Skip to Main Content
Databases Illuminated, 4th Edition
book

Databases Illuminated, 4th Edition

by Catherine M. Ricardo, Susan D. Urban, Karen C. Davis
March 2022
Intermediate to advanced content levelIntermediate to advanced
682 pages
22h 58m
English
Jones & Bartlett Learning
Content preview from Databases Illuminated, 4th Edition

8.11 SQL Injection

Database applications must take security precautions to protect a database against a form of attack known as SQL injection. The term injection refers to the fact that user input from a client through the application interface can be designed to take advantage of vulnerabilities associated with the dynamic construction of SQL queries. Using SQL injection, an attacker can insert (or inject) code into a query that can be used to retrieve information that the attacker is not authorized to see, maliciously delete or modify data, or insert data that would give an attacker unauthorized access to the database. SQL injection was first discovered around 1998 and is now ranked as a top software security concern by the Open Web Application ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

SQL and Relational Theory, 3rd Edition

SQL and Relational Theory, 3rd Edition

C.J. Date

Publisher Resources

ISBN: 9781284231595