当前位置:网站首页>SQL injection 2
SQL injection 2
2022-07-06 20:17:00 【Fan Pei West】
Blind note
What should we do when our injection statement is brought into the database query but nothing is returned ? for example 

Boolean type sql Blind note
substr() function
substr(string,start,length)
string( It's necessary ) Specifies that a part of the string to be returned .start( It's necessary ) Specify where to start the string .length( Optional ) Specifies the length of the returned string .

The following results 1 It's true ,0 For false 





Manual blind injection is usually not used in actual operation , have access to sqlmap And other tools to increase the efficiency of blind Injection .
Time type sql Blind note
Enter last vince’ and ascii(substr(database(),1,1))=112#, The returned information finds that there is no injection point . Then you can't inject ? But in fact, it can be injected through the execution time of the back end .


Then you can use tools to measure
Wide byte Injection
Premise :mysql The coding set of is gbk And magic quotation mark escape is checked 







边栏推荐
- 持续测试(CT)实战经验分享
- Example of shutter text component
- BUUCTF---Reverse---easyre
- JVM_常见【面试题】
- 报错分析~csdn反弹shell报错
- RT-Thread 组件 FinSH 使用时遇到的问题
- 【云原生与5G】微服务加持5G核心网
- Selenium advanced operations
- Introduction of Xia Zhigang
- Social recruitment interview experience, 2022 latest Android high-frequency selected interview questions sharing
猜你喜欢
![[cloud native and 5g] micro services support 5g core network](/img/c9/4ccacd1e70285c2ceb50c324e5018c.png)
[cloud native and 5g] micro services support 5g core network
Tencent byte and other big companies interview real questions summary, Netease architects in-depth explanation of Android Development

OceanBase社区版之OBD方式部署方式单机安装

【GET-4】

持续测试(CT)实战经验分享

An East SMS login resurrection installation and deployment tutorial

系统与应用监控的思路和方法

A5000 vGPU显示模式切换

rt-thread i2c 使用教程

Maximum likelihood estimation and cross entropy loss
随机推荐
Period compression filter
爬虫(14) - Scrapy-Redis分布式爬虫(1) | 详解
使用ssh连接被拒
Recyclerview not call any Adapter method :onCreateViewHolder,onBindViewHolder,
Tencent cloud database public cloud market ranks top 2!
HDU 1026 search pruning problem within the labyrinth of Ignatius and the prince I
Crawler (14) - scrape redis distributed crawler (1) | detailed explanation
Vscode debug run fluent message: there is no extension for debugging yaml. Should we find yaml extensions in the market?
js实现力扣71题简化路径
Appx code signing Guide
PHP与EXCEL PHPExcel
JS implementation force deduction 71 question simplified path
String length limit?
Leetcode brush first_ Maximum Subarray
Redisson bug analysis
Linear distance between two points of cesium
青龙面板白屏一键修复
HDU 1026 Ignatius and the Princess I 迷宫范围内的搜索剪枝问题
Guangzhou's first data security summit will open in Baiyun District
[cloud lesson] EI lesson 47 Mrs offline data analysis - processing OBS data through Flink