Official site

DroidSQLi - Android App For Hackers


DroidSQLi - Android App For Hackers

DroidSQLi is an android app that allows you to launch SQL injection attacks on a target URL. It's fully automated, so you don't need much technical knowledge to operate this application. Just find a vulnerable URL and then put it in the "Target URL", then tap on "Inject". That's it!

DroidSQL Main Menu

[Download link is at the end of this article]

Pretty simple huh? Now you may want to know "what are the injection techniques DroidSQLi supports". If yes, take a look:
  • Time based injection
  • Blind injection
  • Error based injection
  • Normal injection
Now let's dow...

Wait...did I forget something? Yes.... I didn't tell you how to find SQLi vulnerable sites.
Here is an easy way to find SQLi vulnerable websites:

Just use any of the following Google dorks:
  • inurl:index.php?id=
  • inurl:trainers.php?id=
  • inurl:buy.php?category=
  • inurl:article.php?ID=
  • inurl:play_old.php?id=
  • inurl:declaration_more.php?decl_id=
  • inurl:pageid=
  • inurl:games.php?id=
  • inurl:page.php?file=
  • inurl:newsDetail.php?id=
  • inurl:gallery.php?id=
  • inurl:show.php?id=
  • inurl:staff_id=

Share: