Summary


Recap

  • SQL Injection is an attack methodology that targets the data residing in a database through the firewall that shields it.

  • It attempts to modify the parameters of a Web-based application in order to alter the SQL statements that are parsed to retrieve data from the database.

  • Database footprinting is the process of mapping out the tables on the database and is a crucial tool in the hands of an attacker.

  • Exploits occur due to coding errors as well as inadequate validation checks.

  • Prevention involves enforcing better coding practices and database administration procedures.




Staf of EC-Council - Ethical Hacking Student Courseware. Certidied Ethical Hacker-Exam 312-50 (EC-Council E-Business Certification Series)
Staf of EC-Council - Ethical Hacking Student Courseware. Certidied Ethical Hacker-Exam 312-50 (EC-Council E-Business Certification Series)
ISBN: N/A
EAN: N/A
Year: 2003
Pages: 109

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net