Network World
Monday, December 1, 2008
DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Community

Navigation

Simon

This story is pretty horrifying. SQL injection attacks are trivial to protect against - many popular web application development environments (such as Django and Ruby on Rails) provide protection out of the box, and in other environments a simple coding pattern called parameterized statements provides full protection for no extra effort at all. There's certainly no need to buy an application firewall or other external piece of software!

The problem here is that many web developers fail to understand even the most basic concepts of web application security. The solution is better training or just to hire better developers.

Click to read the article this is in response to.

Reply

The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <i> <b> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd> <blockquote> <br /> <br> <p>
  • Lines and paragraphs break automatically.
  • You can use BBCode tags in the text.
  • Web page addresses and e-mail addresses turn into links automatically.

More information about formatting options

CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.

Advertisement: