{"repo":"CheckPointSW/QueryOrientedProgramming","free":true,"listed":false,"github":"https://github.com/CheckPointSW/QueryOrientedProgramming","clone":"git clone https://github.com/CheckPointSW/QueryOrientedProgramming.git","description":"Query Oriented Programming (QOP) gadgets for SQLite-based exploitation","language":"Python","stars":50,"topics":["research","exploitation","sqlite"],"license":null,"category":"databases-storage","readme_excerpt":"Intro SQLite is one of the most deployed software in the world. However, from a security perspective, it has only been examined through the lens of WebSQL and browser exploitation. We believe that this is just the tip of the iceberg. In our long term research, documented http://research.checkpoint.com/select-code execution-from-using-sqlite, we experimented with the exploitation of memory corruption issues within SQLite without relying on any environment other than the SQL language. Query Oriented Programming QOP is our approach in implementing common pwning primitives using nothing but SQL queries. We want to share with the community in the hope of encouraging researchers to pursue the endless possibilities of database engines exploitation. Disclaimer - The code is meant to be used for educational purposes only - We are not encouraging any illegal activtiy - The code is provided “as is” without any support","default_branch":null,"files":null,"tree":[],"storefront":"/r/CheckPointSW","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/CheckPointSW/QueryOrientedProgramming/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}