Posts

Website Hacking

Image
  >>Goto  CVE website  for all the vulnerablities till now and it also shows solutions to solve them out. this also have vulnerablities info this website name is  NVD  . >>1st ni dikhaya hai kyuki vo live attack tha >> Sql injection >>XSS(cross site scripting) agr upr waali script neeche waali site k search box mein search kri to vo alert deta hai jo msg likha hai script mein. THIS  is the website where we can do these types of attacks and noone will say anything. and In  THIS  site login mein ye script daalna and vo save kr dega data base mein uske baad jbbi login kroge to vo pop up aaega. for more scripts just type on google :: cheat sheets for xss >>File upload vulnerablity HERE  we can find all the malicious code for doing this attack. NOTE: do attack on virtual machine and download all these files in virtual machine,

Advance phishing

Image
 >to chech if our system is a server or not search 127.0.0.1 or localhost or your ipaddress if nothing opens then it is not a server. >to convert our system to server download app wamp which is for just windows or download xamp which is for available for all operating systems. >in wamp folder where you have installed it have www folder there you paste all the files created now change html file name to index.htm because it will look for index file to show as a homepage. >ngrok app is used to redirect website to my  local host . >paste ngrok in c drive and then open cmd and type ye copy krkr paste krna hai and usko baad link mil jaaegi jo hmare localhost ko redirect krri hogi. >> for other sites there is github already created callled social phish github  link to github    >>to install this social phish in kali linux go to code drop down menu in this site and copy the link. then in terminal write (git clone link) this will download the f...

Phishing

Image
  Basic Phishing > go to facebook site and save html page in htm extention > write malicious code for that site in PHP  > make a txt file to store information  >open html file and change its execution link "action=" to php file name >then goto web hosting sites and make a website  (https://www.freewebhostingarea.com/) >make a site and then copy the link and at the end of the link write /ftp to open file transfer protocol >after ftp is opened uploadall the files that we created above and change their mode to read, write and execution. >open the htm file from there and copy the link > use bit-ly to change the link of site  >then send it to someone and when they write password in it that password we can get from the txt file that we uploaded. > goto email enter link there to hum wha se link ka text jo k jisko bhj rhe usko dikhega vo doosra hoga but link aur kuch khul jaaegi.

Network Scanning

Image
  if you want to change IP use an online proxy by using it our IP will become IP of proxy if we open anything on the tor browser it will automatically use chain/bouncing proxy