• We just launched and are currently in beta. Join us as we build and grow the community.

[TUTORIAL] SQLI INJECTION (MANUAL) FIND VULNERABLES & COMBOS

PaperBro64

Ad Placement Specialist
P Rep
0
0
0
Rep
0
P Vouches
0
0
0
Vouches
0
Posts
70
Likes
165
Bits
2 MONTHS
2 2 MONTHS OF SERVICE
LEVEL 1 300 XP
This is a manual way of checking for vulnerable URLs.
Not using SQLI Dumper or what not.
1). Check for vulnerability
Let's say that we have some site like this
Now to test if is vulrnable we add to the end of url ' (quote),
and that would be http://server/news.php?id=5'
so if we get some error like
"You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right etc..."
or something similar
that means is vulnerable to sql injection
 

437,153

314,794

314,803

Top