当前位置:网站首页>SQL injection 2
SQL injection 2
2022-07-06 20:17:00 【Fan Pei West】
Blind note
What should we do when our injection statement is brought into the database query but nothing is returned ? for example 

Boolean type sql Blind note
substr() function
substr(string,start,length)
string( It's necessary ) Specifies that a part of the string to be returned .start( It's necessary ) Specify where to start the string .length( Optional ) Specifies the length of the returned string .

The following results 1 It's true ,0 For false 





Manual blind injection is usually not used in actual operation , have access to sqlmap And other tools to increase the efficiency of blind Injection .
Time type sql Blind note
Enter last vince’ and ascii(substr(database(),1,1))=112#, The returned information finds that there is no injection point . Then you can't inject ? But in fact, it can be injected through the execution time of the back end .


Then you can use tools to measure
Wide byte Injection
Premise :mysql The coding set of is gbk And magic quotation mark escape is checked 







边栏推荐
- 系统与应用监控的思路和方法
- JVM_ Common [interview questions]
- Method keywords deprecated, externalprocname, final, forcegenerate
- Cesium Click to draw a circle (dynamically draw a circle)
- Unity making plug-ins
- 精彩编码 【进制转换】
- Poj3617 best cow line
- mod_wsgi + pymssql通路SQL Server座
- 深度学习分类网络 -- ZFNet
- Finally, there is no need to change a line of code! Shardingsphere native driver comes out
猜你喜欢
Tencent Android development interview, basic knowledge of Android Development

PowerPivot - DAX (first time)

BUUCTF---Reverse---easyre

beegfs高可用模式探讨
腾讯安卓开发面试,android开发的基础知识

棋盘左上角到右下角方案数(2)

Node. Js: express + MySQL realizes registration, login and identity authentication

An East SMS login resurrection installation and deployment tutorial

Enumeration gets values based on parameters

BeagleBoneBlack 上手记
随机推荐
HDU 1026 Ignatius and the Princess I 迷宫范围内的搜索剪枝问题
Redisson bug analysis
转让malloc()该功能后,发生了什么事内核?附malloc()和free()实现源
Tencent T4 architect, Android interview Foundation
Groovy basic syntax collation
永磁同步电机转子位置估算专题 —— 基波模型类位置估算概要
Enumeration gets values based on parameters
[network planning] Chapter 3 data link layer (3) channel division medium access control
Tencent T3 Daniel will teach you hand-in-hand, the internal information of the factory
腾讯T4架构师,android面试基础
POJ 3207 Ikki' s Story IV – Panda' s Trick (2-SAT)
【GET-4】
Deep learning classification network -- zfnet
Oceanbase Community Edition OBD mode deployment mode stand-alone installation
String长度限制?
青龙面板白屏一键修复
Qinglong panel white screen one key repair
rt-thread i2c 使用教程
Initial experience of addresssanitizer Technology
JS get browser system language