Skip to content
KitploitKITPLOIT
HerramientasExploitsBlog
Log in
Enviar
HerramientasExploitsBlog
Enviar

¡Herramientas de Hacking, PenTest y Ciberseguridad para tu Arsenal de Seguridad!

Kitploit es un directorio de herramientas de hacking, ciberseguridad y pentesting. Descubre las últimas actualizaciones de proyectos para encontrar vulnerabilidades, analizar sistemas, automatizar pruebas y fortalecer tu seguridad.

··Feeds·Contacto·Privacidad·© 2026 Kitploit

Directorio de Herramientas

Categorías

Ver todas las categorías
Loading categories
ghauri — Una herramienta avanzada multiplataforma que automatiza el proceso de detección y explotación de fallos de seguridad de inyección SQL | Kitploit
Herramientas/GitHubGitHub/r0oth3x49/ghauri
Escáneres de VulnerabilidadesExplotación de Aplicaciones WebSeguridad WebPruebas de PenetraciónSeguridad de Bases de Datos
GitHubr0oth3x49/ghauri

ghauri

Una herramienta avanzada multiplataforma que automatiza el proceso de detección y explotación de fallos de seguridad de inyección SQL

Ver Repositorio
4.1k42223hace 0 añosRevisado por Kitploit

Más Populares

Ver todos →

Descubre las herramientas más usadas por nuestra comunidad.

Explora todas las herramientas

Explora nuestra colección de herramientas

Ver todas las herramientas →
Compartir

GitHub release GitHub stars GitHub forks GitHub issues GitHub license

Si te gusta Ghauri, considera apoyar al desarrollador

Buy Me A Coffee

Ghauri

Una herramienta avanzada multiplataforma que automatiza el proceso de detección y explotación de fallos de inyección SQL.

ghauri-banner

Requisitos

  • Python 3
  • Python pip3

Instalación

  • cd al directorio ghauri.
  • instala los requisitos: python3 -m pip install --upgrade -r requirements.txt
  • ejecuta: python3 setup.py install o python3 -m pip install -e .
  • podrás acceder y ejecutar ghauri con el simple comando ghauri --help.

O

  • Sigue esta guía de instalación si enfrentas un problema de instalación.

Descargar Ghauri

Puedes descargar la última versión de Ghauri clonando el repositorio de GitHub.

git clone https://github.com/r0oth3x49/ghauri.git

Características

  • Soporta los siguientes tipos de payloads de inyección:
    • Basado en booleano.
    • Basado en error
    • Basado en tiempo
    • Consultas apiladas
  • Soporta inyección SQL para los siguientes DBMS:
    • MySQL
    • Microsoft SQL Server
    • Postgres
    • Oracle
    • Microsoft Access (solo soporta huella digital por ahora en caso de ciego basado en booleano)
  • Soporta los siguientes tipos de inyección:
    • Inyecciones basadas en GET/POST
    • Inyecciones basadas en cabeceras
    • Inyecciones basadas en cookies
    • Inyecciones de datos de formulario Mulitipart
    • Inyecciones basadas en JSON
    • Inyecciones basadas en SOAP/XML
  • Soporta la opción de proxy --proxy.
  • Soporta el análisis de solicitudes desde un archivo txt: la opción para eso es -r file.txt
  • Soporta la limitación de extracción de datos para dbs/tablas/columnas/dump: opción --start 1 --stop 2
  • Se añadió soporte para reanudar todas las fases.
  • Se añadió soporte para la opción de omitir urlencoding: --skip-urlencode
  • Se añadió soporte para verificar caracteres extraídos en caso de inyecciones basadas en booleano/tiempo.
  • Se añadió soporte para manejar redirecciones a petición del usuario.
  • Se añadió soporte para la opción sql-shell: --sql-shell (experimental)
  • Se añadió soporte para la opción de consultas frescas: --fresh-queries
  • Se añadió opción para extracción de hostname: --hostname
  • Se añadió opción para actualizar ghauri desde github: --update
    • Nota: ghauri debe haber sido clonado/instalado desde github para que esta opción funcione para futuras actualizaciones; los usuarios de versiones anteriores deben ejecutar git pull (si lo instalaron usando git) para obtener esta actualización, y para futuras actualizaciones será posible con el comando ghauri --update para obtener la última versión de ghauri.
  • Se añadió opción para ignorar códigos HTTP problemáticos (p.ej. 401): --ignore-code
  • Se añadió opción para obtener el número de entradas de una tabla: --count
  • Se añadió opción para escanear múltiples objetivos dados en un archivo de texto: -m (experimental)
  • Se añadió detección y explotación automática de parámetros GET deserializables en base64 (experimental)
  • Se añadió soporte para agente de usuario HTTP aleatorio: --random-agent, --mobile

Uso Avanzado


Author: Nasir khan (r0ot h3x49)

usage: ghauri -u URL [OPTIONS]

A cross-platform python based advanced sql injections detection & exploitation tool.

General:
  -h, --help          Shows the help.
  --version           Shows the version.
  --update            update ghauri
  -v VERBOSE          Verbosity level: 1-5 (default 1).
  --batch             Never ask for user input, use the default behavior
  --flush-session     Flush session files for current target
  --fresh-queries     Ignore query results stored in session file
  --test-filter       Select test payloads by titles (experimental)

Target:
  At least one of these options has to be provided to define the
  target(s)

  -u URL, --url URL   Target URL (e.g. 'http://www.site.com/vuln.php?id=1).
  -m BULKFILE         Scan multiple targets given in a textual file
  -r REQUESTFILE      Load HTTP request from a file

Request:
  These options can be used to specify how to connect to the target URL

  -A , --user-agent   HTTP User-Agent header value
  -H , --header       Extra header (e.g. "X-Forwarded-For: 127.0.0.1")
  --mobile            Imitate smartphone through HTTP User-Agent header
  --random-agent      Use randomly selected HTTP User-Agent header value
  --host              HTTP Host header value
  --data              Data string to be sent through POST (e.g. "id=1")
  --cookie            HTTP Cookie header value (e.g. "PHPSESSID=a8d127e..")
  --referer           HTTP Referer header value
  --headers           Extra headers (e.g. "Accept-Language: fr\nETag: 123")
  --proxy             Use a proxy to connect to the target URL
  --delay             Delay in seconds between each HTTP request
  --timeout           Seconds to wait before timeout connection (default 30)
  --retries           Retries when the connection related error occurs (default 3)
  --confirm           Confirm the injected payloads.
  --ignore-code       Ignore (problematic) HTTP error code(s) (e.g. 401)
  --skip-urlencode    Skip URL encoding of payload data
  --force-ssl         Force usage of SSL/HTTPS

Optimization:
  These options can be used to optimize the performance of ghauri

  --threads THREADS   Max number of concurrent HTTP(s) requests (default 1)

Injection:
  These options can be used to specify which parameters to test for,
  provide custom injection payloads and optional tampering scripts

  -p TESTPARAMETER    Testable parameter(s)
  --dbms DBMS         Force back-end DBMS to provided value
  --prefix            Injection payload prefix string
  --suffix            Injection payload suffix string
  --safe-chars        Skip URL encoding of specific character(s): (e.g:- --safe-chars="[]")
  --fetch-using       Fetch data using different operator(s): (e.g: --fetch-using=between/in)

Detection:
  These options can be used to customize the detection phase

  --level LEVEL       Level of tests to perform (1-3, default 1)
  --code CODE         HTTP code to match when query is evaluated to True
  --string            String to match when query is evaluated to True
  --not-string        String to match when query is evaluated to False
  --text-only         Compare pages based only on the textual content

Techniques:
  These options can be used to tweak testing of specific SQL injection
  techniques

  --technique TECH    SQL injection techniques to use (default "BEST")
  --time-sec TIMESEC  Seconds to delay the DBMS response (default 5)
Descargar herramienta