MySQL Security

MySQL Security News, Articles, and Blogs

Browse by Tag

ajax blog blog archive categories code css database database security development exploit flat google guitar hosting html injection internet javascript Links linux menu mysql mysql login MySQL Security mysql shell new news oracle password php php mysql security programming really simple syndication registerwidget search security seo server software sql sql injection technology update utf vulnerability web widgetinfo widgetmanager wordpress xml



PHP Security - Avoid SQL Injection and XSS Attacks

Filed under mysql-buffer

If using $_GET or $_POST variables in an mysql query, clean them with mysql_real_escape_string. When displaying user submitted content from the database, apply htmlentities before it is displayed. SQL Injection …
how to use john the ripper virus win32 gpcodehow to use john the ripper, virus win32 gpcode

See the rest here:
PHP Security - Avoid SQL Injection and XSS Attacks

October 28th, 2008. Comment now »

Find MySQL and Apache location

Filed under mysql-buffer

Sometime it is useful to know if MySQL and Apache (or any other httpd) are installed on the same machine. This could happen during SQL injection exploiting, if we are tring to write a file with INTO OUTFILE or to read a file through …
database hack job php protect your php queries from sql securitydatabase, hack, job, php, protect your php, queries from sql, security

Go here to see the original:
Find MySQL and Apache location

October 24th, 2007. Comment now »

phpMyChat 0.14.5 Remote Improper File Permissions Exploit

Filed under mysql-buffer

phpMyChat remote sploit * # by sysbug # # C:Perlbin>perl pmc.pl www.kublooddrive.com /chat # /* Mysql dump : # * C_DB_HOST : localhost # * C_DB_NAME : jhawk_pchat1 # * C_DB_USER : jhawk_pchat1 # * C_DB_PASS : vvejTjeLgB # * # * Adding …
hacks html injection man …

Originally posted here:
phpMyChat 0.14.5 Remote Improper File Permissions Exploit

October 21st, 2007. Comment now »

MSSQL injection

Filed under mysql-buffer

I have a mysql based application which i am currently translating into mssql syntax. I note there isnt a “mysql_real_escape_string”…version in MSSQL. doe this mean that there is no way for SQL injections in MSSQL? …
application applications covers database databases developing event mysql nusphere portal sample …

Go here to read the rest:
MSSQL injection

October 9th, 2007. Comment now »


 Search Engine Submission   Reg2.us Domain Name Registration   Premium Domain Names


zers.org | Elections News | Web Application Security


Cheap Web Hosting