Advanced SQL Injection Tutorial

  Рет қаралды 102,719

Loi Liang Yang

3 жыл бұрын

// Membership //
Want to learn all about cyber-security and become an ethical hacker? Join this channel now to gain access into exclusive ethical hacking videos by clicking this link: kzfaq.info/love/1szFCBUWXY3ESff8dJjjzwjoin
// Courses //
Full Ethical Hacking Course: www.udemy.com/course/full-web-ethical-hacking-course/
Full Web Ethical Hacking Course: www.udemy.com/course/full-web-ethical-hacking-course/
Full Mobile Hacking Course: www.udemy.com/course/full-mobile-hacking-course/
// Books //
Kali Linux Hacking: amzn.to/3IUXaJv
Linux Basics for Hackers: amzn.to/3EzRPV6
The Ultimate Kali Linux Book: amzn.to/3m7cutD
// Social Links //
Website: www.loiliangyang.com
Facebook: Loiliangyang/
Instagram: loiliangyang
LinkedIn: www.linkedin.com/in/loiliangyang/
// Disclaimer //
Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing so that we can protect ourselves against the real hackers.

Пікірлер: 217
@presenzemisteriose
@presenzemisteriose 3 жыл бұрын
Hi, I bought the course, can I write to you privately for any questions? thanks you are the best
@LoiLiangYang
@LoiLiangYang 3 жыл бұрын
Yes. Feel free to post your questions in Udemy and our team will get right back to you! If you're a KZfaq member of this channel, likewise too!
@presenzemisteriose
@presenzemisteriose 3 жыл бұрын
@@LoiLiangYang Thank you very much, I also sent you a message on udemy, I'm watching videos on payload on Android but I had problems in practice I write to you thanks again, and I must say you teach well good ☺️
@presenzemisteriose
@presenzemisteriose 3 жыл бұрын
how do i port forward for with smartphone connection
@rohimpiana711
@rohimpiana711 3 жыл бұрын
How can I become a youtube member ?
@trickshot8653
@trickshot8653 2 жыл бұрын
@@LoiLiangYang could you please make a video for hacking database using sql injection . All techniques possible
@LoiLiangYang
@LoiLiangYang 3 жыл бұрын
Additionally, you look for vulnerabilities in the input fields by throwing in payloads to get error. This is important because once you discover the vulnerability, the advanced segment of using UNION to pull out more data comes in to play.
@swarnabhargavi5680
@swarnabhargavi5680 2 жыл бұрын
Plz do SQL injection video of Login Page having Captcha. All videos on internet shows only on Login page having Username and Password
@yunus-gedik
@yunus-gedik 3 жыл бұрын
Loi is the best security instructor on KZfaq . Thanks from 🇨🇵
@thundermc4480
@thundermc4480 2 жыл бұрын
You are a life changer for me. I always wanted to do ethical hacking. And now i work on a univeruity
@shubhankarparanjape7693
@shubhankarparanjape7693 3 жыл бұрын
I can’t express how underrated your channel is considering how amazing & valuable content you are providing. Keep it up man, major hats off to you! Lots of love from India 🇮🇳
@kusumabhat6609
@kusumabhat6609 3 жыл бұрын
Even me
@chillydoog
@chillydoog 2 жыл бұрын
Your voice is so soothing and smooth. Handsome, smart, effective.
@ewaat
@ewaat 3 жыл бұрын
I just can't wait for other videos, much love from Kenya
@aiziz1658
@aiziz1658 3 жыл бұрын
this is great man, exactly same as what i leran from school
@john_vinith
@john_vinith 3 жыл бұрын
Good channels are mostly under rated... Very useful content.... yesterday i was looking for this... 🖤🖤🖤
@arshadakl
@arshadakl 3 жыл бұрын
make a video about SQL injection filter bypassing
@technologymakeeasy
@technologymakeeasy 3 жыл бұрын
Thanks my teacher, i have hijack a website using your way. And now i have 1000% full access -
@iuseyahoo
@iuseyahoo 3 жыл бұрын
Loi I learn more from you in a 5 minute video rather than someone else’s 15 min video
@_Thomas_Shelby_
@_Thomas_Shelby_ 3 жыл бұрын
In pandemic time ur spending ur precious time to teach 4r us sir,by cing ur cls.. in udemy we have learnt Sir tq sir.
@Real_delron
@Real_delron 3 жыл бұрын
Thanks been waiting for this..❤️
@a-71ameymuke84
@a-71ameymuke84 3 жыл бұрын
You are great teacher sir I have learned many things from you Much love and support to you❤❤💯
@Alain9-1
@Alain9-1 3 жыл бұрын
Underrated channel
@freelancersharif2051
@freelancersharif2051 2 жыл бұрын
wow, wonderful, we want more tutorials. thank you so much for sharing this valuable hacking method. take love from Bangladesh
@sharmaabhijit5831
@sharmaabhijit5831 3 жыл бұрын
Lot of Respect to your Work Sir. Like a consistent student who regularly watches your video but I have a query from where u get sql payload can u make a video on that how to find or check payload available
@Nihillius
@Nihillius 3 жыл бұрын
you are The best by the way i am You Fan i saw every videos
@RegLinier
@RegLinier 3 жыл бұрын
Thanks mr loi for teaching me
@mralien0047
@mralien0047 3 жыл бұрын
Thnq my teacher, you're the best of the best
@devanshkanda9618
@devanshkanda9618 3 жыл бұрын
Thank you sir ❤️ love from india ❤️❤️
@mrxxx2599
@mrxxx2599 3 жыл бұрын
Awesome man ! keep it up 🔥🔥
@Moderator.
@Moderator. 3 жыл бұрын
But what about the Salt into Hashing.. Almost everyone does it now... A salted hash can't be reversed.
@secretmystery8305
@secretmystery8305 3 жыл бұрын
Love From Bangladesh :)
@varunfoodvlog9215
@varunfoodvlog9215 2 жыл бұрын
hey u are a osm osm hacker wow i am fast time see your channel from india and u grow more
@Green_shorts1234
@Green_shorts1234 3 жыл бұрын
Great content😎😎😎 Sir keep it up 👍
@b391i
@b391i 3 жыл бұрын
KEEP GOING MY FRIEND 😎👍
@alexxxk
@alexxxk 3 жыл бұрын
This guy teach so good !!!
@X-secular
@X-secular 3 жыл бұрын
Love ❤️ from India 🇮🇳
@john_vinith
@john_vinith 3 жыл бұрын
🇮🇳
@b07x
@b07x 3 жыл бұрын
Love ❤️ from Turkey 🇹🇷
@secretmystery8305
@secretmystery8305 3 жыл бұрын
1st & 2nd cmt from BD but pinned cmt fro. in. Really this is heart Broken think.😔🙄😒🤔
@X-secular
@X-secular 3 жыл бұрын
@@secretmystery8305 don't worry bro.... Good luck for next time....
@secretmystery8305
@secretmystery8305 3 жыл бұрын
@@X-secular Thank You So Much. :)
@marcush3ll673
@marcush3ll673 3 жыл бұрын
Love from INDIA ❤️
@marcush3ll673
@marcush3ll673 3 жыл бұрын
You're great sir !
@nazarshved7504
@nazarshved7504 3 жыл бұрын
How would you know the exact name of a table and it's columns?
@kodjovinicolasanatoh4521
@kodjovinicolasanatoh4521 3 жыл бұрын
Please I need a video on how to access friends contact list by Link. Or by generating a payload. Thanks
@wintorez6649
@wintorez6649 3 жыл бұрын
Thank you sir for making this video 🇮🇳🇮🇳🇮🇳🇮🇳🇮🇳
@soumkadi2776
@soumkadi2776 3 жыл бұрын
In the payload does I can Write just SELECT * FROM users ??
@st1llbleed1ng
@st1llbleed1ng 9 ай бұрын
Man your first union select query, was it fluke or actually there were 9 columns in users table? Also can you explain why you used /**/? Finally all the columns except the last one in the users table were string type?
@tassiblezilundu7602
@tassiblezilundu7602 3 жыл бұрын
Let me confess that you're the best Loo Liang.... I want to make just one request.... make a video that would cover how to locate a phone number currently working and combined with one which is not currently working thanks
@mr.hackme7435
@mr.hackme7435 3 жыл бұрын
Such amazing Hacker ❤️
@chaitu007
@chaitu007 3 жыл бұрын
Keep upload more videos related to sql
@akashjain3100
@akashjain3100 3 жыл бұрын
Bro can u plz tell how many langauge we have to know to become network pentester ?
@jamesgray4037
@jamesgray4037 2 жыл бұрын
Dude my freind u are a legend
@NicatZadeh
@NicatZadeh 9 ай бұрын
Hello, some cyber security expert told me that real site is not actually attacked in this way. Do you think this is true? Should I try your suggested method if I want to attack any site? Please reply. I want to ask one more thing. What is a sql map? What is the difference between sql map and this specified method? How can we do this?
@GlobusZZ
@GlobusZZ 3 жыл бұрын
Loi how i can get owasp juice shop on my kali ? Am i need to download ova or iso image with running juice shop ?
@gostxost
@gostxost 2 күн бұрын
Mr Loi, you used the SQL injection attack with a completely different method. I thought you would run code like or '1=1# or or 8888=8888--. Then you will find the tables and columns on the site. I thought you would capture it. I can use sqlmap, but I cannot do it manually. Because I didn't fully understand how to do it.
@williamgomez6087
@williamgomez6087 3 жыл бұрын
Master of masters!
@GooDog2906
@GooDog2906 3 ай бұрын
your program languague to write this lab ? PHP and MYSQL
@arshadakl
@arshadakl 3 жыл бұрын
How can monitor mobile traffic using wireshark
@spacifiasome2229
@spacifiasome2229 3 жыл бұрын
Love from sri lanka 🇱🇰🇱🇰🇱🇰 By the way how did you run samsung android framework on windows in previous videos
@trickshot8653
@trickshot8653 2 жыл бұрын
if it doesnt work on a website then other sql payloads wont work as well?
@nepaliredteam1713
@nepaliredteam1713 3 жыл бұрын
Love 💞 from Nepal 🇳🇵
@ramkanwar9697
@ramkanwar9697 3 жыл бұрын
Awesome 🔥🔥🔥🔥🔥
@sahilrajput3063
@sahilrajput3063 3 жыл бұрын
make a video on API
@sudipdiyasi9647
@sudipdiyasi9647 Жыл бұрын
Please make a video on sql injection shell upload using sqlmap.
@forprogramming39
@forprogramming39 3 жыл бұрын
thank you very much you profstional strong
@oaychicolofi4845
@oaychicolofi4845 Жыл бұрын
how can i come up with that union select, kinda weird
@AnthonyMcqueen1987
@AnthonyMcqueen1987 3 жыл бұрын
Wow i was inpressed SQL Injection should not be as difficult its all on what happens on the server.
@andreasclaudius9076
@andreasclaudius9076 11 ай бұрын
if i don t have this rest/products ?
@ChandupaHerath
@ChandupaHerath Жыл бұрын
I think for hashing MD5 algorithm is not the industry standard.
@nosignal5735
@nosignal5735 3 жыл бұрын
If I may know, does cyber security pay well? Average per year? And which one makes more money, cyber sec or game development company? I'm interested in both fields but I don't know which one to choose....
@mrintel10
@mrintel10 2 жыл бұрын
I'd say cyber security but with game development it varies on your position as with cyber security
@s.aravindh6227
@s.aravindh6227 3 жыл бұрын
Nice video 👍👍👍
@muhammadnaeef4731
@muhammadnaeef4731 3 жыл бұрын
frist like i love you fram syria 🇸🇾
@_heffen
@_heffen Жыл бұрын
woooooh amazinf simple tutorial
@LoiLiangYang
@LoiLiangYang 3 жыл бұрын
What do you think /**/ is for?
@d3vast8r
@d3vast8r 3 жыл бұрын
Commenting things out..
@timotiuslartutul3974
@timotiuslartutul3974 3 жыл бұрын
Very educational. Thank you for create this Chanel. but honestly, I'm still not very good at understanding English so please help me to provide Indonesian subtitle. i'm from Indonesian btw.🙏🙏🙏🙏🙏
@rukshanaaly7794
@rukshanaaly7794 2 жыл бұрын
so this is union based sql injection sir ?
@ethicmedia3870
@ethicmedia3870 3 жыл бұрын
wordpress hacking tutorial plzzz
@smahidhar516
@smahidhar516 3 жыл бұрын
Bro where i can learn ethical hacking from basics to advance
@johntheocharis573
@johntheocharis573 3 жыл бұрын
thanks
@jackpersonal9657
@jackpersonal9657 2 жыл бұрын
Is this advanced? Can you make an even more advanced one where you talk about information_schema etc and find the tables manually without being given the stuff like in this video, or bomb shells or writing or reading mitigation
@Unknown-si8uu
@Unknown-si8uu 3 жыл бұрын
Bro wr are u from
@Zero5309
@Zero5309 3 жыл бұрын
Really well explained! What I would like to have are more realistic attacks. I mean are there actually still up to date webapps with that kind of vulnerabilities? What would a SQL injection look like in realistic scenario? Still a great video :)
@roniwinchester8351
@roniwinchester8351 3 жыл бұрын
understanding means "Etichal Hacking" they never attack other people in real life. it's all about demonstrated
@Zero5309
@Zero5309 3 жыл бұрын
@@roniwinchester8351 yes but the video title is "Advanced SQL Injection Tutorial". What he showed is the least level of diffidulty possible
@roniwinchester8351
@roniwinchester8351 3 жыл бұрын
@@Zero5309 then learn in google, you can't force anyone to teach you how to hack in real world.
@Zero5309
@Zero5309 3 жыл бұрын
@@roniwinchester8351 ??? What are you even talking about. That's what this channel is all about. He's already showing how to hack. If the title says advanced I dont want to see most basic stuff.
@russnemet1158
@russnemet1158 2 жыл бұрын
If you want to see real SQL xss attacks check for bug bounty videos. Or videos of how the winners of a bug bounty won the bounty.
@savagesavage6923
@savagesavage6923 2 жыл бұрын
Great thanks!
@isakadzemusicc
@isakadzemusicc Жыл бұрын
how to use this teqnique when there is no searchbar and there is only login and password fill forms?
@abczwq8364
@abczwq8364 Жыл бұрын
and how did you discovered those were valid fields on the user table? ..how did you discovered the table name? how did you discovered the type of database ? ... if this is an advance tutorial you should explain how did you came up with the payloads , not just to do a copy paste
@ITZUMYK
@ITZUMYK 3 жыл бұрын
Awesome video!
@LoiLiangYang
@LoiLiangYang 2 жыл бұрын
Glad you enjoyed it
@user-br9vy2je5t
@user-br9vy2je5t Жыл бұрын
My response can be regarded as just as shot in the dark bro as I am still a no-eye deer, hahaha.
@aliibrahim5479
@aliibrahim5479 3 жыл бұрын
This depends on the database right? I mean would the query be the same if the website was using a different database and if not then how would you know what query to use? do you just have to keep trying ?
@bakedtomatohh807
@bakedtomatohh807 3 жыл бұрын
Check the whatweb data of the website. It will show in the result which database language has been used.
@aliibrahim5479
@aliibrahim5479 3 жыл бұрын
@@bakedtomatohh807 thank u
@AriftipsandTricks
@AriftipsandTricks 3 жыл бұрын
Love ❤️ From Bangladesh 🇧🇩
@mohammadtorikulislam3981
@mohammadtorikulislam3981 3 жыл бұрын
🇧🇩🇧🇩
@Finnriderlife
@Finnriderlife 3 жыл бұрын
Can you do a Lesson on Beef / Ngrok / Portforwarding on WAN. Just dont get it working..
@nishantt1080
@nishantt1080 Жыл бұрын
sir pls make sqlmap videos 🙏🏻 thanku
@devmehta2475
@devmehta2475 3 жыл бұрын
Is it possible to decrypt password_hash() security ???
@yahyabammi5622
@yahyabammi5622 3 жыл бұрын
good tutorial
@xcypher
@xcypher 3 жыл бұрын
Love from indonesian 🇮🇩 :)
@fmbyts1256
@fmbyts1256 2 жыл бұрын
what to do if domain is Locked?
@akinwalefemi8728
@akinwalefemi8728 3 жыл бұрын
you are ther boss. thx
@wealthyDev
@wealthyDev 2 жыл бұрын
I just understood why my moms movies site account, one year ago got hacked😂 SQL Injection is way too powerfull :)
@anydayanymoment6159
@anydayanymoment6159 2 жыл бұрын
Does this work on TEST websites or for real ones? I know few shitty websites and would love to hack it, ?
@rafin5651
@rafin5651 3 жыл бұрын
Love from Bangladesh 🇧🇩❤️😊
@mukto2004
@mukto2004 3 жыл бұрын
hacker from bd i see
@b07x
@b07x 3 жыл бұрын
@@mukto2004 🇹🇷🇧🇩🇩🇿🇮🇳🇵🇰🇨🇳🇷🇺🇺🇲🇬🇧 Most of the hackers are from these countries.
@mukto2004
@mukto2004 3 жыл бұрын
@@b07x pak ? How ?
@korikori3129
@korikori3129 2 жыл бұрын
love you bro🥰
@DushmanthaKriyaanvithadk0
@DushmanthaKriyaanvithadk0 3 жыл бұрын
Thank u 😍
@aniketjoshi6286
@aniketjoshi6286 3 жыл бұрын
Love ❤️ from India 🇮🇳 Can i get a heart ??
@TalsonHacks
@TalsonHacks 3 жыл бұрын
Quantitys
@shaikgalib8168
@shaikgalib8168 3 жыл бұрын
Thanks you
@SecurityTalent
@SecurityTalent 3 жыл бұрын
Thanks
@hackwithjack4816
@hackwithjack4816 3 жыл бұрын
Thanks alot mr.sir
@ripples2491
@ripples2491 3 жыл бұрын
wtf is mr.sir
@hackwithjack4816
@hackwithjack4816 3 жыл бұрын
Mr.sir means mr.teacher
@reahnascent8650
@reahnascent8650 2 жыл бұрын
But all this attack doesn’t work on live website, why???
@IgniteMotiverse
@IgniteMotiverse 2 жыл бұрын
Best 👍
@howithappens4250
@howithappens4250 3 жыл бұрын
Hey ! I am the first to comment 🔥🙏
@ianmoraga6403
@ianmoraga6403 3 жыл бұрын
Next: advance server side request forgery
孩子多的烦恼?#火影忍者 #家庭 #佐助
00:31
火影忍者一家
Рет қаралды 26 МЛН
Increíble final 😱
00:37
Juan De Dios Pantoja 2
Рет қаралды 111 МЛН
MEGA BOXES ARE BACK!!!
08:53
Brawl Stars
Рет қаралды 34 МЛН
МАМА И STANDOFF 2 😳 !FAKE GUN! #shorts
00:34
INNA SERG
Рет қаралды 4,1 МЛН
Cadiz smart lock official account unlocks the aesthetics of returning home
0:30
ИГРОВОВЫЙ НОУТ ASUS ЗА 57 тысяч
25:33
Ремонтяш
Рет қаралды 296 М.