How to get owned....
Ever seen a REALLY nasty SQL Injection attack in action.
Check this out.
http://www.rockyh.net/Posts/Post.aspx?postId=7a7542fd-f95b-40c6-b464-c30e560dd90d
Includes a demonstration of how to script an SQL injection attack to do a bitwise determination of any field in the vulnerable database too.
This is MUST WATCH material.
.NET | PoliTechLaw|Thursday, May 11, 2006 4:03:10 AM UTC||
|