Now if you don't have Kali Linux installed, you might want to go to this page, which will get you started on Beginner Hacking Using Kali Linux Basically its just a tool to make Sql Injection easier.

Their official website introduces the tool as -"sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers.

Now, if you were following along attentively, now we will be getting data from one of the columns. Okay, nothing great, but in the real world web pentesting, you can come across more sensitive data. Take a look at the previous tutorial on Manual SQl Injection which will help you find more interesting vulnerable sites.

While that hypothesis is not completely wrong, its time we go one step ahead. As usual, we will specify the database with -D, table with -T, and column with -C. Under such circumstances, the right thing to do is mail the admin of the website and tell him to fix the vulnerability ASAP.

But the new technology is vulnerable to thieves and conmen.

Any stranger who found or stole one of the cards could go on a small-scale spending spree of up to £100 – as the reader requires a PIN only after five transactions in one day.

The unsuspecting victim would be unaware their data had been stolen until they received their bank statement, but the stolen information could be used to make purchases online from retailers such as Amazon, who do not require a security code or further checks for most purchases.

‘With it, we have been able to strip contactless cards of the account-holder’s name, 16-digit number, and expiry date.

In some cases, we have even been able to obtain the last ten purchases, which is one of the security questions asked by banks.‘With this information alone we have been able to make purchases on Amazon.

It is alarming because the information provides the basis that, with a little more research, could see thieves strip a bank account.’In April 2012, Barclays began to issue new cards they claimed were more secure after fears were expressed about the flaws.

Tf L last night admitted it is receiving at least one complaint every day about the issue, although the number of actual incidents is thought to be much higher.

Tf L added that it had refunded customers who complained their fares had been debited from their bank cards.

He said: ‘The problem with contactless cards is they have been rolled out in a haphazard way without careful thought into the consequences.‘With a modified phone, which can be put together easily, a bank account can have its details stripped from a contactless card in seconds.