqlmap-0-9-released-automatic-blind-sql-injection-tool/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Acunetix WVS (Web Vulnerability Scanner) 7 Review &#8211; Engine &amp; Scanning Improvements</title>
		<link>http://www.darknet.org.uk/2011/02/acunetix-wvs-web-vulnerability-scanner-7-review-engine-scanning-improvements/</link>
		<comments>http://www.darknet.org.uk/2011/02/acunetix-wvs-web-vulnerability-scanner-7-review-engine-scanning-improvements/#comments</comments>
		<pubDate>Wed, 23 Feb 2011 10:50:09 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[acunetix]]></category>
		<category><![CDATA[acunetix review]]></category>
		<category><![CDATA[acunetix scanner review]]></category>
		<category><![CDATA[acunetix wvs]]></category>
		<category><![CDATA[acunetix wvs review]]></category>
		<category><![CDATA[acusensor]]></category>
		<category><![CDATA[AJAX-Security]]></category>
		<category><![CDATA[blind-sql-injection]]></category>
		<category><![CDATA[cross-site-scripting]]></category>
		<category><![CDATA[http fuzzer]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[sql-injection]]></category>
		<category><![CDATA[web vulnerability scanner]]></category>
		<category><![CDATA[web-application-security]]></category>
		<category><![CDATA[wvs]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3050</guid>
		<description><![CDATA[We wrote our first review of Acunetix WVS 6 back in January 2009 and published an update about the release of Acunetix Web Vulnerability Scanner (WVS) 6.5 in June 2009. The team over at Acunetix have been working hard on version 7 for quite some time and released a new build with added features earlier [...]]]></description>
			<content:encoded><![CDATA[<p>We wrote our first <a href="http://www.darknet.org.uk/2009/01/acunetix-web-vulnerability-scanner-6-review/">review of Acunetix WVS 6</a> back in January 2009 and published an update about the release of <a href="http://www.darknet.org.uk/2009/06/acunetix-web-vulnerability-scanner-wvs-6-5-released/">Acunetix Web Vulnerability Scanner (WVS) 6.5</a> in June 2009.</p>
<p>The team over at Acunetix have been working hard on version 7 for quite some time and released a new build with added features earlier this year in February. It also has an entirely new attack vector, DOM XSS.</p>
<p>If you are already familiar with WVS, it&#8217;ll feel on the surface much the same as the old version as the interface hasn&#8217;t changed drastically (which is a good thing).</p>
<p align="center"><img src="http://farm6.static.flickr.com/5097/5453367302_aa983f51af.jpg" alt="Acunetix WVS (Web Vulnerability Scanner) 7" /></p>
<p>Most of the improvements and major changes in version 7 are under the hood, but at first use you will notice the difference. The scanner is much faster and seems more intelligent (there were noticeably less false positives than I remember in version 6) and it has much better support for Web 2.0 and AJAX powered web applications. That is of course a huge area now and very important for a tool like this that focuses on Web Security to support well (the modules have been re-written to support technologies such as such as JSON, XML and more). It also helps that it uses new unique verification techniques so you don&#8217;t have to wade through all the false positives by hand.</p>
<p>The order and layout of the scan results is also clearer and easier to follow with better sections and more information about each alert. </p>
<p align="center"><img src="http://farm6.static.flickr.com/5133/5453367402_87a2dc2e64.jpg" alt="Acunetix WVS (Web Vulnerability Scanner) 7" /></p>
<p>The information given is also more complete with links to the original advisory and for application based flaws, it&#8217;s also extremely easy to see the full headers returned by the web server, relaunch the attack with the HTTP Editor, retest the alert or mark it as a false positive.</p>
<p align="center"><img src="http://farm6.static.flickr.com/5217/5453367562_ffa25cf3dd.jpg" alt="Acunetix WVS 7" /></p>
<p>It also gives suggestions on how to fix the issue, these are usually quite general though rather than specific technical instructions. One thing I really like about WVS it&#8217;s a very well equipped scanner which can crawl, scan, do vulnerability checks and has a bunch of handy tools for comparing results and even fuzzing.</p>
<p>With the HTTP Fuzzer can define your own character sets, iterations, use files and much more. It&#8217;s a very neat tool and not only for fuzzing, you can also use it to validate query sets to create your own valid input rules for WVS to test.</p>
<p align="center"><img src="http://farm6.static.flickr.com/5253/5455789018_49e5ce4374.jpg" alt="Acunetix WVS HTTP Fuzzer" /></p>
<p>Another useful tool to have built in to this kind of application is a local <a href="http://www.darknet.org.uk/tag/http-proxy/">HTTP Proxy</a> &#8211; which is labeled in WVS as HTTP Sniffer. The HTTP Sniffer acts as a proxy and allows you to capture, examine and modify HTTP traffic between an HTTP client and a web server. You can also enable, add or edit traps to trap traffic before it is sent to the web server or back to the web client.</p>
<p>It also has a tool called the Authentication Tester, which you can use to perform dictionary/brute-force attacks against login pages which use both HTTP (NTLM v1, NTLM v2, digest) or form based authentication. This tool uses two predefined text files (dictionaries) which contain a list of common user-names and passwords. You can add your own combinations to these text files. It&#8217;s a very easy to setup brute-forcing tool for form-based authentication testing.</p>
<p align="center"><img src="http://farm6.static.flickr.com/5052/5455176551_32fc28fcf3.jpg" alt="Acunetix WVS Authentication Tester" /></p>
<p>For those of who do this for a living, the Compare Results tool is great for those clients you scan regularly &#8211; it even allows you compare site structure. With this and regular scans you can easily monitor if and when any vulnerabilities are introduced and keep things under control.</p>
<p align="center"><img src="http://farm6.static.flickr.com/5060/5455176755_7ce53e64a4.jpg" alt="Acunetix WVS Compare Results Tool" /></p>
<p>Overall this new version of WVS feels similar to version 6 but somehow tighter, faster and more efficient &#8211; if you liked WVS before, you&#8217;ll love it now.</p>
<p>As an addition for the more advanced users, you can actually write your own Acunetix WVS Vulnerability Checks now too. As the new Checks are JavaScript in WVS 7 &#8211; it&#8217;s faster, easier and more flexible to write completely new Checks or edit existing Checks.</p>
<p>You can get the tool and detailed scripting reference to develop your own Checks here:</p>
<p><a href="The tool and detailed Acunetix WVS scripting reference can be downloaded from the following URL; http://www.acunetix.com/download/tools/Acunetix_SDK.zip">Acunetix_SDK.zip</a></p>
<p>More details about that here:</p>
<p><a href="http://www.acunetix.com/blog/docs/creating-vulnerability-checks/">Creating custom vulnerability checks for Acunetix WVS Version 7</a></p>
<p><strong>Acunetix WVS Trial Edition</strong></p>
<p>Download Acunetix Web Vulnerability Scanner v7 trial edition from <a href="http://www.acunetix.com/vulnerability-scanner/download.htm">here</a>.</p>
<p>There are also some useful resources here:</p>
<ul>
<li><a href="http://www.acunetix.com/vulnerability-scanner/getting-started.htm">Getting started with Acunetix Web Vulnerability Scanner</a></li>
<li><a href="http://www.acunetix.com/vulnerability-scanner/wvs_getting_started.pdf">Getting Started Guide</a> [PDF]</li>
<li><a href="http://www.acunetix.com/ordering/pricing.htm">Ordering Acunetix Web Vulnerability Scanner (WVS) &#038; Pricing</a></li>
<li><a href="http://www.acunetix.com/support/faq.htm">The Acunetix WVS FAQ</a></li>
</ul>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Acunetix+WVS+%28Web+Vulnerability+Scanner%29+7+Review+%E2%80%93+Engine+%26+Scanning+Improvements+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3050+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/02/acunetix-wvs-web-vulnerability-scanner-7-review-engine-scanning-improvements/&amp;t=Acunetix+WVS+%28Web+Vulnerability+Scanner%29+7+Review+%E2%80%93+Engine+%26+Scanning+Improvements" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/02/acunetix-wvs-web-vulnerability-scanner-7-review-engine-scanning-improvements/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/02/acunetix-wvs-web-vulnerability-scanner-7-review-engine-scanning-improvements/&amp;title=Acunetix+WVS+%28Web+Vulnerability+Scanner%29+7+Review+%E2%80%93+Engine+%26+Scanning+Improvements" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/02/acunetix-wvs-web-vulnerability-scanner-7-review-engine-scanning-improvements/&amp;title=Acunetix+WVS+%28Web+Vulnerability+Scanner%29+7+Review+%E2%80%93+Engine+%26+Scanning+Improvements" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/02/acunetix-wvs-web-vulnerability-scanner-7-review-engine-scanning-improvements/&amp;title=Acunetix+WVS+%28Web+Vulnerability+Scanner%29+7+Review+%E2%80%93+Engine+%26+Scanning+Improvements" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/02/acunetix-wvs-web-vulnerability-scanner-7-review-engine-scanning-improvements/&amp;title=Acunetix+WVS+%28Web+Vulnerability+Scanner%29+7+Review+%E2%80%93+Engine+%26+Scanning+Improvements" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F02%2Facunetix-wvs-web-vulnerability-scanner-7-review-engine-scanning-improvements%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/02/acunetix-wvs-web-vulnerability-scanner-7-review-engine-scanning-improvements/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Inguma Is Back &#8211; The Penetration Testing &amp; Vulnerability Research Toolkit</title>
		<link>http://www.darknet.org.uk/2011/01/inguma-is-back-the-penetration-testing-vulnerability-research-toolkit/</link>
		<comments>http://www.darknet.org.uk/2011/01/inguma-is-back-the-penetration-testing-vulnerability-research-toolkit/#comments</comments>
		<pubDate>Tue, 18 Jan 2011 11:03:12 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[inguma]]></category>
		<category><![CDATA[pen testing tools]]></category>
		<category><![CDATA[pen-testing]]></category>
		<category><![CDATA[pen-testing-toolkit]]></category>
		<category><![CDATA[penetration testing toolkit]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[vulnerability research]]></category>
		<category><![CDATA[vulnerability testing]]></category>
		<category><![CDATA[vulnerability-assessment]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3030</guid>
		<description><![CDATA[Inguma is back and being actively developed again. It&#8217;s been quite a long time, far too long in fact. We first reported about Inguma way back in 2007 and our latest mention of it was in March 2008. A new version has just been released almost 3 years later with some major changes and a [...]]]></description>
			<content:encoded><![CDATA[<p>Inguma is back and being actively developed again. It&#8217;s been quite a long time, far too long in fact. We first reported about <a href="http://www.darknet.org.uk/2007/08/inguma-penetration-testing-toolkit/">Inguma way back in 2007</a> and our latest mention of it was in <a href="http://www.darknet.org.uk/2008/03/inguma-0072-released-for-download-penetration-testing-toolkit/">March 2008</a>.</p>
<p>A new version has just been released almost 3 years later with some major changes and a big GUI revamp. Inguma is a penetration testing toolkit entirely written in python. The framework includes modules to discover hosts, gather information about, fuzz targets, brute force user names and passwords and, of course, exploits. While the current exploitation capabilities in Inguma may be limited, this program provides numerous tools for information gathering and target auditing.</p>
<p>There are some good docs to get you up and running too:</p>
<ul>
<li><a href="http://code.google.com/p/inguma/wiki/InstallationGuide">Installation Guide</a></li>
<li><a href="http://code.google.com/p/inguma/wiki/IngumaGettingStarted">Getting Started</a></li>
<li><a href="http://code.google.com/p/inguma/wiki/ConsoleQuickStart">Console Quick Start</a></li>
<li><a href="http://code.google.com/p/inguma/wiki/PyGtkQuickStart">GUI Quick Start</a></li>
<li><a href="http://code.google.com/p/inguma/wiki/DocumentationMain">Full Documentation</a></li>
</ul>
<p>The announcement from the developers blog is here:</p>
<p><a href="http://ingumadev.blogspot.com/2011/01/we-are-back.html">We are back</a></p>
<p>You can download Inguma 0.2 here:</p>
<p><a href="http://inguma.googlecode.com/files/inguma-0.2.tar.gz">inguma-0.2.tar.gz</a></p>
<p>Or read more <a href="http://code.google.com/p/inguma/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Inguma+Is+Back+%E2%80%93+The+Penetration+Testing+%26+Vulnerability+Research+Toolkit+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3030+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/01/inguma-is-back-the-penetration-testing-vulnerability-research-toolkit/&amp;t=Inguma+Is+Back+%E2%80%93+The+Penetration+Testing+%26+Vulnerability+Research+Toolkit" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/01/inguma-is-back-the-penetration-testing-vulnerability-research-toolkit/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/01/inguma-is-back-the-penetration-testing-vulnerability-research-toolkit/&amp;title=Inguma+Is+Back+%E2%80%93+The+Penetration+Testing+%26+Vulnerability+Research+Toolkit" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/01/inguma-is-back-the-penetration-testing-vulnerability-research-toolkit/&amp;title=Inguma+Is+Back+%E2%80%93+The+Penetration+Testing+%26+Vulnerability+Research+Toolkit" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/01/inguma-is-back-the-penetration-testing-vulnerability-research-toolkit/&amp;title=Inguma+Is+Back+%E2%80%93+The+Penetration+Testing+%26+Vulnerability+Research+Toolkit" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/01/inguma-is-back-the-penetration-testing-vulnerability-research-toolkit/&amp;title=Inguma+Is+Back+%E2%80%93+The+Penetration+Testing+%26+Vulnerability+Research+Toolkit" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F01%2Finguma-is-back-the-penetration-testing-vulnerability-research-toolkit%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/01/inguma-is-back-the-penetration-testing-vulnerability-research-toolkit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SQLInject-Finder &#8211; Intelligent SQL Injection Detection Script</title>
		<link>http://www.darknet.org.uk/2010/12/sqlinject-finder-intelligent-sql-injection-detection-script/</link>
		<comments>http://www.darknet.org.uk/2010/12/sqlinject-finder-intelligent-sql-injection-detection-script/#comments</comments>
		<pubDate>Tue, 14 Dec 2010 10:51:53 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[database-security]]></category>
		<category><![CDATA[locate sql injection]]></category>
		<category><![CDATA[sql injection detection]]></category>
		<category><![CDATA[sql injection vulnerability]]></category>
		<category><![CDATA[sql-injection]]></category>
		<category><![CDATA[sql-injection-tool]]></category>
		<category><![CDATA[sqlinject-finder]]></category>
		<category><![CDATA[web-application-security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3007</guid>
		<description><![CDATA[SQLInject-Finder is a simple python script that parses through a pcap and looks at the GET and POST request data for suspicious and possible SQL injects. Rules to check for SQL injection can be easily added. Output can be printed neatly on the command line or in tab delimited format. The output includes: The suspicious [...]]]></description>
			<content:encoded><![CDATA[<p>SQLInject-Finder is a simple python script that parses through a pcap and looks at the GET and POST request data for suspicious and possible SQL injects. Rules to check for SQL injection can be easily added. Output can be printed neatly on the command line or in tab delimited format.</p>
<p>The output includes:</p>
<ul>
<li>The suspicious IP address</li>
<li>The attacked webpage</li>
<li>The parameter and value used</li>
<li>The frame number of the packet within the pcap (can be used to find exactly where the packet is in Wireshark)</li>
<li>The reason why the request was flagged </li>
</ul>
<p><strong>Requirements</strong></p>
<p>This script was tested using Python 2.6.5. Other versions are not guaranteed to work.</p>
<p>This script depends on the <a href="http://code.google.com/p/dpkt/downloads/list ">dpkt libraries</a>.</p>
<p>You can download SQLInject-Finder here:</p>
<p><a href="http://sqlinject-finder.googlecode.com/files/sqlinject-finder.py">sqlinject-finder.py</a></p>
<p>Or read more <a href="http://code.google.com/p/sqlinject-finder/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=SQLInject-Finder+%E2%80%93+Intelligent+SQL+Injection+Detection+Script+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3007+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2010/12/sqlinject-finder-intelligent-sql-injection-detection-script/&amp;t=SQLInject-Finder+%E2%80%93+Intelligent+SQL+Injection+Detection+Script" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2010/12/sqlinject-finder-intelligent-sql-injection-detection-script/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2010/12/sqlinject-finder-intelligent-sql-injection-detection-script/&amp;title=SQLInject-Finder+%E2%80%93+Intelligent+SQL+Injection+Detection+Script" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2010/12/sqlinject-finder-intelligent-sql-injection-detection-script/&amp;title=SQLInject-Finder+%E2%80%93+Intelligent+SQL+Injection+Detection+Script" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2010/12/sqlinject-finder-intelligent-sql-injection-detection-script/&amp;title=SQLInject-Finder+%E2%80%93+Intelligent+SQL+Injection+Detection+Script" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2010/12/sqlinject-finder-intelligent-sql-injection-detection-script/&amp;title=SQLInject-Finder+%E2%80%93+Intelligent+SQL+Injection+Detection+Script" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2010%2F12%2Fsqlinject-finder-intelligent-sql-injection-detection-script%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2010/12/sqlinject-finder-intelligent-sql-injection-detection-script/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Exploit Next Generation SQL Fingerprint (ESF) &#8211; MS-SQL Server Fingerprinting Tool</title>
		<link>http://www.darknet.org.uk/2010/10/exploit-next-generation-sql-fingerprint-esf-ms-sql-server-fingerprinting-tool/</link>
		<comments>http://www.darknet.org.uk/2010/10/exploit-next-generation-sql-fingerprint-esf-ms-sql-server-fingerprinting-tool/#comments</comments>
		<pubDate>Tue, 12 Oct 2010 07:41:06 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Windows Hacking]]></category>
		<category><![CDATA[database fingerprinting]]></category>
		<category><![CDATA[database fingerprinting tool]]></category>
		<category><![CDATA[database hacking tool]]></category>
		<category><![CDATA[esf]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[microsoft sql]]></category>
		<category><![CDATA[microsoft sql server]]></category>
		<category><![CDATA[ms-sql]]></category>
		<category><![CDATA[ms-sql server fingerprint]]></category>
		<category><![CDATA[ms-sql server fingerprinting]]></category>
		<category><![CDATA[sql server fingerprint]]></category>
		<category><![CDATA[sql server fingerprinting]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2968</guid>
		<description><![CDATA[SQL Server fingerprinting can be a time consuming process. It involves a lot many trial and error methods to fingerprint the exact SQL Server version. Intentionally inserting an invalid input to obtain a typical error message or using certain alphabets that are unique for a certain server are two of the ways to possibly fingerprint [...]]]></description>
			<content:encoded><![CDATA[<p>SQL Server fingerprinting can be a time consuming process. It involves a lot many trial and error methods to fingerprint the exact SQL Server version. Intentionally inserting an invalid input to obtain a typical error message or using certain alphabets that are unique for a certain server are two of the ways to possibly fingerprint a server.</p>
<p>We have featured some other <a href="http://www.darknet.org.uk/tag/database-fingerprinting/">database-fingerprinting</a> tools before such as <a href="http://www.darknet.org.uk/2009/07/sqlmap-0-7-released-automatic-sql-injection-tool/">SQLmap the automated SQL injection tool</a>, which also carries out fingerprinting and the <a href="http://www.darknet.org.uk/2010/01/microsoft-sql-server-fingerprint-tool-beta4/">Microsoft SQL Server Fingerprint Tool</a> aimed specifically at MS-SQL installs similar to ESF. </p>
<p>The Exploit Next Generation SQL Fingerprint (ESF) is a powerful tool which performs version fingerprinting for:</p>
<ul>
<li>Microsoft SQL Server 2000;</li>
<li>Microsoft SQL Server 2005; and</li>
<li>Microsoft SQL Server 2008.</li>
</ul>
<p>The Exploit Next Generation SQL Fingerprint uses well-known techniques based on several public tools that are capable to identify the Microsoft SQL Server version (such as: SQLping and SQLver), but, instead of showing only the &#8220;raw version&#8221; (i.e., Microsoft SQL Version 10.00.2746), the Exploit Next Generation SQL Fingerprint shows the mapped Microsoft SQL Server version (i.e., Microsoft SQL 2008 SP1 (CU5)).</p>
<p><div align="center"><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
/* Darknet-Body468 */
google_ad_slot = "1341243171";
google_ad_width = 468;
google_ad_height = 60;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></div><br /></p>
<p>The strengths of Exploit Next Generation SQL Fingerprint are:</p>
<ul>
<li>
It uses both TCP and UDP protocols to determine the Microsoft SQL Server version, making it much more reliable than any other public or commercial tool.</li>
<li>
It is capable to identify multiple Microsoft SQL Server instances and their TCP communication ports.</li>
<li>It does not require any authentication method to identify the Microsoft SQL Server version.</li>
<li>It uses probabilistic algorithm to identify the Microsoft SQL Server version, combining both TCP and UDP fingerprint.</li>
</ul>
<p>The Exploit Next Generation SQL Fingerprint can also be used to identify vulnerable/unpatched Microsoft SQL Server version, and it is based on some techniques used by Exploit Next Generation Compliance Methodology to perform automated penetration testing. </p>
<p>SQL Server fingerprinting is necessary before performing any kind of penetration testing on database server and if you find its Microsoft SQL Server then this tool will surely help identifying granular level findings to further exploit database. </p>
<p>You can download ESF v1.10 here:</p>
<p><a href="http://esf.googlecode.com/files/ESF.exe">ESF.exe</a></p>
<p>Or read more <a href="http://code.google.com/p/esf/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Exploit+Next+Generation+SQL+Fingerprint+%28ESF%29+%E2%80%93+MS-SQL+Server+Fingerprinting+Tool+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D2968+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2010/10/exploit-next-generation-sql-fingerprint-esf-ms-sql-server-fingerprinting-tool/&amp;t=Exploit+Next+Generation+SQL+Fingerprint+%28ESF%29+%E2%80%93+MS-SQL+Server+Fingerprinting+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2010/10/exploit-next-generation-sql-fingerprint-esf-ms-sql-server-fingerprinting-tool/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2010/10/exploit-next-generation-sql-fingerprint-esf-ms-sql-server-fingerprinting-tool/&amp;title=Exploit+Next+Generation+SQL+Fingerprint+%28ESF%29+%E2%80%93+MS-SQL+Server+Fingerprinting+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2010/10/exploit-next-generation-sql-fingerprint-esf-ms-sql-server-fingerprinting-tool/&amp;title=Exploit+Next+Generation+SQL+Fingerprint+%28ESF%29+%E2%80%93+MS-SQL+Server+Fingerprinting+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2010/10/exploit-next-generation-sql-fingerprint-esf-ms-sql-server-fingerprinting-tool/&amp;title=Exploit+Next+Generation+SQL+Fingerprint+%28ESF%29+%E2%80%93+MS-SQL+Server+Fingerprinting+Tool" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2010/10/exploit-next-generation-sql-fingerprint-esf-ms-sql-server-fingerprinting-tool/&amp;title=Exploit+Next+Generation+SQL+Fingerprint+%28ESF%29+%E2%80%93+MS-SQL+Server+Fingerprinting+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2010%2F10%2Fexploit-next-generation-sql-fingerprint-esf-ms-sql-server-fingerprinting-tool%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2010/10/exploit-next-generation-sql-fingerprint-esf-ms-sql-server-fingerprinting-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

