Тёмный
No video :(

Running an SQL Injection Attack - Computerphile 

Computerphile
Подписаться 2,4 млн
Просмотров 4,5 млн
50% 1

Just how bad is it if your site is vulnerable to an SQL Injection? Dr Mike Pound shows us how they work.
Cookie Stealing: • Cookie Stealing - Comp...
Rob Miles on Game Playing AI: • AI's Game Playing Chal...
Secure Web Browsing: • Secure Web Browsing - ...
Deep Learning: • Deep Learning - Comput...
Tom Scott on SQL Injection: • Hacking Websites with ...
/ computerphile
/ computer_phile
This video was filmed and edited by Sean Riley.
Computer Science at the University of Nottingham: bit.ly/nottscom...
Computerphile is a sister project to Brady Haran's Numberphile. More at www.bradyharan.com

Опубликовано:

 

28 авг 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 2,1 тыс.   
@barkeeper7887
@barkeeper7887 4 года назад
imagine not giving yourself permission to do this on your own website and then you sue yourself, win the lawsuit and then land in prison
@costafinkel
@costafinkel 4 года назад
Well, at least you would be able to win your own money. Thats more than what can be said for some married / divorced folks.
@barkeeper7887
@barkeeper7887 4 года назад
You’re pretty damn right m8
@aviddavid8793
@aviddavid8793 3 года назад
mmmMM the court fee and if you have 1000 iq your lawyar takes about 30%
@heeheehawhawheehee
@heeheehawhawheehee 3 года назад
Then become mr robot
@imho2278
@imho2278 3 года назад
Write it off as a tax deduction.
@martinpet100
@martinpet100 5 лет назад
How to avoid jail: "I`ve given myself the permission"
@elisttm
@elisttm 4 года назад
officer i swear what i did wasnt illegal, i gave myself permission to rob him!
@georgek4416
@georgek4416 4 года назад
@@elisttm ok ur free
@ajinkc1031
@ajinkc1031 3 года назад
XDDD
@revenevan11
@revenevan11 3 года назад
@@elisttm this reads like a privilege escalation exploit lol
@bxnkroll
@bxnkroll 3 года назад
I'm using it
@karldavis7392
@karldavis7392 3 года назад
Decades ago, my brother named his bowling team "select *". This was in the early days of computers, so there wasn't modern security. The bowling alley printed the statistics, and when his team arrived, the employee presented an entire ream of paper and demanded they choose a different name.
@bsvenss2
@bsvenss2 3 года назад
Hehehe... funny. It's like the first Unix systems where you couldn't have a user named "Ed".
@karldavis7392
@karldavis7392 3 года назад
@@bsvenss2 Would it start the editor?
@Deeeve
@Deeeve Год назад
@@karldavis7392 it would lol
@pandasworld4168
@pandasworld4168 5 лет назад
The interviewer thought the text editor was already the hacking part
@davidprice6462
@davidprice6462 4 года назад
I noticed his excitement as well.
@arielfenomenon9233
@arielfenomenon9233 4 года назад
I loved when he nervously asked...so where are u typing that now....as if the whole world was going to blow up >^
@paulaxa1
@paulaxa1 4 года назад
you know he probably knows but he just asks for the content right?
@georgek4416
@georgek4416 4 года назад
He knows
@andrewhennessy620
@andrewhennessy620 4 года назад
at least he's willing to learn
@soweliLuna
@soweliLuna 6 лет назад
the intro had "" and the outro ""... smart... love the attention to detail
@rixogtr
@rixogtr 6 лет назад
what that means ?
@rixogtr
@rixogtr 6 лет назад
oh now that makes sense :D Thanks
@andy.robinson
@andy.robinson 5 лет назад
Being the pedantic developer I am, it's more like XML since HTML doesn't support a tag.
@sirturnables
@sirturnables 5 лет назад
What are u doing here if u don't know that?? lol
@toyotaae86truenogt-apex97
@toyotaae86truenogt-apex97 5 лет назад
@@sirturnables learning.
@clementella
@clementella 6 лет назад
Me: Can I SQL Injection Attack your website Me:Sure
@katherinegonzales4916
@katherinegonzales4916 5 лет назад
That's what he did
@kubadzejkob332
@kubadzejkob332 4 года назад
Imagine he has schizofrenia and fires a lawsuit against himself.
@kubadzejkob332
@kubadzejkob332 4 года назад
Or simply changes his mind.
@Shubhankar31
@Shubhankar31 3 года назад
*Mr. Robot intesifies*
@1kennylo
@1kennylo 3 года назад
😂
@randomuser-vs3oe
@randomuser-vs3oe 5 лет назад
alright youtube, this has been in my recommended for 2 years now, ill watch it, you win.
@universenerdd
@universenerdd 4 года назад
Underrated
@jamesmccabe2286
@jamesmccabe2286 3 года назад
Interesting and informative, but the other guy is almost as basic as "So, what's that in front of you? Is it a computer?"
@user-ys9kg6ye8u
@user-ys9kg6ye8u 3 года назад
lowkey joke
@sachinfulsunge9977
@sachinfulsunge9977 3 года назад
You just wasted 2 years
@user-ys9kg6ye8u
@user-ys9kg6ye8u 2 года назад
@@sachinfulsunge9977 hahaha
@mattshnoop
@mattshnoop 4 года назад
It’s crazy how different my understanding of this video is since the first time I watched it. I watched it back in high school, now I’m halfway through a university degree and have taken web development courses... Funky.
@sadimehti9934
@sadimehti9934 3 года назад
Got Same feelings haha
@BaconTrainss
@BaconTrainss 2 года назад
i feel attacked
@shrimps69
@shrimps69 2 года назад
Just came back after 5 years and I'm second year into IT
@bennyboy968
@bennyboy968 8 лет назад
I love how he explains things non-pretentiously. It seems a lot of people in the computing field really like to think they're better than everyone else.
@AngrySkipperGC
@AngrySkipperGC 6 лет назад
Prince Benny it’s usually not their fault. Having worked with Tech Mobs for the Gold Coast commonwealth games, it’s just how IT dudes are and there is actually a job for people to take what the IT guy says and explains it to the project manager in a way that makes sense.
@morten1
@morten1 5 лет назад
Yeah he's a great teacher too
@americancitizen748
@americancitizen748 5 лет назад
Or with a foreign accent so heavy you can't even tell they are speaking English.
@froyorex4856
@froyorex4856 5 лет назад
Yeah we do 😎
@MrX-nc8cm
@MrX-nc8cm 5 лет назад
Yes we are
@travispetit2410
@travispetit2410 7 лет назад
Imagine naming your child "LIKE'%' UNION SELECT * FROM TABLEBASE" so that when they register its name, you'll get the information on all of the country's database
@ilyasssaadi9594
@ilyasssaadi9594 7 лет назад
Travis Petit probem is, you should rather imagine that names of people would contain else than alphabet (numbers and symbols)
@1wOOrking1
@1wOOrking1 6 лет назад
Why is PHP better then Python please?
@Minecraftsomebody
@Minecraftsomebody 6 лет назад
^^^^^^^^^^
@siisihqdaa
@siisihqdaa 6 лет назад
US government sites use Drupal which uses PHP, so US government actually uses PHP
@ithinkitsaurus
@ithinkitsaurus 6 лет назад
my birth name is actually ':-- DROP DATABASE
@samuelokirby
@samuelokirby 4 года назад
Okay RU-vid, I'll watch it. Recommending it to me for years.
@PaulBunkey
@PaulBunkey Год назад
This is the best explanation of SQL injection video ever. I've recommended it to a non-technical friend and he got the info-sec job.
@tommytomtomtomestini3894
@tommytomtomtomestini3894 8 лет назад
Instructions unclear, NSA is outside my house.
@Drummerdude998
@Drummerdude998 8 лет назад
😂😂😂
@baho644
@baho644 7 лет назад
John Doe FAV hahahahaa
@adamwood1706
@adamwood1706 6 лет назад
😂😂😂
@blackham7
@blackham7 6 лет назад
WTF HOW DID YOU GET NSA OUTSIDE YOUR HOUSE OBVIOUSLY YOU UNDERSTOOD THE INSTRUCTIONS ARE YOU IN PRISON NOW?
@thatonegooze
@thatonegooze 6 лет назад
blackham7 wooosh
@MrDeeb8
@MrDeeb8 7 лет назад
Thank you Peter Parker
@tomascanevaro4292
@tomascanevaro4292 6 лет назад
He's the cool version of Peter Parker, from Spiderman 3
@ashharryman19
@ashharryman19 6 лет назад
Underrated post
@RedditNovelties
@RedditNovelties 6 лет назад
I thought I was the only mofo thinking he looked like Peter Parker from Spider-Man 😂
@warpman345
@warpman345 6 лет назад
Or Frodo from the lordof the rings
@DanIel-fl1vc
@DanIel-fl1vc 6 лет назад
FRODO!
@JDSileo
@JDSileo 3 года назад
This is defense against the dark arts for Computer Science
@armonfrohlich6348
@armonfrohlich6348 5 лет назад
The whole computerphile series is just great. Much that I can only see through here, although I speak only moderately English. Your enthusiasm and your fascination for the topic leaves even a slightly boring topic to last interesting. And that with every clip.
@habiks
@habiks 8 лет назад
..what is illegal? running sql attack or making shitty web apps? Coz my real name is "'; DROP table users; SELECT '"
@atomheartother
@atomheartother 8 лет назад
Both.
@modernkennnern
@modernkennnern 8 лет назад
releasing the information is illegal.
@jan_harald
@jan_harald 8 лет назад
attacking someone without their permission is illegal by law making shitty apps is illegal by community
@Padarom
@Padarom 8 лет назад
Making your application insecure towards attacks and putting your user's sensitive informations at risk of being stolen and released is illegal. @jan harald: What is "illegal by community" supposed to mean?
@harrisonharris6988
@harrisonharris6988 8 лет назад
I wonder if you could change your legal name to that.
@SuperManitu1
@SuperManitu1 8 лет назад
The hacking videos are the best and most interesting for me as comp science student. Keep them coming!
@Ownage4lif31
@Ownage4lif31 8 лет назад
Just wait until you learn MySQL and Javascript. Then you'll be able to learn some very interesting things.
@SuperManitu1
@SuperManitu1 8 лет назад
BlackenGames lol, I can program in over 20 languages, including those two. The point is not to learn them, but to learn against them. Possible weaknesses you have to remember when programming.
@Stigsnake5
@Stigsnake5 8 лет назад
>Javascript When I'm feeling like a masochist perhaps.
@SuperManitu1
@SuperManitu1 8 лет назад
Blaze I really hate Javascript, but you should try typescript. I have made my peace with javascript that way
@Ownage4lif31
@Ownage4lif31 8 лет назад
SuperManitu1 Then you should be able to exploit things easily. I don't know how to program in a lot of languages. Only 2 and I know how to do some nice exploits.
@abandoned7501
@abandoned7501 5 лет назад
Quantity in stock: A D M I N
@Purely_Andy
@Purely_Andy 3 года назад
Product name: G E O R G E
@skyone9237
@skyone9237 2 года назад
I never understood SQL injection untill I watched this video...bow to you..🙇
@zanzlanz
@zanzlanz 8 лет назад
This is a very well done demonstration! I liked being able to see how it worked in an actual example. Someone ran one of those scripts on my site to try to hack my database a couple years ago. The only thing it helped me realize is that I needed stronger spam protection, because it left thousands of failed injection comments on one of my pages, haha.
@ZweiSpeedruns
@ZweiSpeedruns 8 лет назад
That sounds more like xss than sql injection
@jarmo_kiiski
@jarmo_kiiski 8 лет назад
You need some of that htmlspecialchars(), a stripslashes() and str_replace()
@empiter3359
@empiter3359 8 лет назад
htmlspecialchars() for the output as xss protection. in case of php & mysql it would be mysql_real_escape_string() against sql injections in quoted values. but people shouldn't think they would be save when just using these functions. someone can do an sql injection without using any control chars at all if you didn't put quotes around the variable in the query: for example "SELECT * FROM posts WHERE postId = $postId"... the value of $postId could just be "1 UNION (SELECT 1, 2, 3)-- " without any quotes. in this case you would be save with casting the variable to an int, but best practice in general is using prepared statements.
@empiter3359
@empiter3359 8 лет назад
meh, forgot about the ; in the example injection - but you get the point... use prepared statements / stored procedures :-)
@AchrafAlmouloudi
@AchrafAlmouloudi 8 лет назад
No, it is a SQL injection attempt, not an XSS attack, the hacker was using the comments form as a gateway to the database, just like Michael in the video used the search box to send malicious queries. The difference is a comments form will store those requests as comments while a search box doesn't store search queries.
@AriannaEuryaleMusic
@AriannaEuryaleMusic 7 лет назад
So the best defense is to disable the "Search" box
@Ioganstone
@Ioganstone 6 лет назад
Only criminals need search boxes.
@saeedbaig4249
@saeedbaig4249 5 лет назад
The best defence is to take down your own website, destroy your computer, isolate yourself from technology & civilisation and go live in the woods.
@ShokoCC
@ShokoCC 5 лет назад
No client can't hack you if you have no clients #LifeHack @@saeedbaig4249
@adamatlas1113
@adamatlas1113 5 лет назад
Nah, silly lol Just ban "UNION" from your search box...
@chadtowers8556
@chadtowers8556 5 лет назад
From memory it's possible to use your browser search bar to run an SQL query
@BladeGamester
@BladeGamester 5 лет назад
OKAY RU-vid I FINALLY WATCHED IT! This video has been in my recommended for years now.
@darshandani1
@darshandani1 3 года назад
I learnt more from this video than my entire DBMS coursework.
@TheMrYakobo
@TheMrYakobo 7 лет назад
I thought I loved Scott. Then I discovered this man, the man that doesn't pronounce SQL like Sequel. He's brilliant
@denvernaicker8250
@denvernaicker8250 5 лет назад
oh snap i've been pronouncing it incorrectly
@jackrogers1115
@jackrogers1115 5 лет назад
Us in the UK dont tend to prononce it sequel...
@13am22
@13am22 5 лет назад
@@jackrogers1115 Well isn't Tom Scott from the UK, though? You see, he's the one in question who tends to do so.
@jackrogers1115
@jackrogers1115 5 лет назад
@@13am22 what
@jackrogers1115
@jackrogers1115 5 лет назад
In the uk, we tend to say s q l, not sequel. Thats what i'm say. And yes hes from the uk
@antiHUMANDesigns
@antiHUMANDesigns 8 лет назад
I made a website many years ago, and obviously made sure SQL injection wasn't possible, and I also logged stuff, and I did see some people trying to do SQL injection on my website.
@211212112
@211212112 4 года назад
peas give me website address and permission to practice pen test
@antiHUMANDesigns
@antiHUMANDesigns 4 года назад
@@211212112 This was well over 10 years ago. That website no longer exists.
@jmvr
@jmvr 4 года назад
anti/HUMAN Designs :(
@Towzlie
@Towzlie 5 лет назад
That's why you use PDO and bind requests. Also don't forget to sanitize user input before the query
@Nalopotato
@Nalopotato 6 лет назад
One of my accomplishments at my first job was rewriting all of our (then) inline SQL queries and stored procs in C# to implement SQL injection prevention! It was a lot of fun :) And very rewarding when I was done
@PashaSiraja
@PashaSiraja 8 лет назад
A 2rd degree attack would be me naming my children ";--"
@PashaSiraja
@PashaSiraja 8 лет назад
LOL I miss-typed 2 instead of 3 hahaha
@ihrbekommtmeinenrichtigennamen
Bobby Tables would be proud of you!
@GlassCurtain
@GlassCurtain 8 лет назад
Little Bobby Tables!! :)
@CuZoSky
@CuZoSky 8 лет назад
2rd ? "secord" ? :))
@ihrbekommtmeinenrichtigennamen
CuZoSky twoerd
@Wolle704
@Wolle704 7 лет назад
I always struggled with some parts of this. But I finally understand how it works so I'd have to say this is probably the best explaination of SQL injections I've ever come across. Thanks
@raiker02
@raiker02 3 года назад
alert("hello world"); -I'm in.
@dhananjaydj543
@dhananjaydj543 3 года назад
I'm only halfway through the video, Its easy to understand what he is trying to say due to those practical examples in a simplified way. Its half a decade old and still best videos to watch out for on this topic.
@Lmaoboat
@Lmaoboat 8 лет назад
This guy is by far the best on this channel. Especially with his practical examples!
@Rippertear
@Rippertear 8 лет назад
you gave yourself permission? is that in writing? is it notarized? who knows, maybe you'll change your mind and press charges on yourself!
@feliper.150
@feliper.150 4 года назад
Alternative title: Tyrell Wellick runs an SQL Injection attack.
@PongiPlaysGames
@PongiPlaysGames 3 года назад
XD
@eminem2
@eminem2 5 лет назад
Imagine explaining that to inmates in jail: "I... I... put the wrong text in a database on purpose". Inmates be like: "Somebody get me a restriction order, you ain't coming 5 cells away from me, what is wrong with you!"
@Jibblets
@Jibblets 3 года назад
Funny haha
@Adam92326
@Adam92326 8 лет назад
That's why I use prepared statements everywhere, even when I get something from my own database, and do a query on something else.
@chasebrower7816
@chasebrower7816 8 лет назад
You don't go to jail if you don't get caught.
@chasebrower7816
@chasebrower7816 8 лет назад
Iceborn Gauntlet probably you.
@36nuts18
@36nuts18 8 лет назад
Chase Brower no, not just me. EVERYONE.
@rasheedhadi2714
@rasheedhadi2714 6 лет назад
Frank zapper
@malharjajoo7393
@malharjajoo7393 6 лет назад
you don't go to jail if you never try to learn this stuff. * makes the meme face *.
@americancitizen748
@americancitizen748 5 лет назад
That's what Hillary told me.
@GetCTOwned
@GetCTOwned 4 года назад
Reminds me of the days when I had to 'recover' lost wordpress credentials for customers. Luckily web security has gotten much better but this is still a very valid video.
@MrSkinkarde
@MrSkinkarde 2 года назад
Wordpress has never been secure in any way And it should never be used commercially
@tomchapman128
@tomchapman128 4 года назад
"Ah, I'm sure my website will be fine." *checks it* "ohno"
@emberdrops3892
@emberdrops3892 4 года назад
actually underrated 😂
@mariadb4627
@mariadb4627 4 года назад
Oof 😅
@Suicidekings_
@Suicidekings_ 4 года назад
SurprisedPikachu.jpg
@KacangNgoding
@KacangNgoding 3 года назад
"anyway..."
@deejaykaye
@deejaykaye 7 лет назад
This guy is quality, I could listen to him all day
@baldeepbirak
@baldeepbirak 6 лет назад
Useful to see as this does work on my website.
@Rosson311
@Rosson311 6 лет назад
Baldeep Birak so what website you run.? Asking for a friend lol
@TeeKayMTrove
@TeeKayMTrove 6 лет назад
Cheeky.
@gavbag1234
@gavbag1234 6 лет назад
Hey now, let's none of us go Ball Deep on Baldeep.
@IAmESG
@IAmESG 5 лет назад
mind if I take a look on your website?
@cosminxxx5287
@cosminxxx5287 5 лет назад
@@Rosson311 but even as a joke you shouldnt try it cause when police will be at your door ,it wont hold honestly. like, i go with a knife at your house and you call police and i tell them 'oh ,its was just a joke,for fun,didn't mean to do anything'. not so sure someone will bite that even if it would be truth.so yea, don't even think to try just to see if it works.you would be the dumbest hacker in that jail yard.
@club6525
@club6525 2 года назад
Just to clarify: It's not a malformed query. You're actually getting outside of the query that the website wants you to. Basically, you get to create your own little query which is pretty terrible cause then some dude can query for everyone's passwords.
@_martinedwards
@_martinedwards 5 лет назад
That nearly finished Rubik's cube on his desk is playing havoc with my OCD
@Sharpless2
@Sharpless2 3 года назад
here to remind you of that unfinished cube lol
@_martinedwards
@_martinedwards 3 года назад
😭
@VexillariusMusicEDM
@VexillariusMusicEDM 8 лет назад
Dude this guy is crazy I love watching vids with this dude
@DrRChandra
@DrRChandra 8 лет назад
user name consisting of SQL? must be Little Bobby Tables
@tiggerbiggo
@tiggerbiggo 8 лет назад
rchandraonline I know of that site, but this is a full in depth explanation as to exactly how it works.
@fluck6159
@fluck6159 8 лет назад
I will name my son as Little Bobby Tables
@jcfawerd
@jcfawerd 7 лет назад
I suddenly remember a man named "null"
@GioGziro95
@GioGziro95 7 лет назад
Where's the "Students" table?
@CreamyRootBeer
@CreamyRootBeer 7 лет назад
Oh, I love that comic. "Oh little Bobby Tables, we call him."
@bobbyboygaming2157
@bobbyboygaming2157 Год назад
this explanation is so far superior to the other guy's coffeeshop explanation. The visualization is very important.
@jbyagenrok
@jbyagenrok Год назад
Felt like I was listening to an SQL injection tutorial as presented by James Acaster. And loved every second of it of course
@Werdna12345
@Werdna12345 8 лет назад
Would love to see a video on second order SQL injections!
@nicktech2152
@nicktech2152 5 лет назад
WPF in C# 2010 Book on the background - Busted!
@kimlau4285
@kimlau4285 4 года назад
Me: Going through lecture slides to past my sql exam. You: Playing black magic with sql query.
@joylox
@joylox 2 года назад
That program you had was literally something I had to make for a class in web development. I think it was the PHP class. Thankfully, we also have a mandatory information security course I'm in now and learning about these. We did talk about making sure quotes don't get in, which is important.
@harrygreene6746
@harrygreene6746 8 лет назад
Would love to see more videos like this about possible software attacks. This was eye-opening
@B20C0
@B20C0 7 лет назад
The most scary fact about this is that it's still an issue in 2016. I did this kind of stuff 15 years ago and back then I already thought "this is way too easy". The bad news was that there were no such things as prepared statements, so you really had to do all the work with escaping.
@SpencerDavis2000
@SpencerDavis2000 5 лет назад
this was one of the most interesting videos I have seen in a while. gotta watch more now
@meptalon
@meptalon 5 лет назад
Subcription at first video :) This is the best explanation of an SQL injection that I've ever heard. Pretty sure that even non-coders would understand
@DLiberator78
@DLiberator78 8 лет назад
A great demonstration on SQL vulnerabilities. I am in the process of creating a MySQL database with a PHP frontend and this has given me some ideas on how to protect it from SQL injections. The ability for a hacker to run a Javascript code is also a worry. Thanks for posting such a detailed video explain the exploits and what to look out for.
@RealCadde
@RealCadde 8 лет назад
There's good articles online for the steps you should take to secure your website. And then there's frameworks that does all the hard work for you.
@DLiberator78
@DLiberator78 8 лет назад
+Cadde Thanks ever so much for your help, I shall do some research online. It is a worry when designing a database regarding vulnerabilities.
@RealCadde
@RealCadde 8 лет назад
DLiberator78 If you still decide to develop from scratch, you should consider having someone attack your site before you go live. There's whitehat organizations that will do that for a small sum. Some people might even do it for free because they see it as a hobby. It all depends on how important you consider your site to be. Even then, there's always going to be someone out there who finds and abuses a flaw somewhere in some way. Security even goes beyond the website sometimes. If the site cannot be breached they will find someone with a high clearance on the site to "hack" instead. Be it through social engineering or breaching his workstation etc. Maybe not something you want to worry about but at least consider the possibility that sites can be breached in many different ways. There's examples of sites that have been breached because some high profile user used the same e-mail and password on many different sites. Even if YOU don't do those things, others certainly will.
@DLiberator78
@DLiberator78 8 лет назад
Thank you so much for such a detailed answer this has given me a lot of security procedures to consider. I shall heed your warning when designing my database. Thanks again.
@thepedrorriva
@thepedrorriva 8 лет назад
Just use the php function "mysqli_real_escape_string()" (I don't remeber if it's actually exactly like that) and if you want even more security, just pass al the tables you'll possibly need from mysql to a javascript 2d array after user access the page. Then there is no way he is able to get more information.
@vinkuu
@vinkuu 8 лет назад
The password for user Joe is 'administrator'. ./john /vagrant/x --show ?:administrator 1 password hash cracked, 0 left
@CJBurkey
@CJBurkey 8 лет назад
What was the salt?
@vinkuu
@vinkuu 8 лет назад
The whole hash is $1$V32.4G/.$0PKnjhXYUmYLJZZ8vEt/b/ so i guess the salt is 'V32.4G/.'. I'm not familiar with the format of md5, but in bcrypt that would be the salt.
@CJBurkey
@CJBurkey 8 лет назад
vinkuu So, essentially, if you get into the database, you can use the salt that is with the password to crack it by brute forcing it?
@vinkuu
@vinkuu 8 лет назад
Yes correct. And that is the reason md5 is considered a bad choice of hashing algorithms to use for hashing passwords. It's very fast to brute force md5 hashes compared to eg. bcrypt with a cost setting of 15. It directly equates to cost (€) of the brute force cracking setup.
@ZombieCakeHD
@ZombieCakeHD 8 лет назад
Or just type in administrator??????
@chaozkreator
@chaozkreator 5 лет назад
I like how the interviewer initially couldn't get around the fact that all the instructor was doing is just writing out the "code" in a text editor.
@an3ssh
@an3ssh 5 лет назад
Thank you RU-vid for suggesting me this video after my DBMS exam .....wouldve done great if i had watched this video
@hrnekbezucha
@hrnekbezucha 8 лет назад
Now this is art. I can totally imagine people do stuff like this cause it's fun. Like chess.
@orlagskapten9829
@orlagskapten9829 4 года назад
Juan2003gtr why are you calling him a noob?
@stylz1
@stylz1 4 года назад
Like gambling.
@leonhill8447
@leonhill8447 3 года назад
As a SQL beginner this was super helpful, thank you.
@gonzalo4658
@gonzalo4658 5 лет назад
the first person to put the word 'an' before consonants like 's' that start with a vowel. Thank you. An 'r', people. Say AN 's', AN 'h', AN 's', etc. I know I'm not the only one.
@chrisalister2297
@chrisalister2297 6 лет назад
Amazing how this was posted in 2016 and these were concerns I had to address in 1996. Filtering, stored procedures and permissions are your friend.
@epicswirl
@epicswirl 4 года назад
“Where are you typing this?” Lol bro it’s just sublime 😂
@ankithabhayan324
@ankithabhayan324 4 года назад
Yeaa haha I don't have the paid version though😭
@RohithRPai
@RohithRPai 3 года назад
@@ankithabhayan324 you can use VScode. It's better than Sublime text in my opinion.
@epicswirl
@epicswirl 3 года назад
Rohith R Pai I like atom I don’t pay for sublime either
@ankithabhayan324
@ankithabhayan324 3 года назад
@@RohithRPai but isn't vs code a heavy ide? My pc is potato with 1gb ram.
@RohithRPai
@RohithRPai 3 года назад
@@ankithabhayan324 oh man... With 1gb RAM I would go with vim or emac. But VScode (not Visual Studio IDE) is a not an IDE. It's a general purpose text editor that can act like an IDE with right extensions. I switched from Sublime text to VScode about 2 years ago. Haven't looked back since.
@Rougeman0
@Rougeman0 8 лет назад
I really love how Mike stepped up his game lately. Easily one of my regulars on Computerphile, keep it up!
@BijanIzadi
@BijanIzadi 3 года назад
This should be basic education at this point, I’m so pissed nobody was learning or teaching this in school
@Julian.Gilexs
@Julian.Gilexs 3 года назад
Depends on the school were you at.
@joecurran2811
@joecurran2811 3 года назад
Totally agree.
@VotEtoPizdets
@VotEtoPizdets 2 года назад
This is actually an incredibly well explained bit of content. I know that its probably not going to make sense to 80% of people but if you know what is going on and youre just a bit new to all of this then it explains things in such a way that connects the dots for you. I wish i would have had this video at my fingertips 20 years ago lol.
@SpencerFcp
@SpencerFcp 6 лет назад
I used to work for a consulting company and you'd be surprised how shitty the majority of companies are at protecting your data. Mostly smaller businesses, but even some of the large ones lack basic security measures. It was pretty eye opening.
@combatking0
@combatking0 8 лет назад
When putting together a SQL driven site, I put all text input variables through a function which filters out all potentially hostile characters and replaces them with something which cannot be interpreted as SQL code. It could also be possible to get the PHP to check for multiple attempts to submit SQL injections. One or two could be accidental, but more than that could be viewed as an attack, so I could make the PHP block all traffic from that IP for an hour, or return some decoy tables, or even a fake page warning the hacker that a virus is being uploaded to their computer, complete with a progress bar :)
@13am22
@13am22 5 лет назад
If you're still learning PHP, SQL and all that stuff and didn't already - please have a read on PDO and prepared statements. It's the "new" easy way of dealing with everything. :)
@elliotc4268
@elliotc4268 2 года назад
make it return what they would want to see, but the wrong information. a fake error or a fake full table
@madnessguy010101
@madnessguy010101 6 лет назад
I had known and understood what sql injection was previously, but I had never heard of blind sql attacks and using database-specific syntax in order to obtain information on the underlying database. Very informative video
@KiraPlaysGuitar
@KiraPlaysGuitar 2 года назад
"It should have used that single quote as a character, not as a control structure" damn that is really interesting and cool... Please (universe) give me the determination to get through HTML/CSS/JS/SQL... It just seems so neat and handy...
@dustin_echoes
@dustin_echoes 8 лет назад
Thanks! This video explains it better than my database subject lectures.
@colee6133
@colee6133 5 лет назад
the illegal part of this is having an unsolved cube on your desk with super easy PLL case :c
@Rhyden
@Rhyden 6 лет назад
I learned more about databases in this one video than I did during a semester long class in Uni about databases.
@Codetutor-DemystifyCoding
@Codetutor-DemystifyCoding 2 года назад
Just perfect!!! Rather than talking about how it's done, show how it's done.
@JonSmith-cx7gr
@JonSmith-cx7gr 5 лет назад
What was the price for the 7mm nails? I'm re-upholstering a chair currently and think 8mm would be too long. Thanks.
@FazleyRabbibd
@FazleyRabbibd Год назад
It’s 2022 and still a valid issue!!!
@jackcarter1897
@jackcarter1897 3 года назад
Decrypted the admin password just for fun XD That admin hash was: ‘administrator’. Just in case anyone was curious lol.
@satviknema8629
@satviknema8629 5 лет назад
"Iam doing this on my own website. So Iam giving myself premission". LMAFAOO
@stylz1
@stylz1 4 года назад
per
@Sharpless2
@Sharpless2 3 года назад
yeah it may seem like a joke but in reality breaking into your own house can land you in jail.
@satviknema8629
@satviknema8629 3 года назад
@@Sharpless2 wait wtf
@raf.nogueira
@raf.nogueira 7 лет назад
This why we should use PreparedStatements in PHP , JSP, Servlets, C# and ASP.. :)
@13am22
@13am22 5 лет назад
That wasn't alway a thing before sadly. As of today, it's the only way to go basically. :)
@philadams9254
@philadams9254 8 лет назад
"; DROP ALL DATABASES; --
@josephthapa5848
@josephthapa5848 6 лет назад
Thats bad
@cristalmen9104
@cristalmen9104 6 лет назад
:D
@user-bp5fk9ln2h
@user-bp5fk9ln2h 5 лет назад
OMG...
@chrisellis5860
@chrisellis5860 5 лет назад
Only if the account has been granted DROP permissions. For a site that just shows records it should only be created and given SELECT permission.
@fireboltofdeath
@fireboltofdeath 5 лет назад
+Chris Ellis Do you really think someone who isn't going to escape user input, would think about that? Because I honestly don't.
@oussamaxd197
@oussamaxd197 2 года назад
What i like about hacking videos is they show you how it works so you can find a way to avoid it.
@michellefishhead
@michellefishhead 2 года назад
yeah, I hate it when I accidentally hack a database.
@dudlus2757
@dudlus2757 4 года назад
This video pops up on my RU-vid feed every week even thought I've already watched it 3 times, and I am still watching it again.
@mericet39
@mericet39 5 лет назад
Interesting and informative, but the other guy is almost as basic as "So, what's that in front of you? Is it a computer?"
@costafinkel
@costafinkel 4 года назад
Whats that, a text editor? And the letters that you type on this key device appears on it ? Fantastic !
@mbarekzacri4973
@mbarekzacri4973 3 года назад
Maybe the best thing to do is to ignore the comment. Though, more better way of dealing with it is , maybe, to thank that "basic" guy for the work he is doing.
@R0bot4
@R0bot4 3 года назад
@@mbarekzacri4973 he could do better thats what the comments wants to say
@almostcertainlynotapotato6528
@almostcertainlynotapotato6528 3 года назад
Are you talking about Tom Scott?
@alokbaluni8760
@alokbaluni8760 3 года назад
He asked it for the audience. He run this channel. Obviously he would know about Sublime text.
@Johan-st4rv
@Johan-st4rv 8 лет назад
I got 15 years for sql injection one time absolute mad man
@zyxcalxyz2007
@zyxcalxyz2007 6 лет назад
but did you though?
@akaashik
@akaashik 6 лет назад
I got executed for MITM attack.
@JaaoPonte
@JaaoPonte 5 лет назад
I got a two days torture for changing the input type from password to text
@sieghart0515
@sieghart0515 5 лет назад
I got sentenced lethal injection for typing on console
@igniscorvata9562
@igniscorvata9562 5 лет назад
@@sieghart0515 I did a year and a half for getting on my teachers computer, taking a screenshot of his desktop, saving that screenshot as a jpeg then making that his desktop background... then removing his shortcuts and lowering his task bar.. so no matter how much he clicked, he got no where.
@PaulStewartArck
@PaulStewartArck 4 года назад
I never sanitize form input. Livin' on the edge!!!
@PlayGrum
@PlayGrum 5 лет назад
just started doing a Cyber Security Course at college, enjoying your videos to supplement my learning :)
@srider33
@srider33 4 года назад
15:15 "Thank you for saving us some time." - Malicious people.
@MrRolnicek
@MrRolnicek 8 лет назад
Can you put this website somewhere out there on the internet? Because I'm SURE a lot of people watching this would love to try their own injections and have fun with it.
@bglobbi
@bglobbi 8 лет назад
That would be pointless, first injection could be command to drop all tables and there would be nothing in the database and no fun for others. You can download XAMPP and create a simple database like this and do all queries like that inside web interface for PHPmyadmin on your own computer without even creating a separate website.
@sei-core
@sei-core 8 лет назад
well if he would put it up somewhere, it could be taken down pretty easily in seconds: someone drops all tables, and voila, you can't even do anything anymore. This is like putting a bottle out on the street for everyone to break, if someone breaks it at first, then noone else can do it anymore because it's already broken.
@MrRolnicek
@MrRolnicek 8 лет назад
Yeah I realized very soon after posting that comment that it would have to be "refreshed" very often or just done so that it doesn't break for everyone and basically would be a pain in the ass to do.
@sei-core
@sei-core 8 лет назад
Actually you can write your own script to do it. It's really just basic coding.
@Schindlabua
@Schindlabua 8 лет назад
Check out hackthissite.org, they have some easy and some hard websites for you to hack into!
@matlilly8795
@matlilly8795 6 лет назад
At one point, I created and maintained a server. You have to know how to crack your own system to know how to defend it. I launched campaigns against my server on a somewhat regular basis. Great explanation.
@n1c98
@n1c98 3 года назад
I love this channel, some videos I understand, and some I have no ******* idea what they are talking about. These guys are super epic and advanced. I'm an uber beginner LOL. Been learning the basics and enjoying it. Thank you for such incredible material, I really appreciate you guys, and of course, RU-vid too is just simply awesome
@TheLollercaster
@TheLollercaster 5 лет назад
5:42 - this was the first time I dropped my jaw
@PanetMaster
@PanetMaster 7 лет назад
I'm so glad I stumbled upon this channel. So interesting. Excellent and informative use of CGI woven into the videos as well. Thanks Computerphile!!
@trivialtrav
@trivialtrav 3 года назад
A script kiddy from the year 2000 would love this video.
@thetooginator153
@thetooginator153 2 года назад
Ha! I encrypted user names and passwords back in 1992! The encryption wasn’t very sophisticated, but the bad guys didn’t know that. I feel so validated!
@salatwurzel-4388
@salatwurzel-4388 4 года назад
Hint: Just use incognito mode in your browser to never get caught. You're incognito when you use it so they will never find out who you are. Easy solution.
@romankrivocheev4434
@romankrivocheev4434 4 года назад
Ur joking, right? :)
@salatwurzel-4388
@salatwurzel-4388 4 года назад
@@romankrivocheev4434 Yes. But i saw some people in the wild who actually think that way :D
@Proletrolliat
@Proletrolliat 4 года назад
Or just use Tor
@cameronjoseph5994
@cameronjoseph5994 4 года назад
@@Proletrolliat `would that work tho?
@TahsinAhmed-yj9ns
@TahsinAhmed-yj9ns 4 года назад
On a serious note does using free vpn work?
@abbasssharara2393
@abbasssharara2393 5 лет назад
this is weak attack it can simply prevented by escaping chars or by creating sql stored procedures if you know how to use them.
@Jaydon05
@Jaydon05 5 лет назад
Abbass: you'r right! That cross my mind too! :)
@keeperkai999
@keeperkai999 5 лет назад
that's why you use frameworks that do sql injection prevention for you, or simply just escape the input you throw to your database.
@benjaminanderson1014
@benjaminanderson1014 4 года назад
Scary stuff! I'm certainly never shopping at localhost/shop/index.php again!
Далее
LogJam Attack - Computerphile
18:47
Просмотров 180 тыс.
Running a Buffer Overflow Attack - Computerphile
17:30
СЕРЕГА ПИРАТ - TEAM SPIRIT
02:37
Просмотров 351 тыс.
Hacking Websites with SQL Injection - Computerphile
8:59
Elliptic Curve Back Door - Computerphile
12:24
Просмотров 511 тыс.
Cookie Stealing - Computerphile
16:12
Просмотров 1,1 млн
God-Tier Developer Roadmap
16:42
Просмотров 7 млн
I've been using Redis wrong this whole time...
20:53
Просмотров 354 тыс.
Breaking RSA - Computerphile
14:50
Просмотров 358 тыс.
Hacking Out of a Network - Computerphile
25:52
Просмотров 240 тыс.
The Tragedy of systemd
47:18
Просмотров 1,1 млн
How to Choose a Password - Computerphile
11:33
Просмотров 1,2 млн
Has Generative AI Already Peaked? - Computerphile
12:48