<?xml version="1.0" encoding="gbk"?>
<rss version="2.0">
  <channel>
    <title>中国白客联盟 - SQL注入（SQL Injection）</title>
    <link>http://www.chinabaiker.com/forum-46-1.html</link>
    <description>Latest 20 threads of SQL注入（SQL Injection）</description>
    <copyright>Copyright(C) 中国白客联盟</copyright>
    <generator>Discuz! Board by Comsenz Inc.</generator>
    <lastBuildDate>Thu, 08 Oct 2026 07:33:14 +0000</lastBuildDate>
    <ttl>60</ttl>
    <image>
      <url>http://www.chinabaiker.com/static/image/common/logo_88_31.gif</url>
      <title>中国白客联盟</title>
      <link>http://www.chinabaiker.com/</link>
    </image>
    <item>
      <title>简单实现MySQL数据库的日志审计</title>
      <link>http://www.chinabaiker.com/thread-3335-1-1.html</link>
      <description><![CDATA[原文链接：https://www.freebuf.com/articles/es/192062.html

0×0 背景 由于MySQL社区版没有自带的审计功能或插件，对于等级保护当中对数据库管理的要求的就存在一定的不满足情况的，抛开条条框框不说数据库的日志是值得研究的，通过收集数据库的日志到企业SOC平台 ...]]></description>
      <category>SQL注入（SQL Injection）</category>
      <author>admin</author>
      <pubDate>Sun, 23 Dec 2018 13:09:49 +0000</pubDate>
    </item>
    <item>
      <title>SQL注入测试技巧TIP：再从Mysql注入绕过过滤说起</title>
      <link>http://www.chinabaiker.com/thread-3332-1-1.html</link>
      <description><![CDATA[原文链接：http://www.freebuf.com/articles/web/190266.html

对于mysql的注入，基本上是每一名web安全从业者入门的基本功，这里不多废话，结合本人无聊时在mysql上的测试，来谈一谈mysql在过滤某些特殊字符情况下的注入，因为是想到哪写到哪，文章比较散，各位大佬 ...]]></description>
      <category>SQL注入（SQL Injection）</category>
      <author>admin</author>
      <pubDate>Fri, 07 Dec 2018 02:36:09 +0000</pubDate>
    </item>
    <item>
      <title>绕过电子邮件格式过滤进行SQL注入</title>
      <link>http://www.chinabaiker.com/thread-3327-1-1.html</link>
      <description><![CDATA[原文链接：http://www.freebuf.com/articles/web/183516.html
在此之前先给大家讲个冷笑话。这篇文章原文乍一看是英文的，但仔细一看我就懵了。没错！它并不是英文，而是印度尼西亚文。还好内容并不多，不然还不得吐血~                                               ...]]></description>
      <category>SQL注入（SQL Injection）</category>
      <author>admin</author>
      <pubDate>Mon, 10 Sep 2018 07:12:11 +0000</pubDate>
    </item>
    <item>
      <title>当update注入遇到关闭显错</title>
      <link>http://www.chinabaiker.com/thread-3305-1-1.html</link>
      <description><![CDATA[原文链接：https://blog.spoock.com/2018/06/02/update-sqli-without-error/

说明关于update注入，可能大家最先想到的是报错注入，但是报错注入的前提是开启了错误显示。那如果关闭了报错显示呢？在Update的注入中如果关闭了显错该怎么办这篇文章中提出了一种在关闭 ...]]></description>
      <category>SQL注入（SQL Injection）</category>
      <author>admin</author>
      <pubDate>Mon, 18 Jun 2018 14:44:25 +0000</pubDate>
    </item>
    <item>
      <title>时间延迟盲注的三种加速注入方式[mysql篇]</title>
      <link>http://www.chinabaiker.com/thread-3288-1-1.html</link>
      <description><![CDATA[原文链接：http://www.ch1st.cn/?p=44

引言在日常渗透中，我们会遇到时间延迟盲注的场景，那么如何提高注入的速度，快速的达到注入的效果就是我们白帽子要关注的问题了。于此，笔者收集了网上三种加快时间延迟注入的方法供大伙审阅本文提到的场景是基于手写exp注入的 ...]]></description>
      <category>SQL注入（SQL Injection）</category>
      <author>admin</author>
      <pubDate>Wed, 02 May 2018 12:43:53 +0000</pubDate>
    </item>
  </channel>
</rss>