Basic 8
Hi,
I've figured out the first javascript part of this challenge but need some guidelines on the SQL injection. I have tried a few things but might be heading in the wrong direction now? I have tried entering the injection into the password input box itself which gives an error showing the string is constucted as I intended but this does not work. I have tried appending the injection onto the URL but am a bit stuck with spaces and how the SQL sytax works in the URL. If anyone can provide some help or PM on this that would be great:D
http://www.hellboundhackers.org/articles/345-blind-sql-injection.html
That's a good article.
http://www.w3schools.com/sql/default.asp
And the best one yet….Drum roll……..
Hope that helps. If your confused you can always PM me.:D