SQL injection attack, querying the database type and version on Oracle | Portswiggers
Автор: 0xWalid
Загружено: 2025-12-28
Просмотров: 9
Today’s topic is SQL Injection: querying the database type and version on Oracle, based on a lab from PortSwigger Web Security Academy.
In this video, I demonstrate how an SQL injection vulnerability can be used to identify the backend database type and extract its version information when the application is running on Oracle Database. Understanding how different databases expose version details is an important skill for both exploitation and accurate vulnerability reporting.
What this video covers:
Identifying Oracle as the backend database
Using SQL injection to query database version information
Oracle-specific SQL syntax used during exploitation
Why database fingerprinting matters in real-world testing
This walkthrough is intended for educational purposes only and is part of learning web application security, penetration testing, and bug bounty hunting fundamentals.
sql injection
oracle sql injection
querying database version
portswigger sql injection
web security academy
database fingerprinting
bug bounty
penetration testing
web application security
ethical hacking
oracle database
sql injection tutorial
Доступные форматы для скачивания:
Скачать видео mp4
-
Информация по загрузке: