Skip to main content

sqlmap

Instalation

sudo apt-get install sqlmap

Basic Usage

sqlmap -u <targetURL>  # command to scan for vulnerabilities
ExampleDescription
-u URLThe target URL
-d DIRECTConnection string for direct database connection
-l LOGFILEParse target(s) from Burp or WebScarab proxy log file
-m BULKFILEScan multiple targets given in a textual file
ExampleDescription
--torUse Tor anonymity network
-oTurn on all optimization switches
--tablesEnumerate DBMS database tables
--privilegesEnumerate DBMS users privileges
--usersEnumerate DBMS users

Examples

sqlmap -u "https://highon.coffee" -D "$database-name" --tables 

sqlmap -u "https://highon.coffee" --dbs

Legion

GUI Based. Enter URL and risk Level.