A small and an efficent tool to detect sql injection vulnerabilities in a websites. Its a pretty simple tool just add urls and payloads file to the script
and it will scan for sql injection from your desire payloads.
echo "target.com" | waybackurls | gf sqli | tee sqls.txt
Now pass sqls.txt to my tool.
1. only curl is required.
2. Your SQL Injection Payloads List.
1. git clone https://github.com/machine1337/sqlscan
2. cd sqlscan && chmod +x scan.sh
1. ./scan.sh
Q: What should my urls.txt file looks like?
A: http://testphp.vulnweb.com/artists.php?artist=2
or
A: http://testphp.vulnweb.com without / at the end
If u like my tool kindly give us a star and follow. Thanks!