A series of SQL Injection challenges

A series of SQL Injection challenges

Posted on June 12, 2012 by Roberto Salgado

I want to introduce 3 SQL Injection challenges I originally created for the GuadalajaraCON CTF. After the conference had come to a close, I decided to open these challenges to the public via twitter and sla.ckers. Almost 2 months later, most challenges have yet to be solved, so I figured it was time to make an official post. Additionally, to make the challenges easier and more appealing to everyone, I went ahead and translated them to English.

Each challenge has 2 parts, A and B. The second part, B, is a modified version of A and is a bit harder. If you think you have what it takes, you can access the challenges at:

http://50.57.51.240/challenges/

Please submit your solutions to [email protected], including the SQL Injection used to solve the challenge. Only solutions which use SQL Injection will be accepted.

 

I hope you enjoy solving them!


Latest Blog Entries

Panoptic
An overview of Panoptic, an open source penetration testing tool that automates the process of search and retrieval of common log and config files through LFI vulnerabilities.

Special discount code for "Nmap 6: Network Exploration and Security Auditing Cookbook"
PacktPub created a special discount code for our friends from HackerHalted

Mac2WepKey HHG5xx for iPhone
The famous app to obtain the default WiFi passwords for Huawei routers is now available for the iPhone iOS 5.

Latest News

Jun 18, 2014
Websec present at Campus Party 2014

Websec will be participating with four conferences at the largest Campus Party ever held, which will take place from the 24-29 of June in Guadalajara, Mexico.

Oct 01, 2013
Websec at DerbyCon 2013
A summary of Websec's participation at DerbyCon 2013 in Louisville, Kentucky.