Welcome to MSDN Blogs Sign in | Join | Help

News

SQL Injection Follow-up

Hi everyone, Bryan here. Michael wrote a great post here on SDL-required SQL injection defense techniques in the wake of the recent mass SQL injection attacks against ASP sites. Additionally, the Security Vulnerability Research & Defense blog has just posted an analysis of the attack along with guidance recommendations for IT/database admins, web developers, and end users. Finally, if you are looking for classic ASP-specific (not ASP.NET) guidance, Bala Neerumalla has posted a detailed document on preventing SQL injection in ASP on MSDN.

Posted: Friday, May 30, 2008 8:58 AM by sdl

Comments

The Security Development Lifecycle said:

Bryan here. A couple of weeks ago, I posted a blog entry with links to SQL injection defense guidelines.

# June 24, 2008 4:03 PM
Anonymous comments are disabled
Page view tracker