Holisticz - Embrace the Infinite

Step into the world of endless opportunities and unlock the gateway to virtual transactions.

  • Domain Update: Our Forum has moved! Please visit us at Holisticz.com for the latest updates.

SQLRay SQLI Vulnerability Scanner

DigitalProfit

Member

0

0%

Status

Offline

Posts

9

Likes

0

Rep

0

Bits

0

1

Years of Service

GLWS! Hackerman
 

chanchan

Premium member
Premium

0

0%

Status

Offline

Posts

7

Likes

0

Rep

0

Bits

0

11

Months of Service

(02 June, 2021 - 05:29 PM)Voltic Wrote: Show More
what types of vulns are supported:

union
blind
Error

etc

and does it include file output with injection point / what is vuln and saved with the files saying just the database types isnt very helpfull

this is only an error based scanner atm. urls are saved in files saying their database type. this scanner only tells you that a url in vulnerable, not how to exploit it.
[Image: eaJmeYh.gif]
 

chanchan

Premium member
Premium

0

0%

Status

Offline

Posts

7

Likes

0

Rep

0

Bits

0

11

Months of Service

(02 June, 2021 - 05:34 PM)Voltic Wrote: Show More
(02 June, 2021 - 05:32 PM)sirchanchan Wrote: Show More
(02 June, 2021 - 05:29 PM)Voltic Wrote: Show More
what types of vulns are supported:

union
blind
Error

etc

and does it include file output with injection point / what is vuln and saved with the files saying just the database types isnt very helpfull

this is only an error based scanner atm. urls are saved in files saying their database type. this scanner only tells you that a url in vulnerable, not how to exploit it.

then in reality this is just a worser version of sqlmap vuln checker feature which is a free tool since you only support error based
if all you care about is pure accuracy, this is probably true. however, given that this tool is fast, unlike sqlmap, it allows you to scan a large list of urls (100k+) in minutes instead of literally weeks.
[Image: eaJmeYh.gif]
 

chanchan

Premium member
Premium

0

0%

Status

Offline

Posts

7

Likes

0

Rep

0

Bits

0

11

Months of Service

(02 June, 2021 - 06:01 PM)Voltic Wrote: Show More
(02 June, 2021 - 05:39 PM)sirchanchan Wrote: Show More
(02 June, 2021 - 05:34 PM)Voltic Wrote: Show More
then in reality this is just a worser version of sqlmap vuln checker feature which is a free tool since you only support error based
if all you care about is pure accuracy, this is probably true. however, given that this tool is fast, unlike sqlmap, it allows you to scan a large list of urls (100k+) in minutes instead of literally weeks.

sqlmap wrappers exist and can easilly be done due to the huge amount of payloads in sqlmap it can be editted to users choice

i would like to see a sqlmap wrapper get 10k cpm
[Image: eaJmeYh.gif]
 

48,610

38,214

238,323

Top