A series of SQL Injection challenges

A series of SQL Injection challenges

Posted on June 12, 2012 by Roberto Salgado

I want to introduce 3 SQL Injection challenges I originally created for the GuadalajaraCON CTF. After the conference had come to a close, I decided to open these challenges to the public via twitter and sla.ckers. Almost 2 months later, most challenges have yet to be solved, so I figured it was time to make an official post. Additionally, to make the challenges easier and more appealing to everyone, I went ahead and translated them to English.

Each challenge has 2 parts, A and B. The second part, B, is a modified version of A and is a bit harder. If you think you have what it takes, you can access the challenges at:

http://50.57.51.240/challenges/

Please submit your solutions to [email protected], including the SQL Injection used to solve the challenge. Only solutions which use SQL Injection will be accepted.

 

I hope you enjoy solving them!


Latest Blog Entries

Panoptic
An overview of Panoptic, an open source penetration testing tool that automates the process of search and retrieval of common log and config files through LFI vulnerabilities.

Special discount code for "Nmap 6: Network Exploration and Security Auditing Cookbook"
PacktPub created a special discount code for our friends from HackerHalted

Mac2WepKey HHG5xx for iPhone
The famous app to obtain the default WiFi passwords for Huawei routers is now available for the iPhone iOS 5.

Latest News

Oct 01, 2013
Websec at DerbyCon 2013
A summary of Websec's participation at DerbyCon 2013 in Louisville, Kentucky.

Sep 16, 2013
Websec's participation at Black Hat, CSI and XCon
Websec is grateful to have been able to participate in the month of August at great conferences such as Black Hat, CSI and XCon.