sqlmap

sqlmap is an open source penetration testing tool that can be used to automate the process of detecting and exploiting SQL injection flaws. [1]

ID: S0225
Type: TOOL
Version: 1.1
Created: 18 April 2018
Last Modified: 19 April 2026

Techniques Used

Domain ID Name Use
Enterprise T1190 Exploit Public-Facing Application

sqlmap can be used to automate exploitation of SQL injection vulnerabilities.[1]

Groups That Use This Software

ID Name References
G0130 Ajax Security Team

[2]

G0096 APT41

[3]

Campaigns

ID Name Description
C0061 Operation Digital Eye

During Operation Digital Eye, threat actors used (LinkdById: S0225) to automate SQL injection.[4]

References