Тёмный

Avoid "OR 1=1" in SQL Injections 

The Cyber Mentor
Подписаться 787 тыс.
Просмотров 26 тыс.
50% 1

Опубликовано:

 

7 сен 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 30   
@meh.7539
@meh.7539 8 месяцев назад
More of this kind of nuanced, 'teach a person how to ... safely" sort of content, please. Excellent stuff. Thank you.
@ksboi29
@ksboi29 8 месяцев назад
Amazing! I was throwing 1 = 1 like noones business!
@UsamaAli-kr2cw
@UsamaAli-kr2cw 8 месяцев назад
Tibirius never disappoints his viewers. Wonderful insights as always keep it up❤❤❤❤❤
@Tib3rius
@Tib3rius 8 месяцев назад
Thanks for the kind words!
@GamesOfficialYouTube
@GamesOfficialYouTube 8 месяцев назад
​@@Tib3rius😂
@shinris3n
@shinris3n 8 месяцев назад
I "Learned My Lesson" a few months ago thanks to your box on THM 😅
@EliteBuildingCompany
@EliteBuildingCompany 8 месяцев назад
Me too lol, pretty fun.
@TCMSecurityAcademy
@TCMSecurityAcademy 8 месяцев назад
Rock on!
@Saur3n
@Saur3n 8 месяцев назад
Name of the lab?
@shinris3n
@shinris3n 8 месяцев назад
@@Saur3n "Lesson Learned"
@dami-vx2215
@dami-vx2215 8 месяцев назад
thanks for this
@brandonbowman6043
@brandonbowman6043 8 месяцев назад
Thanks for making this easy to understand. I was hoping for a little more "angry Tibs," but I was happy with the result.
@M.W.777
@M.W.777 8 месяцев назад
Thanks Man!!
@medhamid8003
@medhamid8003 8 месяцев назад
Limit 1
@GamesOfficialYouTube
@GamesOfficialYouTube 8 месяцев назад
Great video
@ChristopherMadison
@ChristopherMadison 8 месяцев назад
Aren't nearly all injection vulnerabilities countered by using parameterized queries? Hasn't that been the standard for many years now? I'm curious how often you've successfully employed SQL injection in production environments recently.
@Tib3rius
@Tib3rius 8 месяцев назад
Developers still have to actively use parameterized queries in order for them to work. Just being a standard isn't enough (something something...nobody follows standards). In other cases, even if developers are using parameterized queries in recent code, if the application is using legacy code, SQL injections may still exist there. I found over 100 SQL injections in 2023 alone.
@alexgreen1767
@alexgreen1767 6 месяцев назад
Haha, what a rebuttal. Sudo apt install return burn.
@PhantomWorksStudios
@PhantomWorksStudios 8 месяцев назад
Cant this be negated by using the functions that will escape special chars?? And cant we make our own function if it comes down to it to sterlize " and ' into html hex counterparts from the ascii table?
@Tib3rius
@Tib3rius 8 месяцев назад
Are you talking about ways to mitigate SQL injection itself? If so, prepared statements are the recommended way to go rather than manually escaping / sanitizing characters.
@Bacsbox
@Bacsbox 8 месяцев назад
🎉
@itzpo1ska245
@itzpo1ska245 8 месяцев назад
Im trying, really😂😅
@Rocks_roxks9
@Rocks_roxks9 8 месяцев назад
😂😂😂😂
@dollarboysushil
@dollarboysushil 8 месяцев назад
noice
@Rocks_roxks9
@Rocks_roxks9 8 месяцев назад
Great 🤩🤩
@TCMSecurityAcademy
@TCMSecurityAcademy 8 месяцев назад
Thanks 🤗
@iq_rasco
@iq_rasco 8 месяцев назад
name of labs ?
@proxynet6520
@proxynet6520 8 месяцев назад
Does it work in real world?
@evanottinger1672
@evanottinger1672 8 месяцев назад
TLDR: yeah
@rumanhasan27
@rumanhasan27 8 месяцев назад
1st
Далее
Hacking Websites with SQL Injection - Computerphile
8:59
Master JSON in 8 Minutes
8:56
Просмотров 12 тыс.
i BACKDOORED a Desktop Shortcut (to run malware)
13:58
SQL Injection For Beginners
13:28
Просмотров 1,4 млн
PNPT Exam PASSED 2024! | Lessons Learned
10:30
Просмотров 2,2 тыс.
Bypassing SQL Filters (picoCTF Web Gauntlet)
14:06
Просмотров 43 тыс.
Directory Traversal attacks are scary easy
9:41
Просмотров 20 тыс.
How Hackers Exploit SQL Injections And Use SQLmap
9:29
Exploring the Latest Dark Web Onion Sites
13:15
Просмотров 711 тыс.
Watch me hack a Wordpress website..
28:52
Просмотров 209 тыс.