Hacksplaining
  • For Teams
Log in Start Learning

SQL Injection

The -- characters you entered caused the database to ignore the rest of the SQL statement, allowing you to be authenticated without having to supply the real password.

The -- characters you entered caused the database to ignore the rest of the SQL statement, allowing you to be authenticated without having to supply the real password.

www.securebank.com

Welcome back, user@email.com!

Your current balance is $8,266

SECURE BANK

code
SELECT *
  FROM users
 WHERE email    = ''
   AND password = ''
Application initialized.
Hacksplaining

Defend your code.

Learn

All Lessons AI Prompt Injection SQL Injection XSS CSRF

Teams

For Teams Features Pricing FAQ

Resources

Glossary OWASP Top 10 PCI Compliance Book

Legal

Privacy Terms DPA Subprocessors

© 2026 Hacksplaining. Built with in Seattle, WA, USA

Need help? Reach out to support@hacksplaining.com