What is SQL injection? - Web Security Academy

  Переглядів 305,161

PortSwigger

PortSwigger

День тому

SQL injection is a web security vulnerability that allows an attacker to interfere with the queries that an application makes to its database. Learn more from the Web Security Academy, by PortSwigger.
Read the full guide: portswigger.net/web-security/...
SQL injection cheat sheet: portswigger.net/web-security/...
Register for free with the Web Security Academy to test yourself in our interactive labs: portswigger.net/web-security

КОМЕНТАРІ: 72
@bytesunlimitedsecuritytips9095
@bytesunlimitedsecuritytips9095 2 роки тому
Very great video! Thank you! My only complaint is that there was a lot of content mentioned here that could have been slowed down and further explained or better analyzed. Other than that, I will have to watch a few more times to fully grasp it.
@trentashore1059
@trentashore1059 3 роки тому
Your a legend I couldnt understand wtf 1=1 bs was, but the way you broke it up and showed what was being altered or affected made it sooo easy to understand, big thanks to yall
@mrrairai
@mrrairai 9 місяців тому
This video is amazing! I'm so happy I found it. It makes things make so much more sense now. Thank you.
@dustinhxc
@dustinhxc Рік тому
Thank you for the academy videos!
@nandhaKumar-nr8yv
@nandhaKumar-nr8yv 3 роки тому
Really useful! its ultra level. i am very much attracted to the way of teaching by a wonderful instructor. i looking for more videos. You are doing a great job
@pardeepbhardwaj4251
@pardeepbhardwaj4251 3 роки тому
Do any practical of sql injection ... create video for practising of sql
@paulojr1384
@paulojr1384 Рік тому
awesome content PortSwigger tnx
@Mohamed-xe7ui
@Mohamed-xe7ui Рік тому
so great, PLz make more videos for other web academy topics
@mothish.
@mothish. 3 роки тому
Make more burb suite academy tutorials please
@headshotcaptain8389
@headshotcaptain8389 2 роки тому
Awesome content!
@sumanaswal6557
@sumanaswal6557 3 роки тому
thanks for the info you look like joey king
@dhayes5151
@dhayes5151 Рік тому
Very well put together. Audio could be better quality however. Thanks!
@PrakashKumar-se1qk
@PrakashKumar-se1qk 2 роки тому
Prevention part is good and not spoked in many blogs and videos
@gonzalo635
@gonzalo635 2 роки тому
NetSec is amazing.
@pronoydutt8361
@pronoydutt8361 3 роки тому
How did you say username: weiner and password: blue cheese with a completely straight face
@b8akaratn
@b8akaratn 7 місяців тому
Thank you
@dranonymous1547
@dranonymous1547 3 роки тому
very good
@Umar0x01
@Umar0x01 2 роки тому
02:43 barely held the laugh, hahaha.
@aaronwhite1786
@aaronwhite1786 2 місяці тому
I feel like this was actually how they eliminated people at PortSwigger who wanted to host the video. If you couldn't get through that portion of the script without breaking you didn't get the do the video.
@togrow6578
@togrow6578 3 роки тому
amazing
@AnthonyMcqueen1987
@AnthonyMcqueen1987 3 роки тому
I have been having so much bad-luck searching for XSS i am thinking of focusing on SQL Injection because its only the database we need to worry about and if valid could bring some major $$$.
@gkmusicnocopyrightsongs7307
@gkmusicnocopyrightsongs7307 2 роки тому
Send your contact number sir I want your help
@AnthonyMcqueen1987
@AnthonyMcqueen1987 2 роки тому
@@gkmusicnocopyrightsongs7307 nope
@gkmusicnocopyrightsongs7307
@gkmusicnocopyrightsongs7307 2 роки тому
Sir plz help me
@AnthonyMcqueen1987
@AnthonyMcqueen1987 2 роки тому
@@gkmusicnocopyrightsongs7307 whats the problem ?
@gkmusicnocopyrightsongs7307
@gkmusicnocopyrightsongs7307 2 роки тому
My family was poor I want your help plz help in haking tricks
@XaraTVOfficial
@XaraTVOfficial Рік тому
2:43 I wish you had used a form that has Username and Password instead of Email Address and Password to avoid confusion.
@Tekionemission
@Tekionemission 2 роки тому
Great video, thanks for posting it. Curious, does anyone know what the + is for, i.e.: '+OR+1=1--
@MrHT1993
@MrHT1993 Рік тому
The '+' sign represent concatenation in a URL. If you perform the labs, you will understand.
@Fahodinho
@Fahodinho Рік тому
+ is a space ' ' URL encoded
@stumbras2000
@stumbras2000 9 місяців тому
What should you study in order to understand concepts in this video seems like this is not beginner level...
@amol5436
@amol5436 2 роки тому
@3.10 did they miss a single quote after -- ?
@cybercog
@cybercog Рік тому
no, the single quote is purposefully used to 'break' the SQL formatter and inject your code
@d.j.s.3180
@d.j.s.3180 3 роки тому
Девчуля я влюбился
@opurbovai3414
@opurbovai3414 Рік тому
I WANT TO WORK WITH YOU
@joojordy5855
@joojordy5855 11 місяців тому
nice
@pardeepbhardwaj4251
@pardeepbhardwaj4251 3 роки тому
👍
@philopateermoheb7162
@philopateermoheb7162 8 місяців тому
البت اللي في الفيديو حلوة
@kiwinesss
@kiwinesss 3 роки тому
She talks very very fast, so I had to watch it twice. But thank you for the information.
@sumanaswal6557
@sumanaswal6557 3 роки тому
or you could have slowed it down from the option manu
@kiwinesss
@kiwinesss 3 роки тому
@@sumanaswal6557 na I hate doing that, it makes everyone sound like a robot.
@inyodream642
@inyodream642 3 роки тому
@@kiwinesss wtf lol
@aesthetic_diabetics
@aesthetic_diabetics 3 роки тому
ya'll really just gonna drop wiener and blue cheese with a straight face... sheeeeeesh
@mohamedreddad2684
@mohamedreddad2684 2 роки тому
Well, can anyone mention her name or her instagram 🌝
@APTsec
@APTsec 7 місяців тому
her name please... i feel in love :)
@anoopmv7
@anoopmv7 2 роки тому
Excellent presentation by a beautiful girl..
@darrensylvain8868
@darrensylvain8868 2 роки тому
Hopefully youtube doesn't demonetize you for suggesting sql injections exist
@albertomertinez1710
@albertomertinez1710 Рік тому
Do you understand sql injection ... Lots of videos💋💕💕 seems confusing .
@ansh4360
@ansh4360 2 роки тому
a
@movietrailerpark
@movietrailerpark Рік тому
Understoood nothing
@atikrangnekar3337
@atikrangnekar3337 2 роки тому
Dekh kr bol rhi hai
@randymoazha4440
@randymoazha4440 2 роки тому
just want to say, that women is really beautiful.
@MrDubs
@MrDubs Рік тому
After watching this video and reading your comment, I commuted to a local sporting goods store and purchased the most powerful pair of binoculars they had available. I then proceeded to traverse the highest mountain in a 200 mile radius of my location five minutes after noon. The day was clear, weather warm, I had visibility for miles in all 360 degrees. But to my dismay, I still couldn't see who asked.
@ffgrass4132
@ffgrass4132 Рік тому
@@MrDubs ahahhaha
@ExodusSec
@ExodusSec 11 місяців тому
hahahah wiener blucheese ahhhh pause .
What is command injection? - Web Security Academy
7:46
PortSwigger
Переглядів 67 тис.
SQL Injection | Complete Guide
1:11:53
Rana Khalil
Переглядів 219 тис.
1 класс vs 11 класс (рисунок)
00:37
БЕРТ
Переглядів 2,6 млн
Hacking Websites with SQL Injection - Computerphile
8:59
Computerphile
Переглядів 2,4 млн
SQL Injection Hacking Tutorial (Beginner to Advanced)
1:01:05
David Bombal
Переглядів 184 тис.
2021 OWASP Top Ten: Injection
11:48
F5 DevCentral
Переглядів 26 тис.
you need to learn SQL RIGHT NOW!! (SQL Tutorial for Beginners)
24:25
NetworkChuck
Переглядів 1,3 млн
How a Hacker Could Attack Web Apps with Burp Suite & SQL Injection
10:09
Cách sửa này được không các bạn?
1:00
Cơ Khí Toàn Nghĩa
Переглядів 807 тис.
ЭТО САМЫЙ МОЩНЫЙ ИГРОВОЙ СМАРТФОН ЗА 270$ 🔥
13:33
Thebox - о технике и гаджетах
Переглядів 36 тис.
iPhone 19?
0:16
ARGEN
Переглядів 3,9 млн