|
|
 |
 |
 |
 |
register |
bbs |
search |
rss |
faq |
about
|
 |
 |
meet up |
add to del.icio.us |
digg it
|
 |
 |
| Network (in)Security Interesting hacks and cracks. Info on firewalls, TCP/IP, encryption, networks, and security. The ins and outs of the phone system, caller services, how things work, what's illegal and what's not, cellular phones, beepers, telephony legislation, the PUC, ISDN, taps, who's listening, and switches. Talking about phones, hacking systems, technical advice, and such is completely LEGAL in the United States -- it's covered by the First Amendment. What's illegal is conspiracy to commit a crime. So if you say something like "Meet me at 2am so we can crack a can" or "I changed my cell phone's number myself" you are criminally liable. Stating "You can crack a can by doing thus-and-so" or "If you wanted to change a cell phone's number, you could do it like so" is perfectly OK. Posting passwords, calling card numbers, or credit card numbers is forbidden on this network. Posting such info will get you booted off the net. |
 |
|
# 1

2007-06-04, 21:39
|
|
|
SQL injection Methods
I want to know if anyone has a good e-book about SQL Injection methods because I heard it is a very useful attack on websites if they are vulnerable to SQL injections.
Last edited by AM33N : 2007-06-05 at 21:02.
Reason: sorry reidy !!
|
# 2

2007-06-05, 00:34
|
|
Regular
|
|
Suburban Buffalo New York.
|
|
Re: SQL injection Methods
i don't...understand?
|
# 3

2007-06-05, 14:04
|
|
Regular
|
|
Genius
|
|
Re: SQL injection Methods
The ' OR 1=1 thing rarely ever works. Unless the admin is shit.
To find out more, just learn SQL.
Once you know how it works properly, you can work out ways to trick it.
Enjoy.
|
# 4

2007-06-05, 17:34
|
|
Regular
|
|
Lincolnshire
|
|
Re: SQL injection Methods
Oh I bet you fucked that website up good did you like put up www.goatse.cz images up and then went to you'r mates and said look what I can do my ball's have just dropped and knock one off over it.
the 1=1 thing didn't work
Nor did the apostrophe in the password field
it was sirholkm's, now its you, take heed or people will start flaming every post you make
shut up & learn or leave
Last edited by reidy- : 2007-06-05 at 19:02.
|
# 5

2007-06-05, 18:43
|
|
Regular
|
|
-
|
|
Re: SQL injection Methods
i love the poster above! Good point +1 for you.
-1 for the shit head who made this thread
|
# 6

2007-06-05, 19:07
|
|
Regular
|
|
Suburban Buffalo New York.
|
|
Re: SQL injection Methods
I still have no clue what the op wants.
He had two statements that collided in the middle and ended up making no sense at all.
and just doing "ad'min" will get you nowhere more then maybe generating an error.
|
# 7

2007-06-05, 21:40
|
|
Regular
|
|
hai guiz
|
|
Re: SQL injection Methods
Hey I have a suggestion. What about typing 'SQL INJECTION METHODS' into a google search?
|
# 8

2007-06-05, 22:57
|
|
|
Re: SQL injection Methods
' OR 1=1-- is a blind SQL injection method. It's mostly used to see if it's vulnerable so don't expect passwords to pop out at you like magic. If the blind SQL injection returned table names then that makes things alot easier. Then you just use SELECT * FROM table_name WHERE .... and so forth. I'm still trying to understand most of it, but thats that bare basics
|
# 9

2007-06-05, 22:59
|
|
Regular
|
|
hai guiz
|
|
Re: SQL injection Methods
Quote:
Originally Posted by O RLY
' OR 1=1-- is a blind SQL injection method. It's mostly used to see if it's vulnerable so don't expect passwords to pop out at you like magic. If the blind SQL injection returned table names then that makes things alot easier. Then you just use SELECT * FROM table_name WHERE .... and so forth. I'm still trying to understand most of it, but thats that bare basics
|
Actually, you have to use INFORMATION_SCHEMA to retrieve the info first.
|
# 10

2007-06-07, 10:46
|
|
Regular
|
|
City State Country
|
|
Re: SQL injection Methods
' or 1=1--
" or 1=1--
or 1=1--
' or 'a'='a
" or "a"="a'
I think that's right...
--Cr@sh
|
This thread continued for 2 pages in the real archive, 18 posts total - only page 1 survived here.
| Thread Tools |
 Show Printable Version
 Email this Page
|
| Display Modes |
Linear Mode
 Switch to Hybrid Mode
 Switch to Threaded Mode
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
|
 |
 |
To the best of our knowledge, the text on this page may be freely reproduced and distributed.

totse.com certificate signatures
|
 |
 |
About | Community | Bad Ideas | Drugs | Ego | Erotica | Fringe | Society | Technology
|
 |
 |
 |
 |
|
|