SQL Injection Techniques
Overview
What is SQL Injection?
Definition
Why SQL Injection Matters for PJPT
Basic SQL Injection Concepts
1. SQL Injection Testing Methodology
2. Common Injection Points
3. SQL Injection Detection
Union-Based SQL Injection
1. Basic Union Injection
2. MySQL Union Injection
3. PostgreSQL Union Injection
4. MSSQL Union Injection
Error-Based SQL Injection
1. MySQL Error-Based
2. MSSQL Error-Based
3. PostgreSQL Error-Based
Blind SQL Injection
1. Boolean-Based Blind Injection
2. Time-Based Blind Injection
Advanced SQL Injection Techniques
1. Second-Order SQL Injection
2. NoSQL Injection (MongoDB)
3. WAF Bypass Techniques
Automated SQL Injection Tools
1. SQLMap
2. Other Tools
SQL Injection Prevention Bypass
1. Filter Bypass Techniques
2. Magic Hashes
Database-Specific Payloads
1. MySQL Specific
2. PostgreSQL Specific
3. MSSQL Specific
Practical SQL Injection Scenarios
Scenario 1: Login Bypass
Scenario 2: Data Extraction
Scenario 3: File Upload via SQL
PJPT Exam Tips
Essential Payloads to Memorize
SQLMap Essential Commands
Documentation Requirements
Common Exam Scenarios
Last updated