sqlmap

scanner sqlmap

SQLMap SQL injection testing web crawler

About this crawler

sqlmap is a web crawler identified by the regular-expression pattern sqlmap in the User-Agent request header. It is categorised as scanner. Use the regex above to detect, log, allow, or block sqlmap traffic in your web server, CDN edge rules, or robots.txt.

Block-rate · top 25k sites

0.065%
latest snapshot
2026-06-04
matched key: sqlmap
2026-05-012026-06-040.11%

Technical details

Name
sqlmap
Pattern
sqlmap
Tags
scanner
Reference
https://sqlmap.org
Added
2026/04/07
Instances
1 known sample(s)

Sample User-Agent strings

sqlmap/1.7.8#stable (https://sqlmap.org)

Block this crawler

robots.txt — disallow sqlmap:

User-agent: sqlmap Disallow: /

Apache .htaccess — return 403:

RewriteEngine On RewriteCond %{HTTP_USER_AGENT} sqlmap [NC] RewriteRule .* - [F,L]

Nginx — return 403 inside a server block:

if ($http_user_agent ~* "sqlmap") { return 403; }
← back to all crawlers