SQL security flaw persists in many web sites

Thursday, 8 January 2004, 2:52 PM EST

Businesses are still failing to make basic security checks on their web sites and are leaving themselves wide open to digital attack, warn experts.

Companies with web sites that have poorly designed SQL-based database back-ends are at risk from 'SQL injection' attacks, which can result in servers being taken over and personal details stolen.

Sites most likely to be affected are those that use old software code, and haven't had sufficient penetration testing, says Phil Cracknell, managing director at security specialist CISSP.

By Emma Nash at vnunet.

[ Read more ]

Related items




Spotlight

Using Hollywood to improve your security program

Posted on 29 July 2014.  |  Tripwire CTO Dwayne Melancon spends a lot of time on airplanes, and ends up watching a lot of movies. Some of his favorite movies are adventures, spy stuff, and cunning heist movies. A lot of these movies provide great lessons that we can apply to information security.


Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.
  



Daily digest

Receive a daily digest of the latest security news.
  

DON'T
MISS

Wed, Jul 30th
    COPYRIGHT 1998-2014 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //