Better yet. Don't use dynamic SQL. Then there is no need for injection testing.
In reply to Re: SQL injection tests by chacham in thread SQL injection tests by neilwatson