Blind SQL Injection w/Michael Buselli

UGtastic Archive
Full Transcript Available 47 Minutes
LIVE CC UGtastic Archive

Press play or click any turn in the transcript to start real-time synchronized playback...

Slides and presentation by Michael Buselli on Blind SQL Injection attacks and some ways that attackers can inject malicious behavior to gather information from your system. http://mchenry.softwarecraftsmanship.org/#!/august-meeting-blind-sql-injection
The Interviewer

Mike Hall

Interviewer, UGtastic

The Guest

Michael Buselli

Security Practitioner

The Conversation


Mike Hall Interviewer, UGtastic ▶ Speaking
Hi, welcome to UGtastic. I'm Mike Hall.
Michael Buselli Security Practitioner ▶ Speaking
Hello everyone. Blind SQL injection occurs when an application is vulnerable to SQL injection, but its HTTP response doesn't show the results of the query or database errors directly. Let's walk through time-based payload detection.