derrick87
Doujin Reader
2
MONTHS
2 2 MONTHS OF SERVICE
LEVEL 1
400 XP
Hello everyone,today we’ll be learning how to setup Dhakkan lab (one of the best labs I have seen for practising and understanding SQL INJECTION) in our latest Ubuntu Machine.
A laboratory that offers a complete test environment for those interested in acquiring or improving SQL injection skills. Let’s start. First, we will download SQLI lab inside html directory by the following link-
Once the download is done, we will move sqli labs into the /var/www/html directory and rename it to sqli. Then go inside the sqli directory where we will find /sqli-connections directory. Here we will run ls command to check the files and we can see that here is a file by the name of db-creds.inc
we need to make some changes in the config file by the following command-
As we can see that username is given root and password is left blank which we need to modify.
Now here we will set the username and password as raj:123 Now save the file and exit.
Now browse this web application from through this URL
Now the sqli lab is ready to use.
Now a page will open up in your browser which is an indication that we can access different kinds of Sqli challenges
Click on lesson 1 and start the Sqli challenge.
Author – Rinkish Khera is a Web Application security consultant who loves competitive coding, hacking and learning new things about technology. Contact Here
A laboratory that offers a complete test environment for those interested in acquiring or improving SQL injection skills. Let’s start. First, we will download SQLI lab inside html directory by the following link-
Code:
git clone http://github.com/Rinkish/Sqli_Edited_Version
Once the download is done, we will move sqli labs into the /var/www/html directory and rename it to sqli. Then go inside the sqli directory where we will find /sqli-connections directory. Here we will run ls command to check the files and we can see that here is a file by the name of db-creds.inc
we need to make some changes in the config file by the following command-
Code:
cd Sqli_Edited_Version/
ls
mv sqlilabs/ ../sqli
cd sqli
cd sql-connections/
ls
nano db-creds.inc
data:image/s3,"s3://crabby-images/fc955/fc9557a5d4c6350dc7275da2f80bb96c057cfb70" alt="22.png"
As we can see that username is given root and password is left blank which we need to modify.
data:image/s3,"s3://crabby-images/37032/370329fb7bde64e9a2dd8417582e7385ac95bf76" alt="23.png"
Now here we will set the username and password as raj:123 Now save the file and exit.
data:image/s3,"s3://crabby-images/45297/4529759d261d6f5484cc0aeead9cbba39cec7dc6" alt="24..png"
Now browse this web application from through this URL
localhost/sqli and click on Setup/reset Databases for labs.
data:image/s3,"s3://crabby-images/f9c06/f9c06209b86e678072ce011e2366a0d445c295e1" alt="25.png"
Now the sqli lab is ready to use.
data:image/s3,"s3://crabby-images/f7237/f7237974d970fc777beb00050ea87a540bf7687f" alt="26.png"
Now a page will open up in your browser which is an indication that we can access different kinds of Sqli challenges
data:image/s3,"s3://crabby-images/83962/839622d0b491bd4261ee7a950486c96062094dfa" alt="27.png"
Click on lesson 1 and start the Sqli challenge.
data:image/s3,"s3://crabby-images/e68f7/e68f7362ec0e6d6412f97055c5ae74104fc545ec" alt="28.png"
Author – Rinkish Khera is a Web Application security consultant who loves competitive coding, hacking and learning new things about technology. Contact Here