SQL Power Injector 1.1.1
SQL Power Injector is an application created in .
|
SQL Power Injector is an application created in .Net 1.1 that helps the penetration tester to inject SQL commands on a web page.
For now SQL Power Injector is SQL Server, Oracle, MySQL and Sybase/Adaptive Server compliant, but it is possible to use it with any existing DBMS when using the inline injection (Normal mode). Indeed, the normal mode is basically the command that someone will put in the parameter sent to the server.
If the aspect of inline SQL injection is powerful in itself, its main strength dwells in the multithreaded automation of the injection. Not only there is a possibility to automate tedious and time consuming queries but you can also modify the query to get only what you want.
SQL Power Injectoris obviously more useful in the blind SQL injection since the other ways to exploit the SQL injection vulnerability is more effusive and much faster when the results are displayed on the web page (union select in a HTML table and generated 500 error for instance).
SQL Power Injector automation can be realized in two ways: by time delay or comparing the expected result.The first way is generally compared against an error or difference between positive condition with a negative one and the second way will turn out positive if the time delay sent to the server equals to the one parameterized in the application.
The main effort done on SQL Power Injector was to make it as painless as possible to find and exploit a SQL injection vulnerability without using any browser.
That is why you will notice in that there is an integrated browser that will display the results of the SQL Power Injector injection parameterized in a way that any related standards SQL error will be displayed without the rest of the page.
Of course, like many other features of SQL Power Injector, there are ways to parameterize the response of the server to make it as talkative to you as possible.
Another important part of SQL Power Injector is its power to get all the parameters you need to test the SQL injection, either by GET or POST method.
tags
sql power power injector sql injection the server the sql time delay browser that the results injection vulnerability normal mode web page

Download SQL Power Injector 1.1.1
Download SQL Power Injector 1.1.1
Authors software
SQL Power Injector 1.1.1
Francois Larouche
SQL Power Injector is an application created in .
Similar software
SQL Power Injector 1.1.1
Francois Larouche
SQL Power Injector is an application created in .
Injector 1.0
Ysgyfarnog
Injector provides a mechanism to inject a Dynamic Link Library (DLL) into an arbitrary process.
FLV Metadata Injector 1.0.2
Manitu Group
FLV Metadata Injector from Buraks allows you to inject an object containing two arrays into the FLV's metadata.
Mp3 Turbo Injector 1.5
ULTIMATE SYSTEMS
MP3 Turbo Injector is a 32-bit application for Windows, which inserts a MPEG audio (MP3) file into another MP3 file.
LLXInjector 1.2
Lava Monkey
LLXInjector helps you inject manifest files into your final assembly software in order to achieve a professional XP look.
Bandwidth Tester 0.5.5
Jeremy Gillick
BandwidthTester is an app created for Mozilla and Firefox which helps you view the bandwidth of your current internet connection.
SWF ScriptLimits Injector 1.0
Manitu Group
SWF ScriptLimits Injector (SWFSLI) is a Win32 console (command line) application that can modify/remove/add 'ScriptLimits' tag to a SWF file.
dll-inject 1.0
Prim Soft Pro S.R.L.
dll-inject permits injection of dll's into another process just before this will start.
Server Tester 1.0
SHARKTICUS
Server Tester is a free, small and easy to use application which pings websites, servers or IP addresses to test for a response.
Image Filter Tester 1.1
swiftgear.com
Image Filter Tester is an image processing application that applies any number of layers of user-defined filters to an image and immediately shows the result.
Other software in this category
MultiSearchPRO 1.0.0 Beta
Yonatan Matalon
MultiSearchPRO enables you to search for web pages from several search engines simultaneously quickly and easily.
RomPhone 2000 2.1
Anunt Online
RomPhone 2000 is a aplication used to find online telephone numbers and addresses of the romanian people.
2002 FIFA World Cup Informer 1.9
A.I.Studio
2002 FIFA World Cup Informer will keep you informed of all FIFA World Cup events.
FirstStop WebSearch Standard Edition 5.0b
FirstStop WebSearch LLC
FirstStop WebSearch Standard Edition is incredibly fast desktop application which can searches multiple search engines and web sites simultaneously for a more comprehensive Internet experience.
Help me find site 0.9.2003
Softexe.com, CIT AdaSoft
This utility helps to find new sites all over the world.