For now check out Version 0.7.. Named searches and Data searches via external config files are now functioning properly as well as other bugs fixed along the way... Drop this in a BT5 VM and make sure you have your DB python stuff installed per the help docs and you should be good to go. If you are looking to use oracle you are going to have to install all the oracle nonsense from oracle or use a BT4r2 vm which has most of the needed drivers minus cxoracle which will need to be installed.
http://consolecowboys.org/pillager/pillage_0.7.zip
Ficti0n$ python pillager.py
[---] The Database Pillager (DBPillage) [---]
[---] CcLabs Release [---]
[---] Authors: Ficti0n, [---]
[---] Contributors: Steponequit [---]
[---] Version: 0.7 [---]
[---] Find Me On Twitter: ficti0n [---]
[---] Homepage: http://console-cowboys.blogspot.com [---]
Release Notes:
--Fixed bugs and optimized code
--Added Docstrings
--Fixed Named and Data searches from config files
About:
The Database Pillager is a multiplatform database tool for searching and browsing common
database platforms encountered while penetration testing. DBPillage can be used to search
for PCI/HIPAA data automatically or use DBPillage to browse databases,display data.
and search for specified tables/data instances.
DBpillage was designed as a post exploitation pillaging tool with a goal of targeted
extraction of data without the use of database platform specific GUI based tools that
are difficult to use and make my job harder.
Supported Platforms:
--------------------
-Oracle
-MSSQL
-MYSQL
-PostGreSQL
Usage Examples:
************************************************************************
For Mysql Postgres and MsSQL pillaging:
---------------------------------------
python dbPillage -a [address] -d [dbType] -u [username] -p [password]
For Oracle pillaging you need a SID connection string:
------------------------------------------------------
python dbPillage-a [address]/[sid] -d [dbType] -u [username] -p [password]
Grab some hashes and Hipaa specific:(Default is PCI)
------------------------------------
python dbPillage -a [address] -d [dbType] -u [username] -p [password] --hashes -s hipaa
Drop into a SQL CMDShell:
-------------------------
python dbpillage.py -a [address] -d [dbType] -u [username] -p [password] -q
Config file specified searches:
-------------------------------
Search for data Items from inputFiles/data.txt:
python dbpillage.py -a [address] -d [dbType] -u [username] -p [password] -D
Search for specific table names from inputFiles/tables.txt:
python dbpillage.py -a [address] -d [dbType] -u [username] -p [password] -N
Switch Options:
---------------------
-# --hashes = grab database password hashes
-l --limit = limit the amount of rows that are searched or when displaying data (options = any number)
-s --searchType = Type of data search you want to perform (options:pci, hipaa, all)(PCI default)
-u --user = Database servers username
-p --pass = Password for the database server
-a --address = Ipaddress of the database server
-d --database = The database type you are pillageing (options: mssql,mysql,oracle,postgres)
-r --report = report format (HTML, XML, screen(default))
-N --nameSearch = Search via inputFiles/tables.txt
-D --dataSearch = Targeted data searches per inputFiles/data.txt
-q --queryShell = Drop into a SQL CMDshell in mysql or mssql
Prerequisites:
-------------
python v2 (Tested on Python 2.5.2 BT4 R2 and BT5 R3 - Oracle stuff on BT4r2 only unless you install the drivers from oracle)
cx_oracle (cx-oracle.sourceforge.net)
psycopg2 (initd.org/psycopg/download/)
MySQLdb (should be on BT by default)
pymssql (should be on BT by default)
Read more
- Hacker Tools For Windows
- How To Hack
- Pentest Tools Download
- Hack And Tools
- Hacking Tools Mac
- Hacking Apps
- Pentest Tools Github
- New Hacker Tools
- Hack Tools For Ubuntu
- Hacking Tools For Windows Free Download
- Pentest Tools Open Source
- Hack Tools For Ubuntu
- Hacking Tools Download
- Hack Tools Github
- Hacking Tools For Mac
- Underground Hacker Sites
- Hacker Tools Mac
- Pentest Tools Bluekeep
- Hacker Tools Free Download
- Hacker Tools For Mac
- Hack Tools Mac
- Hack Tools
- Nsa Hacker Tools
- Hack Tools
- Best Pentesting Tools 2018
- Github Hacking Tools
- Hacker Tools List
- Hacks And Tools
- Hacker Tools For Ios
- Hack Tools For Mac
- Hack Tools Github
- Hack Tools For Ubuntu
- Pentest Tools Linux
- Black Hat Hacker Tools
- How To Install Pentest Tools In Ubuntu
- Pentest Tools Nmap
- Hack Tools For Ubuntu
- Hacker Tools For Ios
- Hacking Tools And Software
- Hacking Tools Free Download
- Hacker Tools Apk
- Hacking Tools
- Hacker Tools Github
- Best Hacking Tools 2020
- Pentest Tools Website Vulnerability
- Hacking Tools For Kali Linux
- Hacker Tools Free
- Hack Tools Download
- Tools Used For Hacking
- Physical Pentest Tools
- Hacker Tools
- Hacking Tools Github
- Pentest Tools Open Source
- Hacking Tools For Windows 7
- Hack App
- Hacker Tools Free
- Pentest Tools Website
- Hacking Tools Windows 10
- Pentest Tools Bluekeep
- Black Hat Hacker Tools
- Hack Tools For Pc
- How To Install Pentest Tools In Ubuntu
- Hacking Tools Usb
- Blackhat Hacker Tools
- Hacking Tools 2020
- Hacking Tools Software
- Termux Hacking Tools 2019
- Nsa Hack Tools
- What Are Hacking Tools
- Hacker Tools For Pc
- Pentest Tools Port Scanner
- Hacker Tools Apk Download
- Hack Tools Mac
- Hack Tools
- How To Make Hacking Tools
- Hacker Hardware Tools
- Pentest Tools Alternative
- Free Pentest Tools For Windows
- Nsa Hack Tools Download
- Hacker Tools Mac
- Hacker Tools Linux
- Pentest Recon Tools
- Pentest Tools For Android
- Hacking Tools Name
- Hacking Tools For Windows
- What Is Hacking Tools
- Best Hacking Tools 2019
- Pentest Tools List
- Tools For Hacker
- Hacking Tools 2019
- Hacker Tools For Ios
- Hacking Tools For Pc
- Beginner Hacker Tools
- Ethical Hacker Tools
- Pentest Recon Tools
- Hacking Tools Kit
- Hacking Tools Hardware
- Hack Tools Pc
- Hacker Tools For Windows
- Hack Tools Pc
- Tools Used For Hacking
- Hack Tools 2019
- Hacking Tools For Pc
- Hacker Hardware Tools
- Hacker Tools For Pc
- Hacker Tools Free Download
- Android Hack Tools Github
- Hack Tools
- Hacker
- Hack Apps
- Black Hat Hacker Tools
- Physical Pentest Tools
- Hacker Techniques Tools And Incident Handling
- Pentest Tools Open Source
- Hacking Tools Github
- Hacking Apps
- Blackhat Hacker Tools
- Pentest Tools Port Scanner
- Hacker Tool Kit
- Hack Rom Tools
- Hacking Tools
- Hacker Tools Linux
- Android Hack Tools Github
- Hack Tools For Games
- Tools Used For Hacking
- Pentest Tools Review
- Pentest Tools Github
- Hacking Apps
- Pentest Tools Bluekeep
- Usb Pentest Tools
- Tools For Hacker
- Pentest Tools Linux
- Tools Used For Hacking
- Hackers Toolbox
- Pentest Tools For Mac
- Pentest Tools Github
- Hacker Tools 2019
- What Are Hacking Tools
- Hackrf Tools
- Hack Tools Download
- Hacking Tools Mac
- Pentest Tools Framework
- New Hacker Tools
- Free Pentest Tools For Windows
- Pentest Tools Open Source
- Hacker Tools Mac
- Hacker Tools List
- Pentest Tools Download
- Hack Tools For Ubuntu
- Hackers Toolbox
- Ethical Hacker Tools
- Hacking Tools For Mac
- Pentest Tools Online
- Hack Tools For Games
- Ethical Hacker Tools
- Pentest Tools For Mac
- Free Pentest Tools For Windows
- Kik Hack Tools
- Hacking Tools Usb
- Pentest Tools Apk
- Pentest Reporting Tools
- Hacker Tools Linux
- New Hacker Tools
- Hacking Tools Software
- Hacker Tools
- Tools For Hacker
- Hacking Tools For Mac
- Growth Hacker Tools
- Pentest Tools Bluekeep
- Growth Hacker Tools
- Hacks And Tools
- Hack Tools
- Hack Tools For Windows
- Pentest Reporting Tools
Nenhum comentário:
Postar um comentário