Change Player Size
Watch this video in a new window

SQL Injection

SQL Injection Demo  
 
Customize

More From: ovelho

Loading...

QuickList(0)

Upgrade to Flash Player 10 for improved playback performance. Upgrade Now or get more info.
452 ratings
Sign in to rate
678,602 views
Want to add to Favorites? Sign In or Sign Up now!
Want to add to Playlists? Sign In or Sign Up now!
Want to flag a video? Sign In or Sign Up now!

Statistics & Data

Loading...

Video Responses (1)

Sign in to post a Comment

Text Comments (350)   Options

Loading...
Rodnox (10 hours ago) Show Hide
 0
Marked as spam
it makes sure, the line ends there. For example, if you wanna find out how many rows a DB has, you could use the "order by" or "union all select" command. But if the following Numbers do end without the double dash, your line would just be ignored and continued until the actual line ends. So you'll have to make sure, the line ends exactly there .. with a double dash. But you're right, it's unusually used in that kind of injection. But Interesting ... will keep me busy for a while ^^
H4cKz0rZ100 (3 days ago) Show Hide
 0
Marked as spam
This man is God, lol, --- "Oh you can see she was born in 74!"
aidanpomper (3 days ago) Show Hide
 0
Marked as spam
and now your in jail for sharing this on youtube... YAY your great
phantom37383 (3 days ago) Show Hide
 0
Marked as spam
凄いですね!
参考になります
oliocotto (1 week ago) Show Hide
 0
Marked as spam
@schnepman1993 So useless...
schnepman1993 (1 week ago) Show Hide
 -3
Marked as spam
nope.
You are only able to crack MD5 with brute force or word lists. Another way of protection against sql-injection is to put the posted vars in mysql_real_escape_string(). Like this:
$_POST["password"] = mysql_real_escape_string($_POS T["password"]);
didkei (3 weeks ago) Show Hide
 0
Marked as spam
who knows, it's not like Earth's short of dumb people
didkei (3 weeks ago) Show Hide
 0
Marked as spam
save it to the pc, then use an editing program (even Notepad is ok)
GreekAmericanGuy (3 weeks ago) Show Hide
 0
Marked as spam
What was the code on the Username and password?
DerekSchwandt (1 month ago) Show Hide
 0
Marked as spam
It's amazing how easily one can hack a site. I never thought about the offline thing and editing the html code.

Would you like to comment?

Join YouTube for a free account, or sign in if you are already a member.