January 2019
Intermediate to advanced
378 pages
11h 35m
English
One of the most harmful and dangerous attacks is an injection attack. The attacker supplies untrusted input to the application, which gets executed/processed as a part of a command or query, thus resulting in the partial or complete discourse of the application behavior and leading to consequences such as data theft, data loss, loss of data integrity, and DoS. It can even lead to full-system compromise.
The following table captures a few common injection attack types, brief descriptions for each, and their potential impact:
|
Type of Injection |
A brief description |
Potential impacts |
|
Code injection/OS command injection |
Execute operating system commands with application code |
Gains higher privileges with higher ... |
Read now
Unlock full access