BLIND SQL INJECTION

NAIROBI - 12122 JUJA, 1212 - View Map Jomo Kenyatta University of Agriculture and Technology
Thu, Oct 28, 2021, 6:00 PM (EAT)

Blind SQL (Structured Query Language) injection is a type of SQL Injection attack that asks the database true or false questions and determines the answer based on the applications response. This attack is often used when the web application is configured to show generic error messages, but has not mitigated the code that is vulnerable to SQL injection.

About this event

When an attacker exploits SQL injection, sometimes the web application displays error messages from the database complaining that the SQL Query’s syntax is incorrect. Blind SQL injection is nearly identical to normal SQL Injection, the only difference being the way the data is retrieved from the database. When the database does not output data to the web page, an attacker is forced to steal data by asking the database a series of true or false questions. This makes exploiting the SQL Injection vulnerability more difficult, but not impossible. .

Speaker

Facilitators

When

Thursday, Oct 28
6:00 PM - 9:00 PM (EAT)

Where

NAIROBI
12122 JUJA1212

Organizers