The Mole是一款自动化的SQL注入漏洞利用工具。只需提供一个URL和一个可用的关键字,它就能够检测注入点并利用。The Mole可以使用union注入技术和基于逻辑查询的注入技术。The Mole的主要特点:
    * Support for injections using Mysql, SQL Server, Postgres and Oracle databases.
    * Command line interface. Different commands trigger different actions.
    * Auto-completion for commands, command arguments and database, table and columns names.
    * Support for query filters, in order to bypass certain IPS/IDS rules using generic filters, and the possibility of creating new ones easily.
    * Developed in python 3.
工具下载:http://sourceforge.net/projects/themole/files/themole-0.2.6/themole-0.2.6-win32.zip/download
                   http://sourceforge.net/projects/themole/files/themole-0.2.6/themole-0.2.6-lin-src.tar.gz/download