安全圈 | 专注于最新网络信息安全讯息新闻

首页

java在sql資料庫自動注入中的應用

作者 strmiska 时间 2020-02-29
all

jSQL注入是一個羽量級應用程序,用於從遠程服務器查找資料庫資訊。

它是免費的,開源的,跨平臺的(Windows,Linux,MacOSX)。

安裝安裝Java,然後下載最新版本的jSQL並按兩下.jar啟動軟件。您還可以在終端中鍵入java-jar jsql-injection-v0.77.jar來啟動程式。

java -jar jsql-injection-v0.77.jar

螢幕截圖

路線圖WAF tamper、HTTP Auth Bruteforce、翻譯、SOAP注入、命令列介面、資料庫:Access Cassandra MongoDb和Neo4j

WAF tamper, HTTP Auth Bruteforce, Translation, SOAP injection, Command line interface, Databases: Access Cassandra MongoDb and Neo4j

更改日誌v0.76捷克語翻譯,17種資料庫風格:SQLite v0.75 URI注入點,Mavenify,陞級到Java 7,優化的UI v0.73身份驗證:基本摘要協商NTLM和Kerberos,資料庫風格選擇v0.7掃描多個url,Github Issue reporter,16種資料庫風格:Cubrid Derby H2 HSQLDB MariaDB和Teradata,優化的UI alpha-v0.6速度x2:無十六進位編碼,10種資料庫風格:MySQL Oracle SQLServer PostgreSQL DB2 Firebird Informix Ingres MaxDb和Sybase,JUnit tests,Log4j,Translation 0.5 SQL Shell,Uploader 0.4 Admin page,像MD5和MySQL這樣的Hash bruteforce,像Base64這樣的文字轉碼器,Hex和MD5 0.3檔案注入,Web Shell,集成終端,配寘備份,更新檢查器0.2算灋時間,多執行緒控制:開始暫停恢復和停止,日誌URL調用0.0-0.1方法獲取POST頭和Cookie,算灋正常錯誤和盲,最佳算灋選擇,進度條,簡單規避,代理設定,僅MySQL

Czech translation, 17 Database flavors: SQLite URI injection point, Mavenify, Upgrade to Java 7, Optimized UI Authentication: Basic Digest Negotiate NTLM and Kerberos, Database flavor selection Scan multiple URLs, Github Issue reporter, 16 Database flavors: Cubrid Derby H2 HSQLDB MariaDB and Teradata, Optimized UI Speed x2: No hex encoding, 10 Database flavors: MySQL Oracle SQLServer PostgreSQL DB2 Firebird Informix Ingres MaxDb and Sybase, JUnit tests, Log4j, Translation SQL Shell, Uploader Admin page, Hash bruteforce like MD5 and MySQL, Text encoder/decoder like Base64, Hex and MD5 File injection, Web Shell, Integrated terminal, Configuration backup, Update checker Algorithm Time, Multi-thread control: Start Pause Resume and Stop, Log URL calls Method GET POST Header and Cookie, Algorithm Normal Error and Blind, Best algorithm selection, Progression bars, Simple evasion, Proxy settings, MySQL only

jSQL Injection v0.77-用於自動SQL資料庫注入的Java應用程序,由Zion3R於上午11:10審閱,評分:5