Penetration Testing mailing list archives

Re: Sql injection in search filed


From: "Morning Wood" <se_cur_ity () hotmail com>
Date: Fri, 5 Dec 2008 11:52:02 -0800


you realy have no clue..

its not a usual sql injection since I dont have
any authentincation method that I should bypass

ahhhemmm... "usual SQL injection" has nothing to do with authentication
sorry, you have given yourself away as to not having a clue as to what
you are doing, what you need to do, or the underlaying proceedures
to conduct your so call test.
Offten many write a question here, and in the asking of it, reveal
the lack of understanding or methodology
( heck I cant spell but I dont write for end users )
( mabey you should not pentest, in the same light as my spelling )

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Security Trends Report from Cenzic
Stay Ahead of the Hacker Curve!
Get the latest Q2 2008 Trends Report now

www.cenzic.com/landing/trends-report
------------------------------------------------------------------------


Current thread: