Ghauri Command Generator
General
--version
--update
--batch
--flush-session
--fresh-queries
Target
Target URL (-u / --url)
Bulk file (-m)
Request file (-r)
Request
User-Agent (-A / --user-agent)
--random-agent
Header (-H / --header)
Extra headers (--headers)
Data (--data)
Cookie (--cookie)
Referer (--referer)
Host (--host)
Proxy (--proxy)
Delay (--delay)
Timeout (--timeout)
Retries (--retries)
--confirm
--skip-urlencode
--force-ssl
Optimization
Threads (--threads)
Injection
Test parameter (-p)
DBMS (--dbms)
Prefix (--prefix)
Suffix (--suffix)
Safe chars (--safe-chars)
Fetch using (--fetch-using)
Confirm injected payloads (--confirm)
Detection
Verbosity (-v)
Level (--level)
Match HTTP code (--code)
String to match (--string)
Not string (--not-string)
--text-only (compare textual content)
Techniques
Boolean-based (B)
Error-based (E)
Union-based (U)
Stacked queries (S)
Time-based blind (T)
Inline queries (Q)
Time delay (--time-sec)
Enumeration
--banner
--current-user
--current-db
--hostname
--dbs
--tables
--columns
--count
--dump
--sql-shell
Database (-D)
Table (-T)
Columns (-C)
Advanced
--test-filter (select test payloads by title)
Custom tamper/test (-) (free text)
Generate Command
Reset
ghauri command will appear here...
Copy Command