sql injection with burp suite tutorial

  Рет қаралды 168,984

Loi Liang Yang

Loi Liang Yang

Күн бұрын

Пікірлер: 290
@georgmc
@georgmc 3 жыл бұрын
i really like your vids bro like it's the perfect amount of switching from the screen to the facecam from time to time and you're speaking very calmly and together with the contents of the vid you make it really enjoyable to watch it
@earlbenet913
@earlbenet913 3 жыл бұрын
would you please share it back to me
@earlbenet913
@earlbenet913 3 жыл бұрын
would you please share it back to meet
@teraclenin3594
@teraclenin3594 3 жыл бұрын
Thank you once again....This is exactly what we're learning in class this week. Im going to share this video with the rest of my class mates
@LoiLiangYang
@LoiLiangYang 3 жыл бұрын
Awesome to hear that! Go ahead and share!
@dominiclundqvist168
@dominiclundqvist168 3 жыл бұрын
@@LoiLiangYang but this doesent work, it is outdated
@davidmezei08
@davidmezei08 3 жыл бұрын
@@dominiclundqvist168 are u OK? Its a 1 week old video...
@dominiclundqvist168
@dominiclundqvist168 3 жыл бұрын
@@davidmezei08 yes but the method is super old, if this was possible he obviously wouldn't show it
@YesAbhi-03
@YesAbhi-03 3 жыл бұрын
Learning in class 🧐? Who the hell makes you learn this ?
@TraceursMonkey
@TraceursMonkey 3 жыл бұрын
OWASP 10 was the most beautiful lessons in the beginner curriculum . Thanks for every video you post , your doing such a great job !
@GaneshKumar-19
@GaneshKumar-19 3 жыл бұрын
One of the most powerful and helpful tutorial on KZbin
@nelsontovars
@nelsontovars 3 жыл бұрын
You are so clear, concise, straight to point, very well switching between content and face cam. This is really worth watching every single minute
@imperim
@imperim 9 ай бұрын
where can i get sql.txt?
@arunsanthoshra1411
@arunsanthoshra1411 7 ай бұрын
@@imperim did u get that sql.txt?
@zilog357
@zilog357 3 жыл бұрын
Only not secure and weak websites will fall with this. But since there are still a lot of them out there, the video is still useful for people to head up and get their sites up to date.
@martinhector9337
@martinhector9337 3 жыл бұрын
So my friend, Have you heard about INVESTBIA OPTIONS TRADES where alot of people make much profits these days?
@p.abhishekchotu324
@p.abhishekchotu324 3 жыл бұрын
Nice and very knowledgeable. Can you explain about the injected payload (SQL.txt)?
@josesosa5929
@josesosa5929 Жыл бұрын
I was following another video and it was a little different. Here I was able to see that you need the symbols at the beginning and end of the email and password like in the video minute 2:52. This video really help me. Thank you Loi!!!
@LoiLiangYang
@LoiLiangYang 3 жыл бұрын
What does JWT stand for?
@breezebee6568
@breezebee6568 3 жыл бұрын
Json web token
@ripples2491
@ripples2491 3 жыл бұрын
Json web token
@cocotoo9621
@cocotoo9621 3 жыл бұрын
Jaddu vala tokan
@treewisemenllc7281
@treewisemenllc7281 3 жыл бұрын
Json web token.
@hackernee5867
@hackernee5867 3 жыл бұрын
LA CAN TALK ABOUT TECHNOLOGY AND HACKING ETC
@FedoraRose
@FedoraRose 3 жыл бұрын
Thank you for teaching Things😁
@jordanmartinez8652
@jordanmartinez8652 3 жыл бұрын
Yeah I love things
@preferableyoutuber5481
@preferableyoutuber5481 3 жыл бұрын
@@jordanmartinez8652 Things like that pfp? 😂
@NomziliciousFoods
@NomziliciousFoods Жыл бұрын
I really liked your method of conveying knowledge. This was an interesting watch and I did learn a lot from you. Thanks for making videos like this.
@macbook6507
@macbook6507 3 жыл бұрын
Thanks for Teaching us Teacher Loi liang, forever grateful 🤝
@nadavleor
@nadavleor 3 жыл бұрын
i'm learning so much here, thank you very much Loi.
@blazzingbuzz8678
@blazzingbuzz8678 2 жыл бұрын
This is fantastic. Eternally grateful... long life to you. You are the best
@theweepingmopper3928
@theweepingmopper3928 3 жыл бұрын
Works all fine on these "vulnerable" test websites. Try this in real life and none of it will work (unless you can find some website build by a complete idiot). I really don't get why a "pro" keeps coming up with these completely outdated setups.
@FenderLeader
@FenderLeader 3 жыл бұрын
Because they want user to pay to learn real $hit 😂
@carval51
@carval51 3 жыл бұрын
well if you test it on big website ofc they would not do this stupid mistake, the things is this only happen to new website n1 even bother to hack lol
@oo7posam581
@oo7posam581 3 жыл бұрын
Same... But by learning basics and trying them in real world gains experience that helps to Develop and Use your own mind to hack rather than Already available
@charaxofgythium4863
@charaxofgythium4863 3 жыл бұрын
the titles are the most anoying :|
@skijethd2033
@skijethd2033 3 жыл бұрын
where can i actually learn then i want to learn so bad but this wierd "hacking" youtubers dont help me
@ramitamondal656
@ramitamondal656 3 жыл бұрын
Hello Sir, First of all thank you for such informative content. It's really helpful. Would you please make a beginner's guide video, for people who want to be self taught in cyber security, beyond their academic curriculum?
@Daemon4
@Daemon4 3 жыл бұрын
feel real bad for the one guy who just wants to sell juice but keeps getting hacked
@xpiredmemes3739
@xpiredmemes3739 2 жыл бұрын
XD
@olajuwon03
@olajuwon03 3 жыл бұрын
Nice info sir. Really appreciate ur videos
@marcasplund
@marcasplund 3 жыл бұрын
Very easy for beginners... I hope they understand that these techniques are very basic. This type of security flaw is very uncommon anymore. How about doing some more advanced vids. Thanks
@mahdihasan42
@mahdihasan42 Жыл бұрын
the explanation is just wow.
@narindersemar5138
@narindersemar5138 3 жыл бұрын
Hey, fantastic video, where did you get the payloads from?
@armalite6837
@armalite6837 3 жыл бұрын
its installed by default on some linux systems
@shivp436
@shivp436 3 жыл бұрын
@@armalite6837 can you please tell how to install it on windows
@ZaneT531
@ZaneT531 3 жыл бұрын
I wish I had your accent and voice man.. I do teaching to in KZbin Azure tutorials.. You just earned a sub .. I will continue to watch your video and learn. Thanks
@Ted_James
@Ted_James 10 ай бұрын
At approximately 6:42, why did you remove ,"bid":18, from the token?
@Arkata
@Arkata 3 жыл бұрын
Wow, Burpe suite is incredible Thanks for sharing mate 👍👌
@lusialeksieva9947
@lusialeksieva9947 3 жыл бұрын
Like your vida bro like it' s theperfect amount of swiyching from the screen to the facecam from time to time and you' re
@GlobusZZ
@GlobusZZ 3 жыл бұрын
Awesome bro. Thanks for you tutorials 👍🏻👍🏻
@circuitmasters5258
@circuitmasters5258 3 жыл бұрын
Loi, PHP susceptible to SQL attacks - can you code the website database to prevent attacks that's what I want - Can you show a video that prevents hackers from gaining access?
@IndraEkaMandrianaMIIII
@IndraEkaMandrianaMIIII Жыл бұрын
thanks for video, i have question, where can i get the file injection for Load in Intruder ?
@YesAbhi-03
@YesAbhi-03 3 жыл бұрын
Classy intro 🤍🔥
@Maheshkumar-ji1sv
@Maheshkumar-ji1sv 3 жыл бұрын
Can you teach to create keylogger tool to work in windows and Linux platform?
@hackernee5867
@hackernee5867 3 жыл бұрын
LA CAN TALK ABOUT TECHNOLOGY AND HACKING ETC
@Maheshkumar-ji1sv
@Maheshkumar-ji1sv 3 жыл бұрын
@@hackernee5867 La hacking is said to be creating tool of own also how much of day you will use open source tool , need to learn lot of things .... 😎
@utorrent6054
@utorrent6054 3 жыл бұрын
Hello Loi, how to hacker catch opt ? Example. Bank opt .🤔🤔 can you teach us..
@I4YB
@I4YB 2 жыл бұрын
thank you i love you so much you are give me very good help
@accessordenied6844
@accessordenied6844 3 жыл бұрын
😯😯take love from🇧🇩
@mralien0047
@mralien0047 3 жыл бұрын
You're the best,, thank you for sharing this stuff with us
@ghosthunter5336
@ghosthunter5336 3 жыл бұрын
Great lesson, I learned a lot today. thanks Loi.
@DSMLNR
@DSMLNR 3 жыл бұрын
awesome. the beard looks good dude
@ferhatsurucu82
@ferhatsurucu82 3 жыл бұрын
Thank you, What if MFA was enabled
@veerareddy6087
@veerareddy6087 3 жыл бұрын
You are not a hacker you are the God of hacker
@ZehraanBarmare
@ZehraanBarmare 3 жыл бұрын
Please upload a complete VAPT tutorial.
@sidharthpj4753
@sidharthpj4753 3 жыл бұрын
Nobody uses MD5 nowadays..... Try decrypting a bcrypt hash.
@jonathanfeika
@jonathanfeika 3 жыл бұрын
Guys if I want to start hacking which app I should use on my pc for hacking
@lifeisbeautiful5998
@lifeisbeautiful5998 3 жыл бұрын
Thanks for u kind help ..dear freind 😊😊😊we will remember u better
@smsport7630
@smsport7630 3 жыл бұрын
I love what you Do, but do you think you can break icloud on iphone or yo u think is classified
@perryamoakojampa125
@perryamoakojampa125 3 жыл бұрын
can you do this to secure website.....
@shravankumaruk
@shravankumaruk 3 жыл бұрын
As an OSCP I'm loving it
@hackernee5867
@hackernee5867 3 жыл бұрын
LA CAN TALK ABOUT TECHNOLOGY AND HACKING ETC
@SpartanJoe193
@SpartanJoe193 11 ай бұрын
I us3 Windows 11 and the Burp Community edition
@GooDog2906
@GooDog2906 8 ай бұрын
This lab can be used properly with php and
@kingpapa3428
@kingpapa3428 3 жыл бұрын
Ah so this could be one of the ways my brothers Roblox accounts get hacked
@nandanagajyesthasokhyatara81
@nandanagajyesthasokhyatara81 3 жыл бұрын
what browser do you use ? and if its a non popular one can you send a link of how to download it ? thx if you reply
@hakeebhussain6764
@hakeebhussain6764 3 жыл бұрын
how do i get a response from the website
@accessdenied5998
@accessdenied5998 Жыл бұрын
btw where did you get the SQL Payload from I wanna try to brute force my own website
@statuses9772
@statuses9772 3 жыл бұрын
Can you make video on home made rubber ducky. Use simple pendrive
@Bank.Chaabi
@Bank.Chaabi 2 жыл бұрын
i like your vids
@aomo5293
@aomo5293 3 жыл бұрын
Hello. Please can y talk about Net Guard app? Is it save ? Thank y
@iyanu3723
@iyanu3723 3 жыл бұрын
Please how do you mitigate this type of attack. is it by using unique passwords instead of common ones?
@jamaledineamarir6724
@jamaledineamarir6724 3 жыл бұрын
Prepared SQL statements That way, you do not treat user inputs as intrepetable commands, but as string (or whatever intented type the software is looking for).
@iyanu3723
@iyanu3723 3 жыл бұрын
@@jamaledineamarir6724 Thanks. i get that the sql injection attack allows you to log into the account without the password. i was just wondering how to prevent the password being known if the hackers primary objective was to retrieve the password
@Glockenspiels
@Glockenspiels 3 жыл бұрын
@@iyanu3723 use hash encryption
@Izayoink_Saccuy
@Izayoink_Saccuy 3 жыл бұрын
Tbh social engineering is more reliable
@kinshukkarmakar3883
@kinshukkarmakar3883 3 жыл бұрын
Does this really work with real time web applications ?
@daniloalbuquerque6655
@daniloalbuquerque6655 3 жыл бұрын
U R THE BEST!
@softwarehubandgamesclub401
@softwarehubandgamesclub401 3 жыл бұрын
CANT WE ENCODE THAT JSON TOKEN TOKEN ?? IN SOME SITES THEY USE ACCES TOKEN IN COOKIES CAN WE EDIT THEM , THEN ENCODE BACK AND USE IT TO GET ANY ADVANTAGE ?? IT WOULD BE NICE IF U CAN REPLY U R VIDEOS ARE AMAZING
@ochaparro1335
@ochaparro1335 3 жыл бұрын
Good
@rahuldadhich497
@rahuldadhich497 3 жыл бұрын
Any trick for telegram to add bulk members from another channels??
@rahuldadhich497
@rahuldadhich497 3 жыл бұрын
@anthrax on that available only scraper i want to bulk add members from another channel
@mahadiislambd
@mahadiislambd 3 жыл бұрын
hello, would you make a video about snmp v3 and how to configure it??????
@Bordonauu
@Bordonauu 23 күн бұрын
What do I do if I get code 200 but still cant get into? Someone help me please
@s.aravindh6227
@s.aravindh6227 3 жыл бұрын
Nice video bro 👍👍
@rohanpandey7476
@rohanpandey7476 3 жыл бұрын
I think u r using professional version instead of community version
@cryze385
@cryze385 3 жыл бұрын
Ok, but how do you get in the Account of someone in particular?
@abdetr0_177
@abdetr0_177 3 жыл бұрын
I cant believe that you are strong
@mykamillz
@mykamillz 3 жыл бұрын
Great job man!!
@ahinssu617
@ahinssu617 2 жыл бұрын
im using wsl and i dont have that injections thing?
@aaravinthan001
@aaravinthan001 3 жыл бұрын
How to access the OWASP juice shop
@pinnedloiliangyang364
@pinnedloiliangyang364 3 жыл бұрын
Thanks for watching and commenting. For further interaction and guidance!! {W...H...A...T...S...A...P...P}+16282596917
@aaravinthan001
@aaravinthan001 3 жыл бұрын
@@pinnedloiliangyang364 oh sir is that you its your whatsapp number ohh god iam lucky thankyou sir
@ofsanjay
@ofsanjay 3 жыл бұрын
Always you teach something new 🙃
@hackernee5867
@hackernee5867 3 жыл бұрын
LA CAN TALK ABOUT TECHNOLOGY AND HACKING ETC
@titzko987
@titzko987 3 жыл бұрын
i only get 200 everywhere in bs, but works on no actual side
@allayowan
@allayowan 3 жыл бұрын
Hi please reply to me... Do you have any course that starts with beginner? Or do we need to have some idea on Coding?
@alien_X1
@alien_X1 3 жыл бұрын
coding yes
@adarshaeth
@adarshaeth 3 жыл бұрын
use captcha to block this type of attacks
@theethicalhadwani4091
@theethicalhadwani4091 3 жыл бұрын
Sir as much as cracking and discovering vulnerabilities is concerned please can you make a vid of how to patch them or how to prevent such attacks and make the system secure
@alexwest5412
@alexwest5412 3 жыл бұрын
Awesome info man 👍👍
@smrthacker8148
@smrthacker8148 3 жыл бұрын
Sir how to find lost Mobile can u make a video of that
@1711kd
@1711kd 2 жыл бұрын
Hi Loi Liang, I am not able to find sql.txt. where should I look for the file. Did I miss something
@roblox_jrket1622
@roblox_jrket1622 Жыл бұрын
u need a list of sql injections and put it in ur file explorer and find it there idk whats the link to download one of them but hope this helps u
@mahdizarepoor8964
@mahdizarepoor8964 3 жыл бұрын
thank you for this video . i really enjoy it and i was kind of a review . in persian : متشکرم بابت این ویدئو
@theanonymous9110
@theanonymous9110 3 жыл бұрын
Your my fav hacker on lessons, you explain everything perfect all the time.... I’d like to get you on building my copyright program for creators.... do you have an email I can send you my info so you can check it out and see if you’d be interested in the project?
@TheRushabhy2k
@TheRushabhy2k 3 жыл бұрын
not able to get " burpsuite " option on kali lin fireforx
@samersamha5667
@samersamha5667 3 жыл бұрын
waw, interesting video and trick my friend, Thats why i'm always using an advanced password manager ;)
@akinwalefemi8728
@akinwalefemi8728 3 жыл бұрын
thanks man. appreciate that.
@ZaneT531
@ZaneT531 3 жыл бұрын
@5.43 - You have entered the username from payload but what you have entered in the password box ? could you clarify please
@thomasschiller7698
@thomasschiller7698 3 жыл бұрын
Is hacking android without send enything(like trojan)possible?
@jbizzle1966
@jbizzle1966 3 жыл бұрын
Excellent
@imperim
@imperim 9 ай бұрын
where can i get sql.txt?
@MusicalA-d8x
@MusicalA-d8x 3 жыл бұрын
Can we use this method for big websites?
@hackernee5867
@hackernee5867 3 жыл бұрын
LA CAN TALK ABOUT TECHNOLOGY AND HACKING ETC
@Cat2246
@Cat2246 3 жыл бұрын
Every time I see your name my brain will convert it into Loli Liang Yang.... -.-
@pinnedloiliangyang364
@pinnedloiliangyang364 3 жыл бұрын
Thanks for watching and commenting. For further interaction and guidance!! {W...H...A...T...S...A...P...P}+16282596917
@HACKINFO
@HACKINFO 3 жыл бұрын
How to install dvwa
@amansarma417
@amansarma417 3 жыл бұрын
Is it valid for nosql databases?
@Jay-Ryujin
@Jay-Ryujin 11 ай бұрын
I have done everything that you said but my burp isnt capturing anything. Can someone help me out?
@MR-RUBIX9119
@MR-RUBIX9119 2 жыл бұрын
What if their all 200?
@mr.hackme7435
@mr.hackme7435 3 жыл бұрын
Great Man 👍
@mugilanmugil9858
@mugilanmugil9858 3 жыл бұрын
Hi , Can we change the password of windows admin account remotely? system is in workgroup
@martinhector9337
@martinhector9337 3 жыл бұрын
So my friend, Have you heard about INVESTBIA OPTIONS TRADES where alot of people make much profits these days?
@davids2311
@davids2311 3 жыл бұрын
Love your content
@elyasndiaye5508
@elyasndiaye5508 3 жыл бұрын
@Loi Liang Yang - Hi mister Loi, i got some troubles with payload options for i don't have the injection folder so i tried to download some on the internet but they didn't work, where did you get yours ?
@LoiLiangYang
@LoiLiangYang 3 жыл бұрын
You can try this: github.com/payloadbox/sql-injection-payload-list
@elyasndiaye5508
@elyasndiaye5508 3 жыл бұрын
@@LoiLiangYang Okey worked! Another question, why was it necessary to connect to a proxy to launch the burpsuite attack?
@arunags1514
@arunags1514 3 жыл бұрын
@@LoiLiangYang it's not worked. I don't get 200 in the intruder attack. I only got 401 and 500
@REMIXTER
@REMIXTER 3 жыл бұрын
Very complicated 4 average people x.x
@mohsin777
@mohsin777 3 жыл бұрын
How to secure our web application
@skyfly4696
@skyfly4696 3 жыл бұрын
ty for the video but it won't work rn
SQL Injection Attack Tutorial - I didn't know you can do that
12:59
Loi Liang Yang
Рет қаралды 40 М.
SQL Injection Tutorial For Beginners
16:08
Loi Liang Yang
Рет қаралды 47 М.
Tuna 🍣 ​⁠@patrickzeinali ​⁠@ChefRush
00:48
albert_cancook
Рет қаралды 39 МЛН
From Small To Giant 0%🍫 VS 100%🍫 #katebrush #shorts #gummy
00:19
Burpsuite Basics (FREE Community Edition)
28:01
John Hammond
Рет қаралды 504 М.
Remotely Control Any PC with an image?!
12:42
Loi Liang Yang
Рет қаралды 184 М.
SQL Injection For Beginners
13:28
Loi Liang Yang
Рет қаралды 1,5 МЛН
how hackers hack any website in 8 minutes 6 seconds?!
8:06
Loi Liang Yang
Рет қаралды 115 М.
Pentesting Diaries 0x1 - SQL Injection 101
1:20:01
HackerSploit
Рет қаралды 34 М.
Advanced SQL Injection Tutorial
10:16
Loi Liang Yang
Рет қаралды 104 М.
I legally defaced this website.
25:48
thehackerish
Рет қаралды 528 М.