Kosta Posted January 28, 2014 Share Posted January 28, 2014 Hello All, I have a few questions regarding DLL injection to a server. 1) Is there any DLL injection vulnerability scanner ? 2) Is it possible to inject dll to server via web application bugs? Quote Link to comment Share on other sites More sharing options...
newbi3 Posted January 28, 2014 Share Posted January 28, 2014 Are you talking about sql injection? Quote Link to comment Share on other sites More sharing options...
Foxtrot Posted January 28, 2014 Share Posted January 28, 2014 Are you talking about sql injection? ^^. Allthough, I guess he could really mean DLL injection because this is used for using game mods on PCs etc, like you open a program that injects code into dlls to give you superjump etc xD Quote Link to comment Share on other sites More sharing options...
MB60893 Posted January 28, 2014 Share Posted January 28, 2014 Hello All, I have a few questions regarding DLL injection to a server. 1) Is there any DLL injection vulnerability scanner ? 2) Is it possible to inject dll to server via web application bugs? I am not sure about this. I recommend injecting a file through a java applet or something along those lines. Good Luck! Quote Link to comment Share on other sites More sharing options...
no42 Posted January 28, 2014 Share Posted January 28, 2014 (edited) Here are some links for you to review: DLL hijacking/planting DLLHijackAuditKit https://community.rapid7.com/community/metasploit/blog/2010/08/22/exploiting-dll-hijacking-flaws DLL Injection http://blog.didierstevens.com/category/bpmtk/ http://www.securestate.com/Documents/syringe.c Edited January 28, 2014 by midnitesnake Quote Link to comment Share on other sites More sharing options...
Kosta Posted January 29, 2014 Author Share Posted January 29, 2014 I am speaking about DLL hijacking/planting or DLL Injection, without having access to the machine. Can it be done? Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.