Used to interact with databases
Four main SQL actions
Example statement:
SELECT * FROM USERS WHERE userID = ‘admin’ AND password = ‘pass123';
“ OR 1=1 “`Original SQL statement
SELECT * FROM USERS WHERE userID = 'admin' AND password = 'pass123';
Injected SQL statement
SELECT * FROM users WHERE userID = 'admin' AND password = "OR 1=1";