<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-7122745763234660283.post5790043002357425626..comments</id><updated>2010-11-09T14:24:40.712-08:00</updated><category term='jQuery'/><category term='Web Attacks'/><category term='Advisory'/><category term='Applet Security'/><category term='Http Request Splitting'/><category term='Application Security'/><category term='Http Parameter Pollution'/><category term='malware'/><category term='Cross Site Scripting'/><category term='Dom Xss'/><category term='DOMinator'/><category term='WWeb Security'/><category term='Banking'/><category term='Java'/><category term='Information Disclosure'/><category term='Omniture'/><category term='Spring MVC'/><category term='Expression Language Injection'/><category term='Java Security'/><category term='twitter'/><category term='Sharepoint'/><category term='Web Security'/><category term='Client Side HTTP Parameter Pollution'/><category term='JNLP Security'/><category term='JSON'/><category term='Liferay'/><category term='Same Origin Policy'/><category term='Arbitrary Code Execution'/><title type='text'>Comments on Minded Security Blog: MySQL Stacked Queries with SQL Injection...sort of...</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://blog.mindedsecurity.com/feeds/5790043002357425626/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default'/><link rel='alternate' type='text/html' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html'/><author><name>Minded Security</name><uri>http://www.blogger.com/profile/01503616812076743415</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>7</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-7122745763234660283.post-6725389014280242136</id><published>2010-11-09T14:24:40.712-08:00</published><updated>2010-11-09T14:24:40.712-08:00</updated><title type='text'>@Stefano, really nice trick. The only problem of t...</title><content type='html'>@Stefano, really nice trick. The only problem of this trick AFAIK is that MySQL needs to be restarted after you create the trigger files in order to work.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/6725389014280242136'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/6725389014280242136'/><link rel='alternate' type='text/html' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html?showComment=1289341480712#c6725389014280242136' title=''/><author><name>Nuno Loureiro</name><uri>http://blog.sig9.net</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html' ref='tag:blogger.com,1999:blog-7122745763234660283.post-5790043002357425626' source='http://www.blogger.com/feeds/7122745763234660283/posts/default/5790043002357425626' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1304616519'/></entry><entry><id>tag:blogger.com,1999:blog-7122745763234660283.post-5808445220840011347</id><published>2010-04-22T03:22:52.627-07:00</published><updated>2010-04-22T03:22:52.627-07:00</updated><title type='text'>@Stefano, yes definitely. I will plan to add suppo...</title><content type='html'>@Stefano, yes definitely. I will plan to add support for it.&lt;br /&gt;&lt;br /&gt;@Luca: to complete Ferruh&amp;#39;s cheatsheet you can merge the details of my paper. The new bits follow:&lt;br /&gt;* Oracle by design does not support stacked queries in any language.&lt;br /&gt;* MySQL only on ASP.NET.&lt;br /&gt;* PostgreSQL on ASP/ASP.NET/PHP, don&amp;#39;t really know in JSP/Java.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/5808445220840011347'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/5808445220840011347'/><link rel='alternate' type='text/html' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html?showComment=1271931772627#c5808445220840011347' title=''/><author><name>Bernardo Damele A. G.</name><uri>http://www.blogger.com/profile/09559797097905287612</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='23' height='32' src='http://1.bp.blogspot.com/_NdJnb2zHUZo/SRmroHlRabI/AAAAAAAAAGk/uAY34RWaUEw/S220/inquis.jpg'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html' ref='tag:blogger.com,1999:blog-7122745763234660283.post-5790043002357425626' source='http://www.blogger.com/feeds/7122745763234660283/posts/default/5790043002357425626' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1130561741'/></entry><entry><id>tag:blogger.com,1999:blog-7122745763234660283.post-4798886232040918937</id><published>2010-04-21T08:43:04.436-07:00</published><updated>2010-04-21T08:43:04.436-07:00</updated><title type='text'>@luca 
agree, this is, in fact, more than a stacke...</title><content type='html'>@luca &lt;br /&gt;agree, this is, in fact, more than a stacked query :)&lt;br /&gt;&lt;br /&gt;Is more a raising in the impact.&lt;br /&gt;And I expect people to get some good exploitable crash on table formats to gain shell access.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/4798886232040918937'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/4798886232040918937'/><link rel='alternate' type='text/html' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html?showComment=1271864584436#c4798886232040918937' title=''/><author><name>Minded Security</name><uri>http://www.blogger.com/profile/01503616812076743415</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html' ref='tag:blogger.com,1999:blog-7122745763234660283.post-5790043002357425626' source='http://www.blogger.com/feeds/7122745763234660283/posts/default/5790043002357425626' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1570645034'/></entry><entry><id>tag:blogger.com,1999:blog-7122745763234660283.post-678693622111018699</id><published>2010-04-21T08:36:33.686-07:00</published><updated>2010-04-21T08:36:33.686-07:00</updated><title type='text'>As Bernardo has already pointed out, stacked queri...</title><content type='html'>As Bernardo has already pointed out, stacked queries depend on the language/dbms combination. &lt;br /&gt;&lt;br /&gt;It will be really useful to complete the &amp;quot;Language/Database Stacked Query Support Table&amp;quot; in Ferruh&amp;#39;s cheatsheet http://ferruh.mavituna.com/sql-injection-cheatsheet-oku/&lt;br /&gt;&lt;br /&gt;Cheers!</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/678693622111018699'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/678693622111018699'/><link rel='alternate' type='text/html' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html?showComment=1271864193686#c678693622111018699' title=''/><author><name>Luca Carettoni</name><uri>http://www.blogger.com/profile/09957564681262364569</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://1.bp.blogspot.com/_5TMxqPSTp9k/SXnAA-dClZI/AAAAAAAAA1s/80j8Ko3ETb4/S220/lucacarettoni_small.jpg'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html' ref='tag:blogger.com,1999:blog-7122745763234660283.post-5790043002357425626' source='http://www.blogger.com/feeds/7122745763234660283/posts/default/5790043002357425626' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1115243246'/></entry><entry><id>tag:blogger.com,1999:blog-7122745763234660283.post-4359927776079040149</id><published>2010-04-21T06:07:17.377-07:00</published><updated>2010-04-21T06:07:17.377-07:00</updated><title type='text'>nice one!

sid
www.notsosecure.com</title><content type='html'>nice one!&lt;br /&gt;&lt;br /&gt;sid&lt;br /&gt;www.notsosecure.com</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/4359927776079040149'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/4359927776079040149'/><link rel='alternate' type='text/html' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html?showComment=1271855237377#c4359927776079040149' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html' ref='tag:blogger.com,1999:blog-7122745763234660283.post-5790043002357425626' source='http://www.blogger.com/feeds/7122745763234660283/posts/default/5790043002357425626' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1421480967'/></entry><entry><id>tag:blogger.com,1999:blog-7122745763234660283.post-2821610256692290526</id><published>2010-04-21T03:56:33.930-07:00</published><updated>2010-04-21T03:56:33.930-07:00</updated><title type='text'>Bernardo, 
very fast response! :)
I already read y...</title><content type='html'>Bernardo, &lt;br /&gt;very fast response! :)&lt;br /&gt;I already read your very good paper but I missed the ASP.NET &amp;quot;feature&amp;quot;!&lt;br /&gt;Good to know that.&lt;br /&gt;&lt;br /&gt;Thanks a lot and keep up the good work.&lt;br /&gt;(do you think this technique could be a new feature on SQLMap? :)&lt;br /&gt;&lt;br /&gt;Stefano</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/2821610256692290526'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/2821610256692290526'/><link rel='alternate' type='text/html' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html?showComment=1271847393930#c2821610256692290526' title=''/><author><name>Stefano Di Paola</name><uri>http://www.blogger.com/profile/18241677936736054546</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html' ref='tag:blogger.com,1999:blog-7122745763234660283.post-5790043002357425626' source='http://www.blogger.com/feeds/7122745763234660283/posts/default/5790043002357425626' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-157727315'/></entry><entry><id>tag:blogger.com,1999:blog-7122745763234660283.post-6633472103496472367</id><published>2010-04-21T03:44:27.922-07:00</published><updated>2010-04-21T03:44:27.922-07:00</updated><title type='text'>Stefano,

Nice post!
By the way, not only MSSQL su...</title><content type='html'>Stefano,&lt;br /&gt;&lt;br /&gt;Nice post!&lt;br /&gt;By the way, not only MSSQL supports stacked queries via SQL injection: on MySQL/ASP.NET and PostgreSQL with ASP/ASP.NET/PHP it is possible to use stacked queries via SQL injection too.&lt;br /&gt;If you are interested, see my whitepaper, http://sqlmap.sourceforge.net/doc/BlackHat-Europe-09-Damele-A-G-Advanced-SQL-injection-whitepaper.pdf for details.&lt;br /&gt;&lt;br /&gt;Bernardo</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/6633472103496472367'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7122745763234660283/5790043002357425626/comments/default/6633472103496472367'/><link rel='alternate' type='text/html' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html?showComment=1271846667922#c6633472103496472367' title=''/><author><name>Bernardo</name><uri>http://bernardodamele.blogspot.com</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.mindedsecurity.com/2010/04/mysql-stacked-queries-with-sql.html' ref='tag:blogger.com,1999:blog-7122745763234660283.post-5790043002357425626' source='http://www.blogger.com/feeds/7122745763234660283/posts/default/5790043002357425626' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1566863686'/></entry></feed>
