: This causes the server to return all coupon records or validates the input as true regardless of what was typed, granting you the result key.
Security Shepherd is an online platform that provides a comprehensive suite of security challenges designed to test and improve an individual's skills in various areas of web application security, including SQL injection, cross-site scripting (XSS), cross-site request forgery (CSRF), and more. The platform offers a range of challenges, from beginner to advanced levels, allowing users to assess their knowledge and skills in a controlled environment.
Testing for SQL Injection - WSTG - Latest | OWASP Foundation
admin' OR '1'='1 Password: anything
: The challenge presents a "Coupon Code" field where users are expected to enter a valid code to receive a discount or "result key".