ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Story: Script kiddies learn grown-up hacking techniques

  • Previous comment

Posted by: John McVey (Monday 17 January 2005, 1:14 PM)

  • Reply

SQL Injection is not a problem if the application developer has coded the application not to trust the queries it receives. Form/search string validation should take into account any possible hack and code in defenses to obviate them. If the developer doesn't do this, then they're really incompetent and there's nothing more to it.

However, none of this you'd know from reading the article. The journalist seems to be arguing that problems arise due to bad Firewalls. That's not the case at all. In this context, firewalls have nothing whatsoever to do with the applications which sit behind it. They're really concerned with network traffic, not necessarily the content of trusted traffic to specific applications, eg form data to web applications. Thus if the application fails and is subjected to a successful crack it is down pure and simply to the lack of skill of the developer, nothing else.

  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment