Advanced MySQL Exploitation

DEF CON 17

Presented by: Charlie Vedaa
Date: Friday July 31, 2009
Time: 14:30 - 14:50
Location: Turbo/Breakout Track
Track: Turbo/Breakout

This talk focuses on how MySQL SQL injection vulnerabilities can be used to gain remote code execution on the LAMP and WAMP environments. Attackers performing SQL injection on a MySQL platform must deal with several limitations and constraints. For example, the lack of multiple statements in one query makes MySQL an unpopular platform for remote code execution compared to other platforms. This talk will show that arbitrary code execution is possible on the MySQL platform and explain the techniques. In this presentation, the author will release a new tool titled MySqloit. This tool can be integrated with metasploit and is able to upload and execute shellcodes using a SQL Injection vulnerability in LAMP or WAMP environments.

Muhaimin Dzulfakar

<strong>Muhaimin Dzulfakar</strong> is a Security Consultant for Security-Assessment.com, located in Wellington, New Zealand. His primary duties include network and application penetration testing. Muhaimin Dzulfakar has a bachelor degree in Software Engineering from Multimedia University, Kuala Lumpur where he developed his own Intrusion Detection System. His research interests include exploit development methods and post exploitation process.


KhanFu - Mobile schedules for INFOSEC conferences.
Mobile interface | Alternate Formats