Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Paper: SQL Injection Attacks by Example Jan 05 2005 05:30PM
Steve Friedl (steve unixwiz net)
Hello folks (and Happy New Year),

I recently posted this to the PEN-TEST list, but it was suggested that
the wider Bugtraq readership might benefit from it.

During a recent security review for a customer, I was able to completely
compromise his web application in about two hours using SQL Injectio...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus