SQL Injection UNION attack: retrieving multiple values in a single column.
Автор: WebSec Bootcamp
Загружено: 2026-01-15
Просмотров: 1
In this video, we walk through PortSwigger SQL Injection Lab #6, focusing on UNION-based SQL injection when the vulnerable query returns only a single displayable column.
You’ll learn how to verify support for UNION-based SQL injection, determine the number of columns returned by a query, identify which columns can accept text data, and extract information from other tables. We also cover why it is sometimes necessary to combine multiple values into a single column and how this technique helps bypass structural limitations in vulnerable SQL queries.
This tutorial is part of the Web Security Bootcamp SQL Injection series and is designed for beginners who want a clear, step-by-step explanation using Burp Suite and real lab scenarios.
Ethics Notice
This video is for educational purposes and authorized security testing only. Do not attempt these techniques on systems without explicit permission.
Lab Link:
PortSwigger – SQL Injection UNION Attacks (Lab #6) - https://portswigger.net/web-security/...
SQL injection cheat sheet - https://portswigger.net/web-security/...
Prerequisites:
Basic understanding of SQL injection and UNION queries is recommended. Links to previous videos in this series are included below.
1. Database Basics for SQL Injection • Introduction to Databases for Ethical Hack...
2. How SQL Queries Work - SQL Injection Basics • How SQL Queries Work - SQL Injection Basic...
3. SQL Injection for Beginners • SQL Injection Explained – Beginner Tutoria...
Доступные форматы для скачивания:
Скачать видео mp4
-
Информация по загрузке: