Home 测试websocket的sqlisqlinjection,使用sqlmap与sqlmap Websocket Proxy
Post
Cancel

测试websocket的sqlisqlinjection,使用sqlmap与sqlmap Websocket Proxy

refer to:

https://rayhan0x01.github.io/ctf/2021/04/02/blind-sqli-over-websocket-automation.html

https://github.com/BKreisel/sqlmap-websocket-proxy

原理:

sqlmap无法直接使用websocket(或者说非常有限)

所以创建一个websocket代理,来进行sqlmap各种参数的转发

安装

python3 -m pip install sqlmap-websocket-proxy

This post is licensed under CC BY 4.0 by the author.