SQL Injection Attack

Nice little article on ln(Exun).

“1) Open the following site: http://www.sanjeevkapoor.com/ : I have already informed the administrator about the loopholes through a letter also, but no action has been taken.
2) Click on sign in and type the username as: admin OR 1=1—and password as”

Ping "SQL Injection Attack": http://xabhishek.com/2007/08/01/sql-injection-attack/trackback/

3 comments here

  • :D

  • hehe, if i were the admin of sanjevkapoor.com, i would sue that guy. The IT act will screw him big my lawyer friend tells me, and that means a career ended.

    Wannabe hackers should know that even if you do something with good intentions, cracking is a crime (in India too)

  • Lol, getting anything done is quite difficult. But yes, I think it wouldn’t be very difficult if you have contacts.

Write comment








Copyright 2008 Abhishek Nandakumar I Google, Therefore I Am