pen-test
[Top] [All Lists]

Scanning for SQL Injection

To: <pen-test@securityfocus.com>
Subject: Scanning for SQL Injection
From: "Ron Johnson - Adhost" <ron@adhost.com>
Date: Thu, 28 Jun 2007 13:06:35 -0700
Cc: <listbounce@securityfocus.com>
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
Resent-date: Thu, 28 Jun 2007 14:55:43 -0600 (MDT)
Resent-from: pen-test-return-1078484502@securityfocus.com
Resent-message-id: <20070628205543.8D8FB237BFF@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
Thread-index: Ace5v9QHp3mfBHITTs64baEn30Gziw==
Thread-topic: Scanning for SQL Injection
Hi. I need to scan about 350+ sites from three different web servers that all 
connect to one MS SQL server for SQL injection. Any ideas on how to make this 
not take a long long time?
 
I like the Priamos tool but you can only scan one site at a time, and you can't 
load a list of any sort, etc.
 
Any input is appreciated

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Swap Out your SPI or Watchfire app sec solution for
Cenzic's robust, accurate risk assessment and management
solution FREE - limited Time Offer

http://www.cenzic.com/wf-spi
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>