SQL Injecting Beyond Strict Filters - Union Without Comma
00:00 - Introduction
01:57 - Showing the trick and explaining why its important to understand the methodology behind finding the technique and not just the technique itself
03:50 - Going over the Flask App
05:45 - Showing Snyk highlighting the SQL Injection, then talking a little bit about Snyk and why it is awesome.
08:00 - Running the webserver and explaining why DEBUG mode should always be disabled
09:30 - Running SQLMap to inject into the URL Parameter
11:00 - Manually discovering the SQL Injection through good enumeration, and showing a Burpsuite URL Encoding Quirk
12:50 - SQLMap showed nothing, Run SQLMap again but this time make sure it starts with a valid result to see it does find something
13:20 - Going into the code to show why exploitation is hard, I’m using Pydantic to do strict typing and input filtering
17:36 - Showing how SQLMap discovered there were 4 columns without using a comma, thanks to the ORDER BY method
18:55 - Enumerating for bad characters with FFUF
12 views
877
314
2 months ago 00:05:47 1
Как удалить шифрованный EFI раздел с USB флешки в Windows 10
2 months ago 01:38:01 1
OWASP Top 10. Учимся эксплуатировать уязвимости (XXS, SQLi, SSRF, IDOR, LFI, Brute Force etc)
3 months ago 10:44:08 2
PHP For Beginners - Complete Course (2023) [Check Comment for HD version Link]
4 months ago 00:11:23 1
Каждый хакер использует эти поисковые системы
4 months ago 00:33:04 21
Как взламывают сайты? XSS уязвимость, SQL-injection, CSRF, Code Injection
4 months ago 02:14:05 1
CS50x 2024 - Lecture 7 - SQL
5 months ago 00:13:17 15
SQL Injection - теория и примеры
6 months ago 00:15:21 1
A First Look At Parrot 6.1 Home Edition
7 months ago 00:16:49 2
COMPUTER SCIENCE explained in 17 Minutes
8 months ago 01:46:13 2
HackTheBox - Drive
8 months ago 00:54:43 11
HackTheBox - Clicker
9 months ago 00:06:25 1
SQLi. Получение админ пароля на ROOT Me (SQL injection - String)
9 months ago 00:13:39 1
Информационная безопасность с нуля. Основы кибербезопасности
9 months ago 08:55:22 3
A Complete Ethical Bootcamp Hack #3
9 months ago 08:10:12 9
A Complete Ethical Bootcamp Hack #2
9 months ago 08:07:06 18
A Complete Ethical Bootcamp Hack #1
10 months ago 01:48:10 8
Web Security. PortSwigger SQL Injection, p1
10 months ago 11:21:04 1
Bug Bounty Course 2024 Updated
11 months ago 01:30:15 1
Безопасность в Golang | Навыки
11 months ago 10:51:30 2
Python for Hackers FULL Course | Bug Bounty & Ethical Hacking
11 months ago 00:16:21 18
HackTheBox - Sau
1 year ago 00:32:24 1
Stephen Rees-Carter - Th1nk lik3 a h4cker - Laracon AU 2023
1 year ago 00:10:43 1
MVC Fundamentals. Урок 10. Поиск и устранение уязвимостей.
1 year ago 01:35:36 1
Динамический SQL. SQL инъекции. Разработчик MS SQL ч.6