[share]find vulnerable with xsser on bt 5 r2
#1
halo teman2 IBTeam semua apa kabar nih hari ini ??
mudah-mudahan dalam keadaan sehat jasmani dan rohani Big Grin

kali ini saya akan mencoba berbagi kepada teman2 semua tentang tools Xsser di backtrack ok langsung saja

open Xsser
Code:
cd /pentest/web/xsser

lalu mulai scanning vulner nya
Code:
root@bt:/pentest/web/xsser# xsser -d article.php?ID=

oh iya kita download dulu dorknya
disini yo dork.txt Big Grin

tunggu deh hasilnya Big Grin

kurang lebih hasilnya kaya gini Big Grin
Code:
root@bt:/pentest/web/xsser# xsser -d article.php?ID=
===========================================================================

XSSer v1.6 (beta): "Grey Swarm!" - 2011/2012 - (GPLv3.0) -> by psy

===========================================================================
Testing [XSS from Dork] injections...good luck ;)
===========================================================================

HEAD alive check for the target: (http://www.adventistworld.org/article/920/resources/english/issue-2011-1001/revival-and-reformation-resources) is OK(200) [AIMED]


HEAD alive check for the target: (http://michaelpollan.com/articles-archive/unhappy-meals/) is OK(200) [AIMED]

===========================================================================
Target: http://www.adventistworld.org/article/920/resources/english/issue-2011-1001/revival-and-reformation-resources --> 2012-03-22 23:32:33.901203
===========================================================================

ket :
-d = dork
silahkan di explore lagi Big Grin
Code:
xsser --help

lebih mudah kalo mau cari target yang mau di inject pake sqlmap ato tool sql injection lainnya kan??
sekian dari saya
kalo repost mohon maaf banget ya Big Grin



aduh om admin / moderator kalo ane salah room jangan di kasi - ya Sad
soalnya bingung mau di taro dimana thread nya apakah di bt tools ato di bt tutorial
maaf ya om Sad
<< back|track'ers newbee

#2
waa disini ente om -___-" main tinggal lari ane >Smile
wkkw
betul ini di sini rasa ane yah Tongue

sip dah tutornya,,


#3
kyakakaka
tinggal lari kaya lagi maen kejar-kejaran aje hehehe Smile
<< back|track'ers newbee

#4
nice share kaka Big Grin



#5
wkwkwk,,
@fake666 mau tanya itu [AIMED] apaan??

@ oyek dicoba atuh kakak

#6
(03-23-2012, 02:05 AM)junior.riau18 Wrote: wkwkwk,,
@fake666 mau tanya itu [AIMED] apaan??

@ oyek dicoba atuh kakak

ntar kaka Big Grin
koneksi lemott -_____-



#7
nice share Tongue
Every Second, Every Minutes, Every Hours, Every Days Its Never End

#8
@junior.riau18 : ga tau juga om hahaha ,:hamster
<< back|track'ers newbee

#9
beugh ahahaaha okelah

#10
ke thread sql injection yok om,,bahas2 sqli kita Big Grin
<< back|track'ers newbee






Users browsing this thread: 1 Guest(s)