Friday 4 March 2016

Share Ebook Tổng hợp về hacking và security

Hôm nay mình share 1 vài ebook khá hay


1. Ebook "Những hiểu biết cơ bản nhất để trở thành Hacker"
https://drive.google.com/file/d/0B7YFc10EXAsVVm9jOEI1ZlZUalk/view?usp=sharing

2. Ebook khai thác SQL Injection
https://drive.google.com/file/d/0B7YFc10EXAsVNERZLXh4akV6bEE/view?usp=sharing

3. HackAttacksRevealedACompleteReferencewithCustomSecurityHackingToolkit(Tiếng Anh)
https://drive.google.com/file/d/0B7YFc10EXAsVY05aMmVjVjVSbEE/view?usp=sharing
https://drive.google.com/file/d/0B7YFc10EXAsVWU5HN1RGbk4zd00/view?usp=sharing

4.Ethical.Hacking.And.Countermeasures (Tiếng Anh khá hay)
https://drive.google.com/file/d/0B7YFc10EXAsVYkdwU3llWkl1TlE/view?usp=sharing

Thursday 3 March 2016

Wordpress Ocim MP3 Plugin SQL Injection Vulnerability




========
Ocim MP3 Plugin SQL Injection Vulnerability
========
:----------------------------------------------------------------------------------------------------:
: # Exploit Title : Ocim MP3 Plugin SQL Injection Vulnerability
: # Date : 26 February 2016
: # Author : xevil and Blankon33
: # Vendor Site: http://www.ocimscripts.com/
: # Version:
: # Vulnerability : SQL Injection
: # Tested on : Wordpress 4.4.2
: # Severity : High
:----------------------------------------------------------------------------------------------------:
Summary
========
Ocim MP3 is Plugin to make MP3 Grabber site based on Wordpress.
Proof of Concept
========
Infected URL:
http://[Site]/[Path]/wp-content/plugins/ocim-mp3/source/pages.php?id=['SQLi]
Admin Panel:
http://[Site]/[Path]/oc-login.php
===========
Thanks to
===========
All Indonesian Hacker!!

Source: exploit-db.com