IT security, vunerabilities, bugs, fixes, flaws, RSA conference and Infosec.
vnunet.com

« Vista antipiracy goes crazy | Main | Social network ads hit by trojan »

Be the SQL master

If you've ever tried changing the URL of a web page to gain access to information, you are familiar with the concept behind SQL attacks.

Just like changing the URL instructs the web server to present the page, you can send instruction to a database by entering certain characters in fields inside a web page. Ultimately this can lead to the disclosure of confidential information.

If that still sounds to vague to you, have a look at this week's episode of our video blog, where we'll demonstrate SQL attacks.

Previous episodes:
How to lose your password online
Using JavaScript to steal confidential information
Attacking online applications for profit
(cross site scripting attacks)
Why botnet herders love adware

August 28, 2007 |

Comments

Post a comment







Site credentials: About | Privacy policy | Terms & conditions | Top of the page
© Incisive Media Ltd. 2008
Incisive Media Limited, Haymarket House, 28-29 Haymarket, London SW1Y 4RX, is a company registered in the United Kingdom with company registration number 04038503