Credits go out to http://infinityexists.com/
November 14th, 2007 by Patchy
The Sql Injection Challenge has already been completed, so here is a video demonstration on how to find this Sql Injection flaw and exploited it to extract password hashes. In this video I use a firefox plugin Data Tamper