Subscribe via RSS Feed Connect with me on LinkedIn Connect with me on Flickr

{keyword} Union All Select Null-- Kjag Apr 2026

: Someone is trying to see if they can extract sensitive data from your database.

If you are seeing this in a content management system (CMS) or a search bar, it usually means: {KEYWORD} UNION ALL SELECT NULL-- KJAg

: The UNION operator combines the results of two or more SELECT statements. By using SELECT NULL , a tester can determine how many columns the original database query expects without triggering a data-type error. : Someone is trying to see if they

: This is a SQL comment symbol. It tells the database to ignore the rest of the original query, effectively "breaking" the intended logic to execute the injected command instead. : This is a SQL comment symbol

: This is a random string (often called a "canary") used to identify the specific injection point in the application's output or logs. Context in "Content Production"