Automic VaultAutomic Vault

brew

使用 Homebrew, apk, apt, MacPorts, Nix, pacman, zypper 安装 sqlmap

查看 sqlmap 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

安装

其他安装命令

macOS

Homebrew已验证 · 100%
brew install sqlmap

local Homebrew formula metadata

MacPorts已验证 · 94%
sudo port install sqlmap

MacPorts ports tree · security/sqlmap/Portfile · 来源: api.github.com

Linux

Alpine Linux apk已验证 · 92%
sudo apk add sqlmap

Alpine Linux edge package indexes · sqlmap · 来源: dl-cdn.alpinelinux.org

Debian apt已验证 · 92%
sudo apt install sqlmap

Debian stable package indexes · sqlmap · 来源: deb.debian.org

Nix已验证 · 92%
nix profile install nixpkgs#sqlmap

nixpkgs package indexes · sqlmap · 来源: raw.githubusercontent.com

Arch Linux pacman已验证 · 92%
sudo pacman -S sqlmap

Arch Linux sync databases · sqlmap · 来源: geo.mirror.pkgbuild.com

openSUSE zypper已验证 · 92%
sudo zypper install sqlmap

openSUSE Tumbleweed package metadata · sqlmap · 来源: download.opensuse.org

概览

软件包摘要

Penetration testing for SQL injection and database servers

命令和别名

  • sqlmap
  • sqlmap.py
  • sqlmapapi
  • sqlmapapi.py

历史

项目历史与用法

sqlmap is an open-source command-line penetration-testing tool for automating SQL injection detection, exploitation, and database-server takeover workflows.

项目历史

The project history maintained in the official wiki traces sqlmap to a SourceForge registration on July 25, 2006, with an initial MySQL-focused skeleton, PostgreSQL support and version 0.1 later that year, and Bernardo Damele taking over the project in September 2006.

The same official history records a long sequence of security-research-driven releases, including database takeover work presented publicly in 2009, version 0.9 in 2011 with a rewritten detection engine, relocation from SourceForge/Subversion to GitHub on June 26, 2012, stable version 1.0 on February 27, 2016, Python 3 support completed in 2019, and annual stable releases through 1.10 on January 1, 2026.

采用历史

The official sqlmap history records acceptance into Debian on May 8, 2009 and Ubuntu on June 2, 2009. The supplied Homebrew-derived input also lists packaging across Homebrew, Debian, Ubuntu, Alpine, Arch, MacPorts, Nix, and openSUSE-style zypper ecosystems.

The sqlmap homepage presents it as a mature project with decades of active development and a large contributor base, while the GitHub repository remains the public source and issue-tracking center.

使用方式

In package-manager and CLI culture, sqlmap is typically installed as a ready-to-run security tool and driven through many command-line switches. The official wiki's usage page documents verbosity, request logging, detection, enumeration, takeover, and bug-reporting workflows.

为什么软件包爱好者会关心

Package maintainers care about sqlmap because it is a high-profile security CLI with fast-moving detection logic, many optional capabilities, and a long history of distro packaging. Its presence in common package managers makes authorized web-application testing reproducible without vendoring a checkout.

时间线

  • 2006: Project registered on SourceForge; version 0.1 released.
  • 2009: Accepted into Debian and Ubuntu repositories.
  • 2012: Development relocated to GitHub and a new homepage was deployed.
  • 2016: Stable version 1.0 released.
  • 2019: Python 3 support completed.
  • 2026: Stable version 1.10 released.

Related projects

  • The official history and README connect sqlmap workflows to SQL injection testing, database fingerprinting, Metasploit integration, and supported database systems rather than to one single language ecosystem.

安全态势

风险级别:red

broad file, network, media, or database tool signal. escape, surveillance, or offensive capability signal.

风险分类器

red 风险 · 中 置信度 · escape-surveillance-offensive

原因

  • broad file, network, media, or database tool signal
  • escape, surveillance, or offensive capability signal

信号

  • text:database,sql,server
  • text:penetration

安装行为

  • formula 元数据中未记录 Homebrew post-install 钩子。
  • Homebrew bottle 元数据适用于 1 个平台目标。
  • 安装时包含 1 个运行时依赖。

建议审查

在无人值守的代理使用前,请检查该工具是否读取明文凭据、写入远程状态、发布制品或调用插件。

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
sqlmap.conf

可执行文件

已安装的可执行文件

命令类型暴露范围备注
sqlmapcli全局可执行文件
sqlmap.pycli全局可执行文件
sqlmapapicli全局可执行文件
sqlmapapi.pycli全局可执行文件

新鲜度

版本和新鲜度

这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。

页面生成时间2026-07-25
管理器版本1.10.7
管理器更新时间2026-07-01
本地数据OK
上游当前
检测到的最新版本1.10.7

https://github.com/sqlmapproject/sqlmap

  • OK没有生成新鲜度警告。

安装元数据

软件包元数据

软件包键brew:sqlmap
版本1.10.7
软件包管理器Homebrew
软件包管理器页面https://formulae.brew.sh/formula/sqlmap
主页https://sqlmap.org
仓库https://github.com/sqlmapproject/sqlmap
上游文档https://github.com/sqlmapproject/sqlmap/wiki
许可证GPL-2.0-or-later
源码归档https://github.com/sqlmapproject/sqlmap/archive/refs/tags/1.10.7.tar.gz
最后更新2026-07-01T10:28:17Z
Pulseupdated
依赖python@3.14
Bottle可用 (于 all)
Homebrew post-install未定义
服务未声明

注册表事实

源数据库详情

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namesqlmap
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

源数据库匹配

其他软件包管理器记录

匹配项来自外部软件包管理器索引,并与本地 Automic Vault 软件包链接分开显示。

Debian apt95%

sqlmap 1.9.6-1

automatic SQL injection tool

https://sqlmap.org/

sudo apt install sqlmap
  • Section: net
  • Architecture: all
  • 2 依赖
  • normalized package name match
  • 匹配方式:Sqlmap
Debian stable package indexes · deb.debian.org · Debian stable package indexes: sqlmap from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz
Nix95%

sqlmap

nix profile install nixpkgs#sqlmap
  • normalized package name match
  • 匹配方式:Sqlmap
nixpkgs package indexes · raw.githubusercontent.com · nixpkgs package indexes: sqlmap from https://raw.githubusercontent.com/NixOS/nixpkgs/master/pkgs/top-level/all-packages.nix
Ubuntu apt95%

sqlmap 1.8.4-1

automatic SQL injection tool

https://sqlmap.org/

sudo apt install sqlmap
  • Section: universe/net
  • Architecture: all
  • 2 依赖
  • normalized package name match
  • 匹配方式:Sqlmap
Ubuntu 24.04 LTS package indexes · archive.ubuntu.com · Ubuntu 24.04 LTS package indexes: sqlmap from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz
apk95%

sqlmap 1.10.5-r0

Automatic SQL injection and database takeover tool

https://sqlmap.org/

sudo apk add sqlmap
  • License: GPL-2.0-or-later
  • Architecture: x86_64
  • Source Package: sqlmap
  • 1 依赖
  • 1 提供
  • normalized package name match
  • 匹配方式:Sqlmap
Alpine Linux edge package indexes · dl-cdn.alpinelinux.org · Alpine Linux edge package indexes: sqlmap from https://dl-cdn.alpinelinux.org/alpine/edge/testing/x86_64/APKINDEX.tar.gz
apk95%

sqlmap-pyc 1.10.5-r0

Precompiled Python bytecode for sqlmap

https://sqlmap.org/

sudo apk add sqlmap-pyc
  • License: GPL-2.0-or-later
  • Architecture: x86_64
  • Source Package: sqlmap
  • 1 依赖
  • normalized package name match
  • 匹配方式:Sqlmap
Alpine Linux edge package indexes · dl-cdn.alpinelinux.org · Alpine Linux edge package indexes: sqlmap-pyc from https://dl-cdn.alpinelinux.org/alpine/edge/testing/x86_64/APKINDEX.tar.gz
pacman95%

sqlmap 1.10.6-1

Automatic SQL injection and database takeover tool

https://sqlmap.org

sudo pacman -S sqlmap
  • License: GPL-2.0-or-later
  • Architecture: any
  • 2 依赖
  • 2 可选依赖
  • normalized package name match
  • 匹配方式:Sqlmap
Arch Linux sync databases · geo.mirror.pkgbuild.com · Arch Linux sync databases: sqlmap from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz
zypper95%

sqlmap 1.10.5-1.1

Automatic SQL injection and database takeover tool

https://sqlmap.org/

sudo zypper install sqlmap
  • License: GPL-2.0-or-later
  • Category: Unspecified
  • Architecture: noarch
  • Source Package: sqlmap
  • 5 依赖
  • 1 提供
  • normalized package name match
  • 匹配方式:Sqlmap
openSUSE Tumbleweed package metadata · download.opensuse.org · openSUSE Tumbleweed package metadata: sqlmap from https://download.opensuse.org/tumbleweed/repo/oss/repodata/be8d3611d25469107f32075a1697e69ec57a2b850b42348a658cc671ad5ec2b50760d02c3e59524d50da9a11d5be799bdaffba2e166e8ca8858512e3c0bd665d-primary.xml.zst
MacPorts95%

sqlmap

sudo port install sqlmap
  • normalized package name match
  • 匹配方式:Sqlmap
MacPorts ports tree · api.github.com · MacPorts ports tree: security/sqlmap/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1

来源线索

由仓库数据生成

此页面由 av-webscripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。

使用的来源

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment