Home > Hacking, Mysql injection, PHP, Security > MySQL injection attacks

MySQL injection attacks

August 26th, 2008

Hi guys , let me complete the title : MySQL injection attack and comparison ways to protection PHP code against injection , each time somebody hears about Persian tutorial journal which is related to kind of Injection attacks such as MySQL , Mssql  and … his brain goes to rubbish one and thinks with himself it’s s*ucks like every time …. I ( we ) ‘ve tried to make it so much clear plus more intelligible and  realizable of observation by increasing ( in another word collecting ) options I explain at following :

  • Vulnerable PHP code : the PHP code collects an injection bug .
  • URL : The URL which gives query to script and shows the bug .
  • SQL query : Full SQL query that consists of URL and dynamic query in PHP page .
  • Result : A distinct result of given query ( queries ) by URL .
  • Config : The coded config file that makes connection of SQL and PHP code(s) .

I think you understood my meaning from last sentence ( config ) , experience is the main reason of making clear the injection attacks , You shall install MySQL and some setups for preparation that have been written in journal ( creation a database , a table(s) and insertion of data into them ) .

Then edit the configuration file existing in RAR file , and you will be able to follow the article phases step by step to step . the last part is about Blind SQL Injection but without exploitation . We could simply write more than what is written now but it’s enough for here maybe we write next part in future . one thing else , this is not all about the injection attacks also the ways of patching has been stuck ( at each phase ) .

Loading journal here , do not forget comment , be safe .

Hacking, Mysql injection, PHP, Security , , , ,

  1. August 26th, 2008 at 02:47 | #1

    Hehehe :D Wo0o0ow ;) Its useful !
    thanks for journal ;)

  2. Null
    August 26th, 2008 at 03:45 | #2

    its great but it can be improved for further stuff

  3. August 26th, 2008 at 04:31 | #3

    hi my friend
    thank you :D lol

  4. August 26th, 2008 at 06:46 | #4

    Very GOOOOOOOOOOOD
    From Iranian
    http://www.blogger.dk :D

  5. Spyen3t
    August 26th, 2008 at 07:54 | #5

    Heh , Nice Journal , Yashar Is The Best ! :X

  6. sCORPINo
    August 26th, 2008 at 10:48 | #6

    association with you in researching, have a great sweet taste bro.
    as yesterday and past researching ,and these days and this researching ,i hope tomorrow and future researches.
    good die young..
    see you soon ma l33t..

  7. admin
    August 26th, 2008 at 10:51 | #7

    Yo amir :X , you know that you are causing all of thiese mate I love you .

  8. August 27th, 2008 at 04:21 | #8

    kiram tooye shoma ke khare farsio gaeedid:X:X:X:X

  9. August 27th, 2008 at 08:47 | #9

    Nice tutorial for all ppz ..specialy for newbie..thanks bro !! for sharing ..! ;)

  10. August 27th, 2008 at 09:19 | #10

    Yes it does come up.

  11. August 27th, 2008 at 10:04 | #11

    Awesome yashi morghi love you sexy :D

  12. admin
    August 27th, 2008 at 10:16 | #12

    Don’t call me yashi , it walks on my nerv :X

  13. August 27th, 2008 at 10:25 | #13

    hey buddy i call you some thing i like that, so if you have problem with this i ll describe for all cheken story :D

  14. August 27th, 2008 at 20:18 | #14

    that was great . really ;)
    hmm , bypassing that functions was a good idea that i donot think any way exist for done it!
    thanx sc0rpion.;)

  1. November 18th, 2008 at 13:05 | #1