·|­û±±¨î»O ·|­ûµn¤J ·|­ûµù¥U ³Ì«á§ó·s ¶i¶¥·j´M ·|­û§ë½Z µn¥X
­»´äITºô¬°±z´£¨Ñ³Ì·s³Ì¥þ­±ªºIT§Þ³N¸ê°T,¬O±z¾Ç¹q¸£ªº¦n¦a¤è¡C ³]¬°­º­¶
¦¬ÂÃ¥»¯¸
¯d¨¥µ¹§Ú
  IT­º­¶ | §@·~¨t²Î | ³nÅé±Ð¾Ç | µwÅéÀW¹D | ºôµ¸ÀW¹D | ¨¾¶Â§Þ³N | ºô­¶³]­p | µ{¦¡³]­p | ¹Ï§Î¹Ï¹³ | ¼Æ½X&¹CÀ¸
| ¥[¸Ñ±K§Þ³N | IT½×¾Â
·í«e½u¤W¡G26 ¤H
§@·~¨t²Î
³nÅé±Ð¾Ç
µwÅéÀW¹D
ºôµ¸ÀW¹D
¨¾¶Â§Þ³N
ºô­¶³]­p
µ{¦¡³]­p
¹Ï§Î¹Ï¹³
¼Æ½X&¹CÀ¸
¥[¸Ñ±K§Þ³N
­»´äITºô / ¨¾¶Â§Þ³N / ¶Â«È§Þªk / Crack Oracle Password
Crack Oracle Password
2008-03-23          ÂI¿ï: 593
[1]

­n³s±µ»·ºÝªº Oracle ¸ê®Æ®w¡A»Ý­nª¾¹D SID¡A¥Î¤á¦W¡A ±K½X¡A·íµMÁÙ¦³³Ì­«­nªº IP ¦ì§}¡CSID ¦pªG³QºÞ²z ­û­×§ïªº¸Ü¡A¥i¥H§Q¥Î sidguess ¨Ó¶i¦æ¯}¸Ñ¡A³t«×«D±`ªº§Ö¡A¦Ü©ó¦¨¥\»P§_¡A´N­n¬Ý§Aªº¦r¨å°t¸m¤F¡C¯}¸Ñ®ÄªG¦p¹Ï 1¡C

¹Ï 1

 

Oracle ¤£¦Pªºª©¥»¦³¤j¶qªº¹w³]±b¤á±K½X¡C¥i¬O¦³¨Ç±¡ªp¤U¡AOracle ¸ê®Æ®wºÞ²z­û§â¹w³]ªº±K½Xµ¹­×§ï¤F¡A §Ú­Ì´N­n¿ï¾Ü¼É¤O¯}¸Ñ¤F ¡C¦pªG±b¤á¯}¸Ñ¦¨¥\ ¡Aµn¿ý¤W¥h¡A¬O DBA ³\¥iÅvªº¸Ü³Ì¦n ¡A¤£¬Oªº¸Ü¡A¤]¥i¥H§Q¥Î Oracle ªº¤@¨Çº|¬}¶i¦æ´£Åv¨ì DBA¡C¶i¤J¸ê®Æ®w«á¡A§Ú¤@¯ë¿ï¾Üªº¬O§ì¨ú¨ä¥L¥Î¤áªº±K½X«¢§Æ­È¡AµM«á¥»¦a Rainbow ¯}¸Ñ¡C¦pªG¦Pºô¬qÁÙ¦³¨ä¥Lªº Oracle ¸ê®Æ®w¡A¥i¥H§ì¥]µ¥«Ý¨ä¥L¥Î¤áªº Oracle µn¿ýÅçÃÒ¡A¨ú¥X±Ó·P ¸ê°T¡AµM«á¯}¸Ñ¡C¶i¤@¨BÂX¤j¾ÔªG¡C¤U­±§Ú´N¤À§OÁ¿Á¿³o¤TºØ¯}¸Ñ¤èªk¤Î¬ÛÃö¤u¨ãªº¨Ï¥Î¡C

 

Quotation

¦³Ãö Oracle ±K½Xªº°ò¦ª¾ÃÑ

 

1¡B¼Ð·Çªº Oracle ±K½X¥i¥H¥Ñ­^¤å¦r¥À¡A¼Æ¦ì¡A#¡A¤U¹º½u(_)¡A¬ü¤¸¦r¤¸($)ºc¦¨¡A±K½Xªº³Ì¤jªø«×¬° 30 ¦r¤¸¡FOracle ±K½X¤£¯à¥H"$"¡A"#"¡A"_"©Î¥ô¦ó¼Æ¦r¶}ÀY¡F±K½X¤£¯à¥]§t¹³"SELECT"¡A"DELETE"¡A"CREATE"³oÃþªº Oracle/SQL ÃöÁä¦r¡C

 

2¡BOracle ªº®zºtºâªk¥[±K¾÷¨î¡G¨â­Ó¬Û¦Pªº¥Î¤á¦W©M±K½X¦b¨â¥x¤£¦Pªº Oracle ¸ê®Æ®w¾÷¾¹¤¤¡A±N¨ã¦³¬Û¦Pªº«¢§Æ­È¡C³o¨Ç«¢§Æ­È¦sÀx¦b SYS.USER$ªí¤¤¡C¥i¥H³q¹L¹³ DBA_USERS ³oÃþªºµø¹Ï¨Ó³X°Ý¡C

 

3¡BOracle ¹w³]°t¸m¤U¡A¨C­Ó±b¤á¦pªG¦³ 10 ¦¸ªº¥¢±Ñµn¿ý¡A¦¹±b¤á±N·|³QÂê©w¡C¦ý¬O SYS ±b¤á¦b Oracle ¸ê®Æ®w¤¤¨ã¦³³Ì°ª³\¥iÅv¡A¯à°÷°µ¥ô¦ó¨Æ±¡¡A¥]¬A±Ò°Ê/Ãö³¬ Oracle ¸ê®Æ®w¡C§Y¨Ï SYS ³QÂê©w¡A¤]¨ÌµM¯à°÷³X°Ý¸ê®Æ®w¡C

 

¤@¡B»·µ{¼É¤O¯}¸Ñ

 

¥Ñ«e­±ªº°ò¦ª¾ÃÑ 3¡A¥i¥H±oª¾¿ï¾Ü»·ºÝ¯}¸Ñ Oracle ªº³Ì¦n±b¤á¬O SYS¡A¦]¬°¦¹±b¤á¥Ã»·¦³®Ä¡C¦b Oracle10g

¥H«eªºª©¥»¦b¦w¸Ëªº®É­Ô¨Ã¨S¦³´£¥Ü­×§ï SYS ªº¹w³]±K½X¡AOracle10g ÁöµM´£¥Ü­×§ï±K½X¤F¡A¦ý¬O¨Ã¨S¦³Àˬd±K½Xªº½ÆÂø©Ê¡C¦p¹Ï2

¹Ï 2

 

¥i¥H¨Ï¥Î Orabrute ¤u¨ã¨Ó¶i¦æ»·ºÝ¯}¸Ñ¡A¦b¨Ï¥Î³o­Ó¤u¨ãªº®É­Ô¡A»Ý­n¨t²Î´£«e¦w¸Ë¦n Sqlplus¡A¸Ó¤u¨ãªº ­ì²z«Ü²³æ¡A´N¬O¤£°±ªº½Õ¥Î Sqlplus µM«á¶i¦æµn¿ýÅçÃÒ¡A±b¤á¿ï¾Üªº¬O SYS¡A±K½X«h¬° password.txt ¤¤ªº±K ½X³æµü¡C¥u­nµn¿ý¦¨¥\ ¡A´N·|½Õ¥Î selectpassword.sql ¸}¥»§ì¨ú¥X¦b SYS.USER$ªí¤¤ªº¨ä¥L¥Î¤áªº«¢§Æ­È ¡A µM«á°h¥Xµ{¦¡¡C³oùئ³­Óª`·Nªº¦a¤è¡A·í²Ä¤G¦¸°õ¦æ Orabrute ªº®É­Ô¡A»Ý­n§R°£©Î²¾°Ê¦P¥Ø¿ý¤Uªº«e¤@¦¸°õ¦æ Orabrute ®É¥Í¦¨ªº thepasswordsarehere .txt ©M output.txt ¤å¥ó¡C

 

Orabrute ªº¨Ï¥Î¤èªk¬°¡G

 

orabrute <hostip> <port> <sid> <millitimewait>

 

®ÄªG¦p¹Ï 3¡A4

¹Ï 3

¹Ï 4

³d¥ô½s¿è: ­·ÀH¦æ
[2] »
µoªíµû½× ¬d¬Ýµû½× ¥[¤J¦¬Âà Emailµ¹ªB¤Í ¦C¦L¥»¤å
¦pªG§A·Q¹ï¸Ó¤å³¹µû¤À, ½Ð¥ýµn³°, ¦pªG§A¤´¥¼ª`¥U,½ÐÂIÀ»ª`¥UÃì±µª`¥U¦¨¬°¥»¯¸·|­û.
¥­§¡±o¤À 0, ¦@ 0 ¤Hµû¤À
1 2 3 4 5 6 7 8 9 10
Copyright © 2004-2007 ­»´äITºô All rights reserved. ¯¸ªø:­·ÀH¦æ
¥»¯¸©Ò¥Zµnªº¦UºØ·s»D¸ê®Æ©M¦UºØ±MÃD±MÄæ¸ê®Æ¤j³¡¤À¬°ºô¤W¦¬¶°
¦pªG§A»{¬°«I¥Ç¤F§Aªºª©Åv¡A½Ð³qª¾§Ú­Ì¡A§Ú­Ì°¨¤W§R°£¡C Email:info@hkitn.com