bypass sqli keyword filter

Hi, There is a website that is vulnerable to sqli but it only accepts ( ،,._-%*+=÷:@؛- ) keywords and alphabet and numbers in post and get requests. I know there’s a sqli bug but i have to get deeper so please help me to bypass this problem. It will be a good thing if there is something that I can use in sqlmap.

Thank you

submitted by /u/Born_SUS
[link] [comments]

HID Prox card hacking

Hey all, I’m doing security research on RFID for a class assignment. My project idea centers on skimming and replaying RFID credentials used by my employer’s access control system (I have the necessary permission to do this), and I don’t have a lot of …

Instant Checkmate, TruthFinder Data Breach: 20M Accounts Leaked

By Deeba Ahmed
Instant Checkmate and TruthFinder are two subscription-based services allowing users to carry out background checks on people.
This is a post from HackRead.com Read the original post: Instant Checkmate, TruthFinder Data Breach: 20M Accou…

BadUSB/Rubber Ducky reverse shell ERROR

I have tried multiple scrips but for some reason they all dont work, i dont know if im picking the wrong IP, the wrong networking for my virtual machine or what. But can someone please give me a script that might work, I have tried scripts from hak5 but they dont seem to work.

Scripts I’ve used: https://github.com/hak5/usbrubberducky-payloads/tree/master/payloads/library/remote_access/Netcat-Reverseshell-On-Log-In

https://github.com/FreeLesio/Rubber-Ducky-Reverse-Shell

I seem to get this error when using these:

ConPtyShellException: [-] ConPtyShellException: WSAConnect failed with error code: 10061

at ConPtyShell.connectRemote(String remoteIp, Int32 remotePort)

at ConPtyShell.SpawnConPtyShell(String remoteIp, Int32 remotePort, UInt32 rows, UInt32 cols, String commandLine, Boolean upgradeShell)

at ConPtyShellMainClass.ConPtyShellMain(String[] args)

With this script https://github.com/OwNuT/Rubber-Ducky-Scripts/blob/main/ReverseShell/payload everything seems to work fine on the victim machine but it says its connected to local host and when I go on attacker machine (kali linux VM) nothing seems to be connected.

(SORRY FOR SO MUCH I JUST REALLY WANT THIS TO WORK OUT)

submitted by /u/SnooCookies9629
[link] [comments]

Vdb files?

Hey there I’m trying to figure out the contents of a file in .vdb (it should be a database file) however whenever I try to open the contents I amgreeted with garbled text and no clear formation

Has anyone had experience with vdb files?

submitted by /u/HeroinPigeon
[link] [comments]

Anyone know of any tools similar to the flipper zero

Flipper zero is either out of stock or people are selling it for more than double its retail, anyone know of any tools with similar features? Thanks submitted by /u/PokeMewTCG [link] [comments]