Error Based

In an Error Based SQLi you are trying to get the SQL database to return an error and then have the web application display the error to you. Next the hacker attempts to exfil data within the error message. An attacker would try to run an operation that they expect to fail on a dataset to get the error message to display the contents of the dataset in the error message.

More coming soon!

Last updated