For those of you who "just want to get it working" here's something to think about:
http://money.cnn.com...amoon/index.htm
If those sites had done simple things like scrub their user input or use PDO, lizamoon wouldn't be a news story.
2 Replies - 4664 Views - Last Post: 15 April 2011 - 12:14 AM
#1
Here's why you should worry about SQL injection attacks
Posted 03 April 2011 - 07:11 AM
Replies To: Here's why you should worry about SQL injection attacks
#2
Re: Here's why you should worry about SQL injection attacks
Posted 03 April 2011 - 11:24 AM
Yup, totally avoidable loss brought about in part by lazy/second-rate developers. That's what $5/hr for a dev will get you
This post has been edited by Jstall: 03 April 2011 - 11:25 AM
#3
Re: Here's why you should worry about SQL injection attacks
Posted 15 April 2011 - 12:14 AM
I have this directory where I just write random scripts that come to mind. They never are completed. It's like a scrapyard in there. So I was basically writing a script for uploading and managing files. I thought that nobody even visited my site so I never bothered to check the file size/file extension. A while ago, I was looking through my files to see what I should port over to my new server, and I found two new files! Apparently, some script kiddy got his hands on some hacks and uploaded it to my server. The script itself did nothing more than viewing a few secret docs I couldn't care less about (the best it had was a list of every username withing my host server). I immediately deleted the files.
Page 1 of 1
|
|

New Topic/Question




MultiQuote






|