Mega'and/**/convert(int,sys.fn_sqlvarbasetostr(hashbytes('md5','1587756916')))>'0 -

: How automated tools (like Acunetix or SQLmap) "ping" a site to see if it's vulnerable [3, 4].

The goal isn't to break the database, but to trigger an . If the website's database is vulnerable and its error reporting is turned on, it will display the generated MD5 hash in an error message on the screen [4, 5]. This confirms to the tester that they can successfully execute code on the server [3, 4]. Why This Matters for Your Blog : How automated tools (like Acunetix or SQLmap)

If you are writing for a tech or security audience, this payload is a perfect example of: : How automated tools (like Acunetix or SQLmap)