RE: My SQL injection complete tutorial :) 02-17-2011, 04:32 PM
#33
Quote: Well if you mean by that how to upload shell and deface i will not teach you any such blackhat activity sorry for that
and that isn't part of sql ....:/
fistly im not telling you to " teach me " anything , im telling you that your tut is not complet as you are saying , here is what i was talking about :
for exemple the request at the client side :http://www.exemple.com/news.php?id=9 and substring(@@version,1,1)=4
the result at the server side : SELECT * FROM table WHERE champ = '1' or @@version > 4;
here is a small explication of a getting the version of the sql server .
9toes .

![[+]](https://sinister.li/images/modern/collapse_collapsed.png)