Re: Time based Blind SQL injection

Yiannis Koukouras <[email protected]>
Newsgroups gmane.comp.security.penetration,gmane.comp.security.web-applications
Message-ID <CAJNXCf1311G_qZFhK3f7PNX39T4Z0Yf+xuFOr731rru+22i00w@mail.gmail.com>
So, the only difference, from other tools out there, is the support of TAB(%09)?

Am I missing something?

Thanks for sharing! :)

Cheers,
Ioannis (Yiannis) Koukouras
CISSP, CISA, CISM, OSCP
MSc in Computer Systems Security
BEng in Electronic Engineering
http://www.linkedin.com/in/ikoukouras
---

On Tue, Mar 13, 2012 at 2:09 AM, Danux <[email protected]> wrote:
>
> Nothing new, just a different approach to automated the process of
> blind injection based on time.
>
> http://danuxx.blogspot.com/2012/03/time-based-blind-sql-injection.html
>
> Hope you find it useful.
>
>
> --
> DanUx
>
> ------------------------------------------------------------------------
> This list is sponsored by: Information Assurance Certification Review
> Board
>
> Prove to peers and potential employers without a doubt that you can
> actually do a proper penetration test. IACRB CPT and CEPT certs require a
> full practical examination in order to become certified.
>
> http://www.iacertification.org
> ------------------------------------------------------------------------
>

------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 

http://www.iacertification.org
------------------------------------------------------------------------
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.