SQL Feeds - All your SQL feeds in one place.

Sunday, April 04, 2010

Little Bobby Tables, SQL Injection and EXECUTE AS

by kimberly.nospam@nospam.sqlskills.com (kltripp) via Kimberly L. Tripp on 4/4/2010 4:42:00 PM

OK, I know many of you have seen this before (an oldie, but a goodie!): (image from xkcd.com, with "copy and share" license described here: License) But, what can you do to prevent this? And, when would this even be possible? This is possible when DSE (dynamic string execution) occurs. There are still some VERY relevant and important reasons to use DSE and some are performance related (ok, this is another post for another day) but suffice it to say - I use DSE b ...

[ read more ]

Legal Note

The content of the postings is owned by the respective author. SQL Feeds is not responsible for the contents of the postings. This site is automatically generated and cannot be reviewed for abusive content. If you find abusive content on SQL Feeds, please contact us. Designated trademarks and brands are the property of their respective owners. All rights reserved.

Advertise with us