    How to test sql injection attack/directory traversal on server with  HIPS

      I'm currently testing hips capability but it was unable to detect the customized sql injectin submitted by the client..I have a poor knowledge when it comes to codes\sql.. :(

      hope someone will send a me a test tool wherein a gui is included that i ca just click on and will no longer enter strings...target system would be windows 2k3 server sp2. it is installed with hips 7 patch 5, vse 7 and anti spyware...