Injection type
boolean-based Blind SQL Injection (Boolean injection) error-based SQL injection (Error injection) union query SQL injection (Federated query injection) stacked Queries SQL injection (multi-statement query injection) time-based blind SQL injection (based on time delay injection)
Database type
-a:access
-M:mysql
-S:sql Server
-P:postgresql
-O:oracle
-I:informix
-D:DB2
Database judgment
Comment Judgment
-(SM)
DROP sampletable;–
# (M)
DROP sampletable;#
Specific functions
function Len () (SMD)
function Length () (IO)
function @ @version (SM)
Function version () (M)
function substring () (S)
function substr () (O)
Display error message judgment
General combination judgment of programming language
APS (A)
APSX (S)
PHP (M)
JSP (OM)
PS Other annotations function
/* Here is the content of the comment */(SM)
drop/* Comment */sampletable
dr/**/op/* Bypass Filtering */sampletable
select/* eliminate whitespace */password/**/from/**/members
/*! MYSQL Proprietary SQL */(M)
SQL Injection Data collation