Most SQLi tutorials stop at sqlmap --os-shell . This scenario forces you to understand the mechanics of inference attacks and side-channel exfiltration when the network is hostile.
and eventually find a path to execute code on the underlying server. Network Forensics : In scenarios like Telnet Authentication , you aren't just hacking a box; you're analyzing files in tools like hackviser+scenarios