This commit is contained in:
Alexandre ZANNI 2025-11-01 13:42:34 +05:30 committed by GitHub
commit ebf4b58daa
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

View File

@ -24,6 +24,7 @@ def tamper(payload, **kwargs):
Reference: Reference:
* http://shiflett.org/blog/2006/jan/addslashes-versus-mysql-real-escape-string * http://shiflett.org/blog/2006/jan/addslashes-versus-mysql-real-escape-string
* https://lonewolfzero.wordpress.com/2017/07/03/addslashes-multibyte-sql-injection-mysql-and-php-case-study/
>>> tamper("1' AND 1=1") >>> tamper("1' AND 1=1")
'1%bf%27-- -' '1%bf%27-- -'