Saturday 15 August 2015

Introduction to SQL Injection

A SQL injection attack consists of insertion or "Injection" of a SQL query via the input data from the client to the application. A successful SQL injection exploit can read sensitive data from the database, modify database data (Insert/Update/Delete), execute administration operations on the database (such as shutdown the DBMS), recover the content of a given file present on the DBMS, file system and in some cases issue commands to the operating system. SQL injection attacks are a type of injection attack, in which SQL commands are injected into data-plane input in order to effect the execution of predefined SQL commands.

So now you knew what exactly is SQL Injection, lets go to the next lesson :)
You can also contact me on facebook and facebook page too.

No comments:

Post a Comment