In this video, we cover Lab #5 in the SQL injection track of the Web Security Academy. This lab contains a SQL injection vulnerability in the product category field. To solve the lab, we perform a UNION based SQL injection attack that retrieves the usernames and passwords of the users of the application.
▬ ✨ Support Me ✨ ▬▬▬▬▬▬▬▬▬▬
Buy my course: https://academy.ranakhalil.com/p/web-...
▬ Contents of this video ▬▬▬▬▬▬▬▬▬▬
00:00 - Introduction
01:46 - Understand the exercise and make notes about what is required to solve it
03:17 - Exploit the lab manually
10:54 - Script the exploit
24:30 - Summary
24:46 - Thank You
▬ Links ▬▬▬▬▬▬▬▬▬▬
SQL injection Lab #4 video (previous video): • Video
SQL Injection | Complete Guide (theory video): • SQL Injection | Complete Guide
Python script: https://github.com/rkhal101/Web-Secur...
Notes.txt document: https://github.com/rkhal101/Web-Secur...
Web Security Academy Video Series Schedule: https://docs.google.com/spreadsheets/...
Web Security Academy: https://portswigger.net/web-security
Rana's Twitter account: / rana__khalil