I’m preparing a post on how to do a modern SQL Inject on websites. This isn’t meant for people to go hacking, but rather a demonstration how sanitizing variables is completely necessary when allowing variables into your website.
Take a quick look at this video, it’s simple, using a search for a script that is known to have this non-sanitized variable input. Easily, by adding an SQL addition, you are able to log into the website.