diff --git a/SQL/sql1.php b/SQL/sql1.php
new file mode 100644
index 0000000..98b148e
--- /dev/null
+++ b/SQL/sql1.php
@@ -0,0 +1,48 @@
+
+
+
+ SQL Injection
+
+
+
+
+
+
+ 0) {
+ // output data of each row
+ while($row = mysqli_fetch_assoc($result)) {
+ echo $row["lastname"];
+ echo "
";
+ }
+ } else {
+ echo "0 results";
+ }
+ }
+
+ ?>
+
+