
The tool is outlined with an easy to understand GUI that makes it simple for an administrator to recover the coveted information. The name Havij signifies “carrot”, which is the apparatus’ symbol. It’s a completely automated SQL Injection tool and it is dispersed by ITSecTeam, an Iranian security organization.


By using this software user can perform back-end database fingerprint, retrieve DBMS users and password hashes, dump tables and columns, fetching data from the database, running SQL statements and even accessing the underlying file system and executing commands on the operating system. It can take advantage of a vulnerable web application.
