<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.2.3" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>
<channel>
	<title>Comments on: SQL Injection Toy</title>
	<link>http://hackademix.net/2007/08/23/sql-injection-toy/</link>
	<description>Giorgio Maone's answers to the Web, the Universe, and Everything</description>
	<pubDate>Fri, 19 Mar 2010 20:58:55 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.2.3</generator>

	<item>
		<title>By: steeL</title>
		<link>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-276</link>
		<dc:creator>steeL</dc:creator>
		<pubDate>Thu, 30 Aug 2007 01:19:56 +0000</pubDate>
		<guid>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-276</guid>
		<description>I hv posted Complete XSS, SQL Injection technique on my site http://steeLit.funpic.de

My site is not for hacking, i just education ppl how hacking happens &#38; how to defend. :D</description>
		<content:encoded><![CDATA[<p>I hv posted Complete XSS, SQL Injection technique on my site <a href="http://steeLit.funpic.de" rel="nofollow">http://steeLit.funpic.de</a></p>
<p>My site is not for hacking, i just education ppl how hacking happens &amp; how to defend. :D</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: raaka</title>
		<link>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-261</link>
		<dc:creator>raaka</dc:creator>
		<pubDate>Mon, 27 Aug 2007 00:06:57 +0000</pubDate>
		<guid>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-261</guid>
		<description>simple yet ko0l
well i have death threat for u bro.. post more</description>
		<content:encoded><![CDATA[<p>simple yet ko0l<br />
well i have death threat for u bro.. post more</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: BlogCadre</title>
		<link>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-239</link>
		<dc:creator>BlogCadre</dc:creator>
		<pubDate>Fri, 24 Aug 2007 15:15:45 +0000</pubDate>
		<guid>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-239</guid>
		<description>&lt;strong&gt;SQL Injection tool&lt;/strong&gt;

The boys over at  haxademix.net never cease to amaze me, this time rolling out a web based and virtually anonymous SQL injection tool (it's FREE to).
http://evil.hackademix.net/sqlit/
** For those of you who do not know what an SQL injection is...  

...</description>
		<content:encoded><![CDATA[<p><strong>SQL Injection tool</strong></p>
<p>The boys over at  haxademix.net never cease to amaze me, this time rolling out a web based and virtually anonymous SQL injection tool (it&#8217;s FREE to).<br />
<a href="http://evil.hackademix.net/sqlit/" rel="nofollow">http://evil.hackademix.net/sqlit/</a><br />
** For those of you who do not know what an SQL injection is&#8230;  </p>
<p>&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Giorgio</title>
		<link>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-237</link>
		<dc:creator>Giorgio</dc:creator>
		<pubDate>Fri, 24 Aug 2007 05:14:16 +0000</pubDate>
		<guid>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-237</guid>
		<description>@&lt;b&gt;sirdarkcat&lt;/b&gt;: 
aarrgh, the dangers of innerHTML...

@&lt;b&gt;Davide&lt;/b&gt;: 
it's all there (&lt;em&gt;View&#124;Source&lt;/em&gt;), no server side stuff involved :P</description>
		<content:encoded><![CDATA[<p>@<b>sirdarkcat</b>:<br />
aarrgh, the dangers of innerHTML&#8230;</p>
<p>@<b>Davide</b>:<br />
it&#8217;s all there (<em>View|Source</em>), no server side stuff involved :P</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Davide</title>
		<link>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-236</link>
		<dc:creator>Davide</dc:creator>
		<pubDate>Fri, 24 Aug 2007 03:45:29 +0000</pubDate>
		<guid>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-236</guid>
		<description>source code?</description>
		<content:encoded><![CDATA[<p>source code?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: sirdarckcat</title>
		<link>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-235</link>
		<dc:creator>sirdarckcat</dc:creator>
		<pubDate>Fri, 24 Aug 2007 01:47:00 +0000</pubDate>
		<guid>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-235</guid>
		<description>Cool!
The support for several database types is great :P

I have 1 &lt;a href="http://evil.hackademix.net/sqlit/#url=http%253A%252F%252Fnoscript.net%252Fshowuser.asp%253Fid%253D-1;paramName=;sql=%253Ciframe%2520src%253D%2522javascript%253Aalert(/XSS/%2Bdocument.cookie)%253B%252F%252F%2540paramName%2522%253E;dbtype=MS_SQL_Server" rel="nofollow"&gt;bug&lt;/a&gt; report.

Any way, it would be cooler if it could generate POST petitions, and a favlet for generating a COOKIE with the exploit :P, something like javascript:void(document.cookie="var=val1");</description>
		<content:encoded><![CDATA[<p>Cool!<br />
The support for several database types is great :P</p>
<p>I have 1 <a href="http://evil.hackademix.net/sqlit/#url=http%253A%252F%252Fnoscript.net%252Fshowuser.asp%253Fid%253D-1;paramName=;sql=%253Ciframe%2520src%253D%2522javascript%253Aalert(/XSS/%2Bdocument.cookie)%253B%252F%252F%2540paramName%2522%253E;dbtype=MS_SQL_Server" rel="nofollow">bug</a> report.</p>
<p>Any way, it would be cooler if it could generate POST petitions, and a favlet for generating a COOKIE with the exploit :P, something like javascript:void(document.cookie=&#8221;var=val1&#8243;);</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: scratchz</title>
		<link>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-234</link>
		<dc:creator>scratchz</dc:creator>
		<pubDate>Fri, 24 Aug 2007 00:41:46 +0000</pubDate>
		<guid>http://hackademix.net/2007/08/23/sql-injection-toy/#comment-234</guid>
		<description>hmmm,,, SQLIT </description>
		<content:encoded><![CDATA[<p>hmmm,,, SQLIT</p>
]]></content:encoded>
	</item>
</channel>
</rss>
