Loading...

SQL Injection

Temperature: 0 °C

ChungChung
SELECT * FROM users WHERE user='aidan' AND password='' OR ''=''

用 mysql_real_escape_string 去過濾SQL Injection

不用密碼就可以登入了 , 非常簡單的攻擊方式但卻又不得不重視 , 其實這種文字填空遊戲就是

SQL Injection
https://innstory.com/story-SQL_Injection-141

Prev
 JavaScript_檢查_Radio_Button

Next
IE10_在_fckeditor無正常顯示及無法輸入任何字元 

About the Author

Chung

我是chung
網路工作者
主業是網站系統開發建置
副業是做夢,寫故事
作品請參考/teme.biz
做夢請參考/innstory.com
聯絡/chung.teme@gmail.com

#有人用筆寫日記,有人用歲月寫日記,有人用照片寫日記,而我,用innstory寫日記。

Visitor message

Leave some footprints to prove that you visited me

Recommended reading

Author's other related stories

黑客松Hackathon

黑客松Hackathon

這個星期六日要同朋友去參加一個聚會...黑客松Hackathon... 老實說我根本不...

PHP網路爬蟲之抓取meta value

PHP網路爬蟲之抓取meta value

最近在研究著如何抓取網頁中的meta值... php中的getmetatags函式可以...

PHP的日期加減運算

PHP的日期加減運算

在再加上天 = $years = date("Y"); //用...

Please select an option

error

Hi, thank you for your participation, but you cannot vote repeatedly~

Join innstory now and start recording your story.

"Innstory" is a place to store stories. We are committed to becoming a warm platform. Deepening the bonds between people is our direction.
We are convinced that the blockchain between people is not just a cold calculation. Join us now.

Wrong format