<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Injection in Order by, Group by Clause</title>
	<atom:link href="http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/</link>
	<description>From Pentesters To Pentesters</description>
	<lastBuildDate>Thu, 08 Jul 2010 02:17:27 +0100</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: GDSG</title>
		<link>http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/comment-page-1/#comment-97786</link>
		<dc:creator>GDSG</dc:creator>
		<pubDate>Thu, 08 Jul 2010 02:17:27 +0000</pubDate>
		<guid isPermaLink="false">http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/#comment-97786</guid>
		<description>THANKS MAN!!!
I try to figure this out about 2 days, cuz IF(1=1,1,1) not worked, but this ROCKS.

Thanks Again!</description>
		<content:encoded><![CDATA[<p>THANKS MAN!!!<br />
I try to figure this out about 2 days, cuz IF(1=1,1,1) not worked, but this ROCKS.</p>
<p>Thanks Again!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Lord</title>
		<link>http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/comment-page-1/#comment-84235</link>
		<dc:creator>Lord</dc:creator>
		<pubDate>Tue, 21 Apr 2009 14:34:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/#comment-84235</guid>
		<description>of course -.-&#039;
Thank you.</description>
		<content:encoded><![CDATA[<p>of course -.-&#8217;<br />
Thank you.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: sid</title>
		<link>http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/comment-page-1/#comment-83968</link>
		<dc:creator>sid</dc:creator>
		<pubDate>Fri, 17 Apr 2009 15:00:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/#comment-83968</guid>
		<description>This is how, you can convert this into standard true and false responses. Think of that error as a &#039;false&#039; response which you get when doing boolean injection;

e.g. id=100 and 1=1; id=100 and 1=2;

----</description>
		<content:encoded><![CDATA[<p>This is how, you can convert this into standard true and false responses. Think of that error as a &#8216;false&#8217; response which you get when doing boolean injection;</p>
<p>e.g. id=100 and 1=1; id=100 and 1=2;</p>
<p>&#8212;-</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Lord</title>
		<link>http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/comment-page-1/#comment-83901</link>
		<dc:creator>Lord</dc:creator>
		<pubDate>Thu, 16 Apr 2009 22:07:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/#comment-83901</guid>
		<description>Server Version: 5.1.30
I meant especially the &quot;order by&quot;-case.
What happens is exactly the shown reaction. What does that error tell me (regarding the injection)?</description>
		<content:encoded><![CDATA[<p>Server Version: 5.1.30<br />
I meant especially the &#8220;order by&#8221;-case.<br />
What happens is exactly the shown reaction. What does that error tell me (regarding the injection)?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: sid</title>
		<link>http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/comment-page-1/#comment-83838</link>
		<dc:creator>sid</dc:creator>
		<pubDate>Thu, 16 Apr 2009 08:32:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/#comment-83838</guid>
		<description>what version of the mysql are you trying this?

I think this doesnot work in some of the recent versions</description>
		<content:encoded><![CDATA[<p>what version of the mysql are you trying this?</p>
<p>I think this doesnot work in some of the recent versions</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Lord</title>
		<link>http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/comment-page-1/#comment-83793</link>
		<dc:creator>Lord</dc:creator>
		<pubDate>Wed, 15 Apr 2009 20:59:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.notsosecure.com/folder2/2008/08/01/injection-in-order-by-clause/#comment-83793</guid>
		<description>Great. Thats exactly what I was searching for.
Not so great: I do not understand what the example should do...</description>
		<content:encoded><![CDATA[<p>Great. Thats exactly what I was searching for.<br />
Not so great: I do not understand what the example should do&#8230;</p>
]]></content:encoded>
	</item>
</channel>
</rss>
