
MSDAT: Microsoft SQL डेटाबेस हमलावर उपकरण
| Quentin HARDY |
|---|
| [email protected] |
| [email protected] |
MSDAT (Microsoft SQL Database Attacking Tool) एक ओपन सोर्स पेनिट्रेशन टेस्टिंग टूल है जो Microsoft SQL डेटाबेस की सुरक्षा का दूरस्थ रूप से परीक्षण करता है।
MSDAT के उपयोग के उदाहरण:
Microsoft SQL डेटाबेस 2005, 2008, 2012, 2014, 2016 और 2019 पर परीक्षण किया गया।
MSDAT (Microsoft SQL Database Attacking Tool) की बदौलत, आप यह कर सकते हैं (गैर-विस्तृत सूची):
MSDAT चलाने के लिए कुछ निर्भरताएँ स्थापित की जानी चाहिए।
उबंटू में:
sudo apt-get install freetds-dev
या http://www.freetds.org/ से freetds डाउनलोड करें
Python निर्भरताएँ स्थापित करें:
sudo pip3 install -r requirements.txt
sudo activate-global-python-argcomplete
या
sudo pip3 install cython colorlog termcolor pymssql argparse python-libnmap
sudo pip3 install argcomplete && sudo activate-global-python-argcomplete
अपनी freetds कॉन्फ़िगरेशन फ़ाइल में "use ntlmv2 = yes" जोड़ें (उदा: /etc/freetds/freetds.conf या /usr/local/etc/freetds.conf)।
उदाहरण:
[global]
# TDS protocol version
tds version = 8.0
use ntlmv2 = yes
python3 msdat.py -h 2 ⨯
usage: msdat.py [-h] [--version]
{all,mssqlinfo,passwordguesser,passwordstealer,xpcmdshell,jobs,smbauthcapture,oleautomation,bulkopen,xpdirectory,trustworthype,userlikepwd,search,cleaner}
...
_ _ __ __ _ ___
| \_/ |/ _|| \ / \|_ _|
| \_/ |\_ \| o ) o || |
|_| |_||__/|__/|_n_||_|
------------------------------------------------------
_ _ __ __ _ ___
| \_/ |/ _| | \ / \ |_ _|
| \_/ |\_ \ | o ) o | | |
|_| |_||__/icrosoft |__/atabase |_n_|ttacking |_|ool
-------------------------------------------------------
By Quentin Hardy ([email protected])
positional arguments:
{all,mssqlinfo,passwordguesser,passwordstealer,xpcmdshell,jobs,smbauthcapture,oleautomation,bulkopen,xpdirectory,trustworthype,userlikepwd,search,cleaner}
Choose a main command
all to run all modules in order to know what it is possible to do
mssqlinfo to get information without authentication
passwordguesser to know valid credentials
passwordstealer to get hashed passowrds
xpcmdshell to get a shell
jobs to execute system commands
smbauthcapture to capture a SMB authentication
oleautomation to read/write file and execute system commands
bulkopen to read a file and scan ports
xpdirectory to list files/drives and to create directories
trustworthype to become sysadmin with the trustwothy database method
userlikepwd to try each MSSQL username stored in the DB like the corresponding pwd
search to search in column names
cleaner clean local traces
optional arguments:
-h, --help show this help message and exit
--version show program's version number and exit
./msdat.py -h
./msdat.py all -h
आप --test-module विकल्प की मदद से जान सकते हैं कि कोई विशिष्ट मॉड्यूल MSSQL सर्वर पर उपयोग किया जा सकता है या नहीं। यह विकल्प प्रत्येक mdat मॉड्यूल में लागू किया गया है।