Which of the following is the best SQL injection scanning tool? I want to fully scan my website and feel at ease. Oh, who has a better tool to recommend? it is best to have an authoritative one. you can also do it in China. thank you first. My website is Linux + PHP + MSSQL ------ solution ------------------ The best SQL scanner in the world is recognized as "self", because the human brain is the smartest, this is a joke, go to the subject: which of the following is the best recognized SQL injection scanning tool?
I want to fully scan my website and feel at ease. Oh, who has a better tool to recommend? it is best to have an authoritative one. you can also do it in China. thank you first. My website is Linux + PHP + MSSQL
------ Solution --------------------
The best SQL scanner in the world is recognized as "yourself", because the human brain is the smartest. this is a joke:
"Yourself" is the best scanner. SQL injection is usually the best type. you only need to test it yourself (add single quotation marks (double quotation marks are not required) after the characters in the URL parameter ); add and 1 = 2 after the parameter; add and 1 = 1 after the parameter). These three methods (the first two show that there is no SQL injection vulnerability, if the third party shows normal, but the first two are abnormal, there is an SQL injection vulnerability), you can check whether the SQL vulnerability exists. you can also check whether the filter functions such as mysql_real_escape_string are used in the PHP file, with this function, there is basically no SQL injection vulnerability.
------ Solution --------------------
D?
------ Solution --------------------
Pangolin