Raul Garcia's blog
Browse by Tags
All Tags
»
General Security
(RSS)
Dynamic SQL
sql injection
SQL Server Execution Context
SQL Server Signatures
Disaster Recovery: What to do when the SA account password is lost in SQL Server 2005
You may have faced the issue of losing the SQL Server SA password. Perhaps you followed the security best-practice of removing the builtin\Administrators from the sysadmin server role, and no one you can find is in the sysadmin role. At this point you
Read More...
Dynamic SQL and digital signatures in SQL Server 2005
As I already mentioned, dynamic SQL is a quite powerful, but also quite dangerous. In SQL Server 2005 we introduced a new feature that is also quite powerful and when used properly can be quite useful; but it is important to learn and understand any such
Read More...
Quick guide to DB users without logins in SQL Server 2005
SQL Server 2005 introduced a new SQL DB principal subtype that can be quite useful: a SQL user that is not mapped to any login. You may be asking yourself “Why is this feature interesting? after all SQL Server already had the ability to create SQL users”. This article tries to describe this new feature and give some useful tips on how to use it.
Read More...
Link to Laurentiu's blog
I am including a link to Laurentiu Cristofor's blog: http://blogs.msdn.com/lcris . Laurentiu is one of the most valuable contributors in the SQL Security forums, and his articles and demos are great resources for anyone interested in SQL Server security
Read More...
Search
This Blog
Home
Tags
Dynamic SQL
General Security
sql injection
SQL Server Encryption
SQL Server Execution Context
SQL Server Signatures
Archives
November 2007 (1)
July 2007 (2)
May 2007 (2)
January 2007 (2)
October 2006 (1)
July 2006 (1)
May 2006 (1)
March 2006 (1)
Syndication
RSS 2.0
Atom 1.0