Inj3ction Time
100 points Hard

I stumbled upon this website: http://web.ctflearn.com/web8/ and I think they have the flag in their somewhere. UNION might be a helpful command

Flag
Rating 4.71
5
4
3
2
1

Discussion

Paradoxically it's pretty easy to solve this using sqlmap, picking correct table to inject and that's all. Also, it was fun and some practical lesson abt SQL injection. Very Good Challenge bro!

0

It was a pain for me but did it finally

0

sqlinjection is easy for me :V

0

Give me an answer, friends. I'm tired of trying to find it

0

I'm master in union based sql injection

0

sqlmap is carring

0

as a hint try finding number of columns, try union and then try finding table name, then column name and then find column name from table name

0

try not to use any tool do it manually for better learning

0

Good Challenge i used splmap in Linux

0

Hackbar

0

This was a really good challenge. I have been working on this once for a day and finally cracked it!

0