If you want to master SQL injections, open this thread!
SQL injection attacks are vulnerabilities that can allow attackers to access ANY data in a victim's database!🤯
A Thread 🧵👇
If you want to master SQL injections, open this thread!
SQL injection attacks are vulnerabilities that can allow attackers to access ANY data in a victim's database!🤯
A Thread 🧵👇
[1️⃣] SQL injection by @PortSwigger
When talking about web vulnerabilities, PortSwigger academy is the place to go! Their labs offer a great way to practice your skills as well!
[2️⃣] Cheatsheet by @pentest_swissky
With so many different kinds of databases out there, you're definitely going to want a good cheatsheet to quickly look up what you need. PayloadsAllTheThings is perfect for that!
👇 https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/SQL%20Injection
[3️⃣] Hacking with SQLi by @secaura_
This is one of the BEST videos out there on SQL injections. I've never had so much fun whilst learning!
[4️⃣] Sqlmap by @bdamele and @stamparm
SQLmap is THE tool when it comes to finding SQL injections. There is just nothing there that comes even close to what sqlmap can do!
[5️⃣] Sqlmap in Burp by @codewatchorg
This BurpSuite extension allows you to launch SQLMap scans from within Burp, and it's amazing!
👇 https://portswigger.net/bappstore/f154175126a04bfe8edc6056f340f52e