ron190/jsql-injection

GitHub: ron190/jsql-injection

一款轻量级的Java图形化SQL注入自动化工具,用于检测和利用SQL注入漏洞并提取数据库信息。

Stars: 1742 | Forks: 443

## 描述 **jSQL Injection** 是一个轻量级应用程序,用于从服务器获取数据库信息。 它是**免费**、**开源**且**跨平台**的(支持 Windows、Linux 和 Mac),并支持 Java 21 到 25 版本。 jSQL Injection 也是官方渗透测试发行版 [Kali Linux](https://www.kali.org) 的一部分,并被包含在 [Pentest Box](https://pentestbox.com)、[Parrot Security OS](https://www.parrotsec.org)、[ArchStrike](https://archstrike.org) 和 [BlackArch Linux](http://www.blackarch.org) 等多种其他发行版中。 [![Java](https://img.shields.io/badge/java-21%20to%2025-orange?logo=java "Version range compatibility")](http://www.oracle.com/technetwork/java/javase/downloads/) [![JUnit](https://img.shields.io/badge/junit-5-50940f "Tests")](http://junit.org) [![Maven](https://img.shields.io/badge/maven-3.6-a2265a "Build")](https://maven.apache.org/) [![Spring](https://img.shields.io/badge/spring-4-6cb52d "Spring")](https://spring.io/) [![License](https://img.shields.io/github/license/ron190/jsql-injection "License")](http://www.gnu.org/licenses/old-licenses/gpl-2.0.html)
[![GitHub](https://img.shields.io/badge/build-blue?logo=github "Github Actions status")](https://github.com/ron190/jsql-injection/actions) [![Codecov](https://img.shields.io/codecov/c/github/ron190/jsql-injection?label=coverage&logo=codecov "Codecov test coverage")](https://codecov.io/gh/ron190/jsql-injection) [![Codacy](https://img.shields.io/codacy/grade/e7ccb247f9b74d489a1fa9f9483c978f?label=quality&logo=codacy "Codacy code quality")](https://app.codacy.com/gh/ron190/jsql-injection/dashboard) [![Snyk](https://img.shields.io/badge/build-monitored-8A2BE2?logo=snyk&label=security "Snyk code vulnerability")](#)
[![Sonar](https://img.shields.io/sonar/violations/ron190:jsql-injection?format=long&label=issues&logo=sonarqube&server=https%3A%2F%2Fsonarcloud.io "Sonar code issues")](https://sonarcloud.io/dashboard?id=ron190%3Ajsql-injection) ## 维基 在 [wiki](https://github.com/ron190/jsql-injection/wiki) 中阅读关于 jSQL [功能](https://github.com/ron190/jsql-injection/wiki/General) 的更多信息。 对于程序员,可以访问生成的 [Maven 报告](https://ron190.github.io/jsql-injection/) 和 [Sonar 分析](https://sonarcloud.io/dashboard?id=ron190%3Ajsql-injection) 来分析内部指标,并打开 wiki 中的 [编程部分](https://github.com/ron190/jsql-injection/wiki/Programming) 以获取更多详细信息。 ## 安装 首先,安装 :coffee: [Java](https://jdk.java.net) 21 或最高至 25 版本,然后下载最新的 jSQL [发布版](https://github.com/ron190/jsql-injection/releases/) 并双击文件 `jsql-injection-v0.114.jar` 以运行该软件。 你也可以在终端中输入 `java -jar jsql-injection-v0.114.jar` 来启动程序。 如果你使用的是 Kali Linux,则可以通过 `sudo apt-get -f install jsql` 获取最新版本,或者通过 `apt update` 然后执行 `apt full-upgrade` 进行系统全面升级。 ## 截图 [](https://github.com/ron190/jsql-injection/raw/master/web/images/app/theme-light.png) [](https://github.com/ron190/jsql-injection/raw/master/web/images/app/theme-dark.png) [](https://github.com/ron190/jsql-injection/raw/master/web/images/v0.102/database-dark.png) [](https://github.com/ron190/jsql-injection/raw/master/web/images/v0.102/sqlengine.png) [](https://github.com/ron190/jsql-injection/raw/master/web/images/v0.102/tamper.png) [](https://github.com/ron190/jsql-injection/raw/master/web/images/v0.102/shell.png) ## 免责声明
标签:CISA项目, CVE利用, JS文件枚举, JUnit, Maven, Spring, Web安全, 反取证, 域名枚举, 安全评估, 开源, 攻击路径可视化, 数据库提权, 数据提取, 注入攻击, 漏洞验证, 网络安全, 自动注入, 蓝队分析, 隐私保护, 黑客工具