August 14 2025 15:41:02
News Photos Forum Search Contact History Linkbox Calendar
 
Forum Threads
Newest Threads
Great live performances
Covers that Rock
AI discussion
new tab page
Good music that peop...
Starship orbital lau...
The MAGA chronicles
Stand up comedy
It's a trap!
The Tech billionaire...
Linkbox
Newest Links
Joe Rogan Doesn't Un... (8)
Laurel and Hardy Bro... (0)
Hulk Hogan: Did Chil... (2)
Ozzy Osbourne, Black... (1)
How Michael Mizrachi... (5)
10 underappreciated ... (1)
Some Football stats (1)
Jimmy Carr - Who Wan... (0)
Handheld laser weldi... (0)
Skal dine billeder b... (3)
Random Photo
Eiðiskollur
Eiðiskollur
Slættaratindur 2. Juni 2007

Member Poll
Should I watch "The Rings of Power"?

Yes

No

LOL

You must login to vote.
Link
 CategoryLink
Rating
funAn interesting SQL injection strategy
-4

Comments
Laluu on March 22 2010 23:04:58
Looking at the + and - columns, I'm guessing that this is hilarious, but we just don't get it. smiley
OKJones on March 22 2010 23:18:44
Or it's not hilarious and we don't get it. smiley

Or the minus is used as a blank vote smiley
Grizlas on March 23 2010 00:34:18
Well, maybe some explanation is in order; an SQL injection is basically someone trying to gain access to a SQL database via user input fields, such as this comment box I'm writing in at the moment. If user input is accepted as is and inserted in the database directly, you might allow a user to write some espace characters like \\\\\\\ wich escape the last character entered, and then eventually being able to execute some command that destroy the database, or make the hacker admin or some such undesirable thing.

In this case, the intention seems to be to hack traffic cameras smiley

(which is not to be taken seriously)
Vuzman on March 23 2010 15:21:52
A semi-colon ends an SQL statement. Now, if I enter something with a semi-colon into, say the shout box, and this is saved straight to the database (which it would be if it wasn't coded very well), then the database would stop saving the shout at the semi-colon, and presume that whatever came next was an actual SQL statement.

If that was, say 'DROP DATABASE gongumenn', and I guessed the database name correct, then the entire site would vanish in a puff of smoke.

'Tablice' is Polish for 'license plate'.
Post Comment
Please Login to Post a Comment.
Login
Username

Password



Forgotten your password?
Request a new one here.
Last Seen Users
OKJones< 5 mins
Torellion00:57:37
Norlander01:49:24
Spiff05:15:15
Grizlas05:19:51
fjallsbak07:34:03
Vuzman08:01:04
Vester18:02:26
Aliennizer 2 weeks
Boddin 5 weeks
Obituaries
You must login to post a message.

Grizlas
14/08/2025 07:48
this one is also pretty slick

Grizlas
07/08/2025 16:52
Agreed

OKJones
07/08/2025 14:24
This banner is the best so far

Grizlas
25/07/2025 07:25
works with no issues in normal version of Firefox. I'm guessing you either did not do CTRL+F5 or are using some adblock plugin.

Norlander
25/07/2025 04:52
Use Firefox and it blocks all sorts of unwanted stuff of course.

Grizlas
24/07/2025 14:57
Using some ad-blocker? Try ctrl+F5

Norlander
24/07/2025 12:25
its mostly just grey for me...

Grizlas
24/07/2025 12:07
This banner is the best we've had so far.

Grizlas
04/07/2025 09:01
RIP Mr. Blonde

Grizlas
03/07/2025 14:36
Could it be they lack those things because you know they are AI generated? smiley