Hacking in to database through SQL Injection

Discussion in 'General Chat' started by nvidura, Mar 25, 2007.

  1. #1
    nvidura, Mar 25, 2007 IP
  2. Austars

    Austars Active Member

    Messages:
    1,437
    Likes Received:
    23
    Best Answers:
    0
    Trophy Points:
    95
    #2
    Very interesting, thanks! :)
     
    Austars, Mar 25, 2007 IP
  3. nvidura

    nvidura Well-Known Member

    Messages:
    1,780
    Likes Received:
    14
    Best Answers:
    0
    Trophy Points:
    150
    #3
    The most common methods to prevent this kind of SQL injection vulnerability are to check the user's input for dangerous characters like single-quotes; and using prepared statements, which tell the database exactly what to expect before any user-provided data is passed to it. Enjoy...
     
    nvidura, Mar 25, 2007 IP