Whitepaper called Indexed Blind SQL Injection. Time based blind SQL attacks suffer from low bit/request ratios. Each request produces only one valuable bit of information. This paper describes a tweak that produces higher yield at the expense of a longer runtime. Along the way, some issues and notes of applicability are also discussed.
9e7ad9653111f72569433f8ab5f75f03Whitepaper called Blind SQL Injection with Regular Expressions Attack.
30184ec23ce8999f049e15ab4e8242e5Whitepaper called Advanced MySQL Exploitation.
863e901e751d249f12dd9fce9db7c4ebWhitepaper called Tutorial Blind SQL Injection Referensi. Written in Indonesian.
63f2b8f63c3fd977692f13ed307277b6Whitepaper called Oracle Penetration Testing Using the Metasploit Framework.
5f9856825cbdb65feddd17821b6f19f0These are slides from the Practical Padding Oracle Attack presentation given at BlackHat Europe 2010.
bc4c5b4525f49da4823ddbd4f03e8f7dThis is a short tutorial called MySQL Injection - Simple Load File and Into OutFile.
2919fdf1ea63bdd21b064c4495257766This whitepaper is a MySQL SQL injection tutorial.
e29082314c34ad39aacd6ba49afe9045Whitepaper called SQL Injection with File Privileges. Written in German.
1d4738c8c5dfa9ae9fb351222a06a17aWhitepaper called SQL Injection with INFORMATION_SCHEMA. Written in German.
9caa89d8d3cfbe1c01bee97e38b6a118Whitepaper called SQL Injection Filtering. Written in Persian.
826a23d9c3e3a5de99d710cbaf6b1461This is a whitepaper called Easy Method: Blind SQL Injection.
ab2baecb89655ab41b0a80e7f1122322Whitepaper called SQL Injection - Working With MySQL. Written in German.
a22694a079e2fc08b732c29521256a9fWhitepaper called Technique Of Quick Exploitation Of Double Blind SQL Injection.
b87ca31d9ef9618f55bc4f419b4a0a2eWhitepaper called Oracle, Interrupted: Stealing Sessions and Credentials.
8cc0a3881df1850dd64bef7304521d3cWhitepaper called MySQL Injection using darkMySQLi.py.
613df30a0391e7dc42a9eeab39b0cb7eWhitepaper called Hacking Oracle from the Web: Exploiting SQL Injection from Web Applications.
1d29239d6ef13428a56427fe7f56f085Whitepaper called SQL Injection in MS-SQL Server 2005. Written in Spanish.
adadf3429b06139d02f67339b5b3d23bWhitepaper called Exploiting PL/SQL Injection With Only CREATE SESSION Privileges In Oracle 11g.
75a7e84bbe63d77df2de7c8c3987df1aWhitepaper called Hacking Aurora In Oracle 11g.
1e813b206c2dc9804a2af5ad762bb878Whitepaper called Methods Of Quick Exploitation Of Blind SQL Injection.
eccd61b2d2aa22ed0d0eded8726b3b0eBrief whitepaper discussing SQL injection in MySQL. Written in Indonesian.
27b57108848a358f9a3145c6395a539dMS-SQL injection tutorial written in Albanian.
61a3ee12256abcf26131ef627a2c9bd4Whitepaper called Simple SQL Injection. Written in Arabic.
1ab02f2ab606fa47b538f3f7515c8b63Whitepaper called Protection Against SQL Injection. Written in French.
7a8d410705cb795661a68bb207b47260