The site techpanda.org is a portal to a database. It contains information on personal contacts. One needs to supply an email and a password to login. However, it is not fully patched, and it is...




The site techpanda.org is a portal to a database. It contains information on personal contacts. One needs to supply an email and a password to login. However, it is not fully patched, and it is susceptible to SQL injection attacks. This is intentional for educational purposes. You are asked to use your knowledge about security and successfully log in. a. [10 pts] Failed login attempt. Use any login information (for email and password) and submit. If the system responds with “login failed” take a screen-shot of the response. Add the screen shot to your answer. b. [20 pts] Successful login attempt. Use a SQL injection attack to enter the system. Take a screen-shot of the successful login. Add the screen shot to your answer. c. [20 pts] Write a SQL query that the website could be executing to authenticate a user. Use the email and password that you typed on the techpanda.org website.



May 19, 2022
SOLUTION.PDF

Get Answer To This Question

Submit New Assignment

Copy and Paste Your Assignment Here