sqlmap is one of the most well-known open source penetration testing that automates the process of detecting and executing SQL Injections. It is based on python and can be found on Kali Linux or downloaded from github.
The corresponding tool is also available for Android phones under the name sqlmapchik. With an easy-to-use graphical interface and a multitude of options without the use of a console. Its basic effectiveness is the same as the corresponding version for computers, but as an application it presents some instabilities on some devices, which over time are expected to be overcome. Also, some functions available in the regular sqlmap are absent, such as:
– sqlmap API
– profiling
– log colorizing
– beeping
– User-defined injection process definition
– Upgrade
– Interface with the metasploit framework
It is understandable that some of these functions are difficult to integrate at present.
The way sqlmapchik is executed and the user interface when processing the results gives the same sense of usability as sqlmap.
An important prerequisite for the ability to run sqlmapchik is the installation of the BusyBox platform and, by extension, the device being rooted .
We warmly thank the SecTeam @SAMSONIC




