Teach you to see what logs might contain SQL injection

Source: Internet
Author: User

If there is an input, it must have been scanned by the line.

I've had the time of the SQL injection on the site before.

In general, there will be an injection of the scan with a keyword

such as what hex select Concat from Information_schema union and so on these key

I'll post a log here.

shop/product/129.html?cid=324+and%28select+1+from%28select+count%28*%29%2cconcat%28%28select+%28select+concat% 280x7e%2c0x27%2cunhex%28hex%28cast%28database%28%29+as+char%29%29%29%2c0x27%2c0x7e%29%29+from+%60information_ Schema%60.tables+limit+0%2c1%29%2cfloor%28rand%280%29*2%29%29x+from+%60information_schema%60.tables+group+by+x %29a%29+and+1%3d1

Like having such access to the IP don't want to drop it directly


So we can write a script to check the log status of the server as long as it involves these things you can write these IP to a log file to do the analysis or directly kill

This article is from the "believe it or not you" blog, please be sure to keep this source http://312461613.blog.51cto.com/965442/1530217

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.