Python MIT

sqlmap-ai

This script automates SQL injection testing using SQLMap with AI-powered decision making.

A

atiilla

Dernière activité 7 févr. 2026
atiilla/sqlmap-ai

449

étoiles

75

forks

1

issues ouvertes

Ce README est souvent en anglais.

SQLMap AI Assistant

An AI-powered wrapper around SQLMap that makes SQL injection testing more accessible and automated.

Features

Core Features

  • AI-Assisted Testing - Intelligent vulnerability analysis and recommendations
  • Adaptive Testing - Step-by-step testing that adapts to target responses
  • Enhanced HTML Reports - Beautiful, detailed reports with vulnerability details
  • Parameter Targeting - Test specific parameters with -p option (like original SQLMap)
  • WAF Bypass - Automatic tamper script selection for firewall evasion
  • Database Enumeration - Complete database, table, and column discovery
  • Request File Support - Test from Burp Suite, ZAP, or browser captures

AI Providers

  • Groq - Fastest AI analysis (recommended)
  • DeepSeek - Affordable and capable analysis
  • OpenAI - GPT-4 powered analysis
  • Anthropic Claude - Advanced reasoning
  • Ollama - Local, private AI (no cloud required)

New in v2.0.6

  • Private Network Scanning - Local/private IP targets now allowed by default
  • Configurable Network Policy - New allow_private_networks security setting
  • Improved Test Coverage - Added dedicated tests for private network validation

See the full Changelog for previous versions.

Quick Start

1. Install SQLMap:

sudo apt install sqlmap    # Debian/Ubuntu/Kali
brew install sqlmap         # macOS

2. Install SQLMap AI:

pip install sqlmap-ai
sqlmap-ai --install-check

3. Set an API key in your .env file (e.g., Groq - free & fastest):

GROQ_API_KEY=your_groq_api_key_here

4. Run:

sqlmap-ai -u "http://example.com/page.php?id=1"

See the full Installation Guide for all providers and options.

Documentation

Guide Description
Installation Prerequisites, setup, AI provider configuration
Usage Examples, testing modes, request files, workflows
Configuration .env, config.yaml, command-line reference
Troubleshooting Common issues and getting help
Changelog Version history

Requirements

  • Python 3.8+
  • SQLMap (must be installed globally on your system)
  • Internet connection (for cloud AI providers)
  • 2GB+ RAM (for Ollama local models)

License

This project is licensed under the MIT License.

Disclaimer

This tool is intended for educational and ethical hacking purposes only. Always obtain permission before testing any system or application. The developers are not responsible for any misuse or damage caused by this tool.

Star History

Star History Chart

Projets similaires

Automatic SQL injection and database takeover tool

Pythonapi-securityappsecdatabase
Ssqlmapproject
38,6 k étoiles6,4 k

An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws

Python
Rr0oth3x49
4,1 k étoiles425

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Pythonagentsai-hackingai-penetration-testing
Uusestrix
65,5 k étoiles7,2 k