Saturday 15 August 2015

SQL Injection - Finding Vulnerable Website

Our best partner for SQL injection is Google. We can find the Vulnerable websites(hackable websites) using Google Dork list. Google dork(Advanced Google Searching) is searching for vulnerable websites using the google searching tricks. There is lot of tricks to search in google. But we are going to use “inurl:” command for finding the vulnerable websites.

Some Examples:
inurl:index.php?id=
inurl:gallery.php?id=
inurl:article.php?id=
inurl:pageid=

How to use ?

Copy one of the above command and paste in the google search engine box.
Hit enter.You can get list of web sites.
We have to visit the websites one by one for checking the vulnerability.
So Start from the first website.

Note : If you like to hack particular website then.

Try this :

site:www.victimsite.com dork_list_commands

For Example :

site:www.victimsite.com inurl:index.php?
id=

No comments:

Post a Comment