Malicious Code Injection: Itís Not Just for SQL Anymore
Source: Info Sec Writers - Posted by Eric Lubow   
Documentation More and more, developers are becoming aware of the threats posed by malicious code, and SQL injection in particular, and by leaving code vulnerable to such attacks. However, while SQL is the most popular type of code injection attack, there are several others that can be just as dangerous to your applications and your data, including LDAP injection and XPath injection. While these may not be as well-known to developers, they are already in the hands of hackers, and they should be of concern.

In addition, much of the common wisdom concerning remediation of malicious code injection attacks is inadequate or inaccurate. Following these flawed recommendations will not improve the security of your application, but will only leave you with a false sense of security until the next time your application is compromised and your data is stolen, erased, or tampered with. It is important for developers to acquaint themselves with all code injection types that exist as well as the proper ways to fix any vulnerabilities to malicious code.

Read this full article at Info Sec Writers

Comments
Suchmaschinenoptimierung OnlineshopWritten by Onlineshop on 2006-11-05 20:36:32
A very interesting site, I think. The Idea of Technometry was new for me but worth to be read and thought abot it (although I'm not a native english-speaker and have some difficulties whith this language)  
 
mfg 
http://www.einemillioneurohomepage.de
jigskepWritten by jigar on 2006-12-01 11:54:43
good

Only registered users can write comments.
Please login or register.

Powered by AkoComment!