Is SQL injection a risk today?

前端 未结 20 2176
暗喜
暗喜 2020-12-05 13:25

I\'ve been reading about SQL injection attacks and how to avoid them, although I can never seem to make the \"awful\" examples given work, e.g. see this post

20条回答
  •  夕颜
    夕颜 (楼主)
    2020-12-05 14:01

    As per OWASP 2017 Top 10, still Injection is the most happened and dangerous attack.

    "SQL injection is always the number one risk. That is a reflection of just how many incidents are out there, as well as other factors that keep it very high up there" Troy Hunt - founder of breach site haveibeenpwned.com

    Just to remember, using SQL injection we can dump entire database, controlling web server by uploading web shell, etc.

提交回复
热议问题