Back to Directory

SQLmap

Web Testing

Automate detecting and exploiting SQL injection flaws.

Customize the parameters below to generate your target command. Use the preview box to verify syntax and click the clipboard icon to copy.

Configure Options

The target URL containing the vulnerable parameter.

Generated Command

bash - CommandsLab
$ sqlmap --risk --risk=1 --level --level=1 --batch

Command Breakdown

  • Tool:SQLmap — Automate detecting and exploiting SQL injection flaws.
  • Level:1 (Default)
  • Risk:1 (Default)
  • Action:Enumerate Databases
  • Batch Mode:Enabled — Never ask for user input, use the default behavior.

About this tool

sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers.

Pro Tip: Focus on understanding the core options first. You can use the generated command directly in your terminal, and view the Command Breakdown above to see what each flag does.