Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Appearance settings

fc8/Auto-SQLBliendInjection

Open more actions menu

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

2 Commits
2 Commits
 
 
 
 

Repository files navigation

SQL盲注脚本

0x01 整数型注入脚本

以BUUCTF [WUSTCTF2020]颜值成绩查询这道题为例,演示脚本如何使用。

参数

  • url:要进行盲注的url
  • require method:请求方式
  • right string:返回为true时的特征文本
  • right id:结果为true时提交的参数
  • error id:结果为false时提交的参数
  • function:使用哪种函数

使用

>input url(e.g,'get:www.example.com?id=,post:www.example.com'):http://cfe08f29-9167-488c-b6db-3354144ab882.node4.buuoj.cn:81/?stunum=
>input require method(Get/Post):get
>input right string:Hi admin
>input right id(the number while be used when the result is right):1
>input error id:2
>select function(if/elt):if
<result:{'flag': ['flag', 'value'], 'score': ['id', 'name', 'score']}
>input table which you want to dump:flag
>columns:['flag', 'value']
>input columns(split by ','):flag,value
<result:['flagflag{xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx}']

About

CTF中SQL盲注脚本

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors

Languages

Morty Proxy This is a proxified and sanitized view of the page, visit original site.