22018, 1/1101 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   dnjswnsgh12
   blind sql injection Áú¹®

http://www.hackerschool.org/HS_Boards/zboard.php?AllArticle=true&no=34856 [º¹»ç]


pw='' or id='admin' and substr(lpad(bin(ascii(substr(pw,6,1))),7,0),3,1)='0'-- -'
ÀÌ·¸°Ô ³Ö´Âµ¥  = '0'À϶§°¡ ¹«Á¶°Ç ÂüÀ̵dz׿ä..

pw='' or id='admin' and substr(lpad(bin(ascii(substr(pw,430,1))),7,0),3,1)='0'-- -'
¸· ÀÌ·¸°ÔµÇµµ¿ä...
¿Ö±×·±°ÅÁÒ?

  Hit : 11983     Date : 2017/04/11 08:09



    
yelang123 Äõ¸®¸¦ Á¦´ë·Î ÀÌÇØ ÇÏ¼Å¾ß ÇÒ µí ÇÕ´Ï´Ù.http://hackerschool.org/Sub_Html/HS_Posting/?uid=43 À̰÷À» º¸½Ã°í ÇÔ¼ö¸¦ °Ë»öÇØº¸½Ã¸é ÃæºÐÈ÷ ãÀ¸½Ç¼ö ÀÖÀ¸½Ã°ÚÁö¸¸, pwÀÇ 6¹øÂ° ±ÛÀÚ¸¦ °¡Á®¿Í ±× ±ÛÀÚ¸¦ asciiÄÚµå·Î º¯È¯ ÈÄ asciiÄÚµå·Î º¯È¯µÈ ¹®ÀÚ¸¦ ´Ù½Ã ¹ÙÀ̳ʸ® ÇüÅÂÀÇ ¹®ÀÚ·Î º¯È¯Çϰí lpadÇÔ¼ö·Î ¹®ÀÚ¿­ÀÇ ±æÀ̰¡ 7±ÛÀÚ ¹Ì¸¸À̶ó¸é ¸Ç ¿ÞÂÊ¿¡ 0À» ³Ö¾îÁØÈÄ ±× ¹®ÀÚ¸¦ ´Ù½Ã Àß¶ó ºñ±³ÇÏ´Â Äõ¸®¹® ÀÔ´Ï´Ù.
¿¹¸¦µé¾î 'a'¶ó´Â ¹®ÀÚ¿­ÀÇ ¾Æ½ºÅ° ÄÚµå´Â 97ÀÌ´Ï 97À» ¹ÙÀ̳ʸ® ÇüÅÂÀÇ ¹®ÀÚ¿­·Î ¹Ù²ãÁÖ°í ÇѱÛÀÚ¾¿ 0ȤÀº 1·Î °æ¿ìÀÇ ¼ö°¡ 0°ú1¹Û¿¡ ¾øÀ¸´Ï Á» ´õ ºü¸£°Ô ±ÛÀÚ °ªÀ» ¾Ë ¼ö ÀÖ½À´Ï´Ù.
2017/04/17