What is SQL injection? - Web Security Academy

Поділитися
Вставка
  • Опубліковано 22 лип 2024
  • SQL injection is a web security vulnerability that allows an attacker to interfere with the queries that an application makes to its database. Learn more from the Web Security Academy, by PortSwigger.
    Read the full guide: portswigger.net/web-security/...
    SQL injection cheat sheet: portswigger.net/web-security/...
    Register for free with the Web Security Academy to test yourself in our interactive labs: portswigger.net/web-security
  • Наука та технологія

КОМЕНТАРІ • 74

  • @bytesunlimitedsecuritytips9095
    @bytesunlimitedsecuritytips9095 3 роки тому +25

    Very great video! Thank you! My only complaint is that there was a lot of content mentioned here that could have been slowed down and further explained or better analyzed. Other than that, I will have to watch a few more times to fully grasp it.

  • @mrrairai
    @mrrairai Рік тому

    This video is amazing! I'm so happy I found it. It makes things make so much more sense now. Thank you.

  • @trentashore1059
    @trentashore1059 3 роки тому +11

    Your a legend I couldnt understand wtf 1=1 bs was, but the way you broke it up and showed what was being altered or affected made it sooo easy to understand, big thanks to yall

  • @dustinhxc
    @dustinhxc Рік тому

    Thank you for the academy videos!

  • @nandhaKumar-nr8yv
    @nandhaKumar-nr8yv 4 роки тому +18

    Really useful! its ultra level. i am very much attracted to the way of teaching by a wonderful instructor. i looking for more videos. You are doing a great job

  • @headshotcaptain8389
    @headshotcaptain8389 2 роки тому

    Awesome content!

  • @paulojr1384
    @paulojr1384 Рік тому

    awesome content PortSwigger
    tnx

  • @Mohamed-xe7ui
    @Mohamed-xe7ui 2 роки тому

    so great, PLz make more videos for other web academy topics

  • @Umar0x01
    @Umar0x01 3 роки тому +6

    02:43 barely held the laugh, hahaha.

    • @aaronwhite1786
      @aaronwhite1786 5 місяців тому

      I feel like this was actually how they eliminated people at PortSwigger who wanted to host the video. If you couldn't get through that portion of the script without breaking you didn't get the do the video.

  • @dranonymous1547
    @dranonymous1547 4 роки тому +1

    very good

  • @pardeepbhardwaj4251
    @pardeepbhardwaj4251 3 роки тому +3

    Do any practical of sql injection ... create video for practising of sql

  • @mothish.
    @mothish. 3 роки тому +7

    Make more burb suite academy tutorials please

  • @b8akaratn
    @b8akaratn 10 місяців тому

    Thank you

  • @togrow6578
    @togrow6578 3 роки тому

    amazing

  • @sumanaswal6557
    @sumanaswal6557 3 роки тому +5

    thanks for the info
    you look like joey king

  • @kunjalbhudke80
    @kunjalbhudke80 Місяць тому

    Amazing

  • @gonzalo635
    @gonzalo635 3 роки тому

    NetSec is amazing.

  • @PrakashKumar-se1qk
    @PrakashKumar-se1qk 2 роки тому +1

    Prevention part is good and not spoked in many blogs and videos

  • @pascallazarus-zm7bf
    @pascallazarus-zm7bf Місяць тому

    wher are the other topics videos

  • @AnthonyMcqueen1987
    @AnthonyMcqueen1987 3 роки тому +2

    I have been having so much bad-luck searching for XSS i am thinking of focusing on SQL Injection because its only the database we need to worry about and if valid could bring some major $$$.

  • @pnehru8361
    @pnehru8361 3 роки тому +22

    How did you say username: weiner and password: blue cheese with a completely straight face

  • @dhayes5151
    @dhayes5151 Рік тому +2

    Very well put together. Audio could be better quality however. Thanks!

  • @Tekionemission
    @Tekionemission 2 роки тому

    Great video, thanks for posting it. Curious, does anyone know what the + is for, i.e.: '+OR+1=1--

    • @MrHT1993
      @MrHT1993 2 роки тому +2

      The '+' sign represent concatenation in a URL. If you perform the labs, you will understand.

    • @Fahodinho
      @Fahodinho 2 роки тому +2

      + is a space ' ' URL encoded

  • @joojordy5855
    @joojordy5855 Рік тому

    nice

  • @amol5436
    @amol5436 3 роки тому

    @3.10 did they miss a single quote after -- ?

    • @cybercog
      @cybercog Рік тому +1

      no, the single quote is purposefully used to 'break' the SQL formatter and inject your code

  • @XaraTVOfficial
    @XaraTVOfficial Рік тому

    2:43
    I wish you had used a form that has Username and Password instead of Email Address and Password to avoid confusion.

  • @aesthetic_diabetics
    @aesthetic_diabetics 3 роки тому +2

    ya'll really just gonna drop wiener and blue cheese with a straight face... sheeeeeesh

  • @opurbovai3414
    @opurbovai3414 Рік тому

    I WANT TO WORK WITH YOU

  • @pardeepbhardwaj4251
    @pardeepbhardwaj4251 3 роки тому

    👍

  • @Learnsomethingnew-vk4sn
    @Learnsomethingnew-vk4sn Місяць тому

    Can uh help me i lost my money in an online website

  • @stumbras2000
    @stumbras2000 Рік тому

    What should you study in order to understand concepts in this video seems like this is not beginner level...

  • @d.j.s.3180
    @d.j.s.3180 3 роки тому +8

    Девчуля я влюбился

  • @philopateermoheb7162
    @philopateermoheb7162 11 місяців тому

    البت اللي في الفيديو حلوة

  • @mohamedreddad2684
    @mohamedreddad2684 2 роки тому +1

    Well, can anyone mention her name or her instagram 🌝

  • @kiwinesss
    @kiwinesss 3 роки тому +3

    She talks very very fast, so I had to watch it twice. But thank you for the information.

    • @sumanaswal6557
      @sumanaswal6557 3 роки тому

      or you could have slowed it down from the option manu

    • @kiwinesss
      @kiwinesss 3 роки тому +4

      @@sumanaswal6557 na I hate doing that, it makes everyone sound like a robot.

    • @inyodream642
      @inyodream642 3 роки тому

      @@kiwinesss wtf lol

  • @ansh4360
    @ansh4360 3 роки тому

    a

  • @APTsec
    @APTsec 10 місяців тому

    her name please... i feel in love :)

  • @anoopmv7
    @anoopmv7 2 роки тому +2

    Excellent presentation by a beautiful girl..

  • @darrensylvain8868
    @darrensylvain8868 3 роки тому

    Hopefully youtube doesn't demonetize you for suggesting sql injections exist

    • @albertomertinez1710
      @albertomertinez1710 2 роки тому

      Do you understand sql injection ... Lots of videos💋💕💕 seems confusing .

  • @randymoazha4440
    @randymoazha4440 2 роки тому +8

    just want to say, that women is really beautiful.

    • @MrDubs
      @MrDubs 2 роки тому +10

      After watching this video and reading your comment, I commuted to a local sporting goods store and purchased the most powerful pair of binoculars they had available. I then proceeded to traverse the highest mountain in a 200 mile radius of my location five minutes after noon. The day was clear, weather warm, I had visibility for miles in all 360 degrees.
      But to my dismay, I still couldn't see who asked.

    • @ffgrass4132
      @ffgrass4132 2 роки тому +1

      @@MrDubs ahahhaha

  • @atikrangnekar3337
    @atikrangnekar3337 3 роки тому

    Dekh kr bol rhi hai

  • @movietrailerpark
    @movietrailerpark Рік тому +2

    Understoood nothing