sqlmap

Automatic SQL injection and database takeover tool

38,168 stars Python Markdown Skills API Spec #api-security#appsec#database#database-security
AI Prompts & Specs

Repository: sqlmapproject/sqlmap


Stars: 37083

README.md

sqlmap ![](https://i.imgur.com/fe85aVR.png)

![.github/workflows/tests.yml](https://github.com/sqlmapproject/sqlmap/actions/workflows/tests.yml) ![Python 2.7|3.x](https://www.python.org/) ![License](https://raw.githubusercontent.com/sqlmapproject/sqlmap/master/LICENSE) ![x](https://x.com/sqlmap)

sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers. It comes with a powerful detection engine, many niche features for the ultimate penetration tester, and a broad range of switches including database fingerprinting, over data fetching from the database, accessing the underlying file system, and executing commands on the operating system via out-of-band connections.

Screenshots
----

!Screenshot

You can visit the collection of screenshots demonstrating some of the features on the wiki.

Installation
----

You can download the latest tarball by clicking here or latest zipball by clicking here.

Preferably, you can download sqlmap by cloning the Git repository:

git clone --depth 1 https://github.com/sqlmapproject/sqlmap.git sqlmap-dev

sqlmap works out of the box with Python version 2.7 and 3.x on any platform.

Usage
----

To get a list of basic options and switches use:

python sqlmap.py -h

To get a list of all options and switches use:

python sqlmap.py -hh

You can find a sample run here.
To get an overview of sqlmap capabilities, a list of supported features, and a description of all options and switches, along with examples, you are advised to consult the user's manual.

Links
----

* Homepage: https://sqlmap.org
* Download: .tar.gz or .zip
* Commits RSS feed: https://github.com/sqlmapproject/sqlmap/commits/master.atom
* Issue tracker: https://github.com/sqlmapproject/sqlmap/issues
* User's manual: https://github.com/sqlmapproject/sqlmap/wiki
* Frequently Asked Questions (FAQ): https://github.com/sqlmapproject/sqlmap/wiki/FAQ
* X: @sqlmap
* Demos: https://www.youtube.com/user/inquisb/videos
* Screenshots: https://github.com/sqlmapproject/sqlmap/wiki/Screenshots

Translations
----

* Arabic
* Bengali
* Bulgarian
* Chinese
* Croatian
* Dutch
* French
* Georgian
* German
* Greek
* Hindi
* Indonesian
* Italian
* Japanese
* Korean
* Kurdish (Central)
* Persian
* Polish
* Portuguese
* Russian
* Serbian
* Slovak
* Spanish
* Turkish
* Ukrainian
* Vietnamese