attack-vector

1 article
sort: new top best
clear filter
0 7/10

A detailed walkthrough of exploiting Boolean-based SQL injection through the User-Agent HTTP header to enumerate database version, table names, column names, and extract user credentials from a private bug bounty target.

fr0stNuLL MariaDB MySQL Oracle Microsoft SQL
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 19 hours ago · details