<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; bobcat</title>
	<atom:link href="http://www.darknet.org.uk/tag/bobcat/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>BobCat SQL Injection Tool based on Data Thief</title>
		<link>http://www.darknet.org.uk/2006/10/bobcat-sql-injection-tool-based-on-data-thief/</link>
		<comments>http://www.darknet.org.uk/2006/10/bobcat-sql-injection-tool-based-on-data-thief/#comments</comments>
		<pubDate>Sat, 28 Oct 2006 04:18:23 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[bobcat]]></category>
		<category><![CDATA[darknet]]></category>
		<category><![CDATA[data-thief]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[sql-injection]]></category>
		<category><![CDATA[sql-injection-tool]]></category>
		<category><![CDATA[web-application-security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2006/10/bobcat-sql-injection-tool-based-on-data-thief/</guid>
		<description><![CDATA[BobCat is a tool to aid a security consultant in taking full advantage of SQL injection vulnerabilities. It is based on a tool named &#8220;Data Thief&#8221; that was published as PoC by appsecinc. BobCat can list the linked severs, database schema, and allow the retrieval of data from any table that the current application user [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>BobCat is a tool to aid a security consultant in taking full advantage of SQL injection vulnerabilities. It is based on a tool named &#8220;Data Thief&#8221; that was published as PoC by appsecinc. BobCat can list the linked severs, database schema, and allow the retrieval of data from any table that the current application user has access to.</p>
<p>The methods that BobCat incorprates are based on those discussed in the following papers:</p>
<p><a href="http://www.nextgenss.com/papers/advanced_sql_injection.pdf">advanced sql injection</a><br />
<a href="http://www.nextgenss.com/papers/more_advanced_sql_injection.pdf">more advanced sql injection</a><br />
<a href="http://www.securitydocs.com/library/2656">advanced sql injection</a><br />
<a href="http://www.appsecinc.com/presentations/Manipulating_SQL_Server_Using_SQL_Injection.pdf">manipulating sql server usig sql injection</a></p>
<p>I suggest if you are interested in SQL injection at all, you read all of the above papers.</p>
<p><strong>BobCat Requirements</strong></p>
<ol>
<li>Windows OS (Tested on XP SP2)</li>
<li>Access to MS SQL server/MSDE2000 (Tested on MSDE2000)</li>
<li>.Net Framework 2.0</li>
</ol>
<p>Read more about BobCat here:</p>
<p><a href="http://www.northern-monkee.co.uk/projects/bobcat/bobcat.html">Northern Monkee &#8211; BobCat</a></p>
<p>Download BobCat here:</p>
<p><a href="http://www.northern-monkee.co.uk/projects/bobcat/bin/BobCat_Alphav0.3.rar">BobCat Alpha 0.3</a></p>
<p>Some tools to use with BobCat can be found here:</p>
<p></p>
<p><a href="http://www.northern-monkee.co.uk/projects/bobcat/bin/Tools.rar">BobCat Tools</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=BobCat+SQL+Injection+Tool+based+on+Data+Thief+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D365+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2006/10/bobcat-sql-injection-tool-based-on-data-thief/&amp;t=BobCat+SQL+Injection+Tool+based+on+Data+Thief" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2006/10/bobcat-sql-injection-tool-based-on-data-thief/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2006/10/bobcat-sql-injection-tool-based-on-data-thief/&amp;title=BobCat+SQL+Injection+Tool+based+on+Data+Thief" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2006/10/bobcat-sql-injection-tool-based-on-data-thief/&amp;title=BobCat+SQL+Injection+Tool+based+on+Data+Thief" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2006/10/bobcat-sql-injection-tool-based-on-data-thief/&amp;title=BobCat+SQL+Injection+Tool+based+on+Data+Thief" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2006/10/bobcat-sql-injection-tool-based-on-data-thief/&amp;title=BobCat+SQL+Injection+Tool+based+on+Data+Thief" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2006%2F10%2Fbobcat-sql-injection-tool-based-on-data-thief%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2006/10/bobcat-sql-injection-tool-based-on-data-thief/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

