Blind SQL injection with time delays (Video solution, Audio)

preview_player
Показать описание
This video shows the lab solution of "Blind SQL injection with time delays" from Web Security Academy (Portswigger)

Рекомендации по теме
Комментарии
Автор

does 'and pg_sleep(10)-- work? I tried but no effect. Why can it be wrong?

tehdisko
Автор

Why don't you try using AND or anything else but use || first?

duylt_letrongduy
Автор

pls, can you tell me why use pg_sleep() why not use sleep()?
Why do u know?

hnq