{"id":3077,"date":"2019-04-05T01:01:47","date_gmt":"2019-04-05T01:01:47","guid":{"rendered":"http:\/\/it.isophal.com\/?p=3077"},"modified":"2019-04-05T01:01:47","modified_gmt":"2019-04-05T01:01:47","slug":"%e1%9e%80%e1%9e%b6%e1%9e%9a%e1%9e%99%e1%9e%9b%e1%9f%8b%e1%9e%8a%e1%9e%b9%e1%9e%84%e1%9e%96%e1%9e%b8%e1%9e%80%e1%9e%b6%e1%9e%9a%e1%9e%9c%e1%9e%b6%e1%9e%99%e1%9e%94%e1%9f%92%e1%9e%9a%e1%9e%a0%e1%9e%b6","status":"publish","type":"post","link":"https:\/\/isophal.com\/news\/2019\/04\/05\/3077.html\/","title":{"rendered":"\u1780\u17b6\u179a\u1799\u179b\u17cb\u178a\u17b9\u1784\u1796\u17b8\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a SQL Injection \u1793\u17b7\u1784\u179c\u17b7\u1792\u17b8\u1780\u17b6\u179a\u1796\u17b6\u179a\u1796\u17b8\u1780\u17b6\u179a Hack"},"content":{"rendered":"<p><strong>\u17e1. \u1796\u17d0\u178f\u17cc\u1798\u17b6\u1793\u1791\u17bc\u1791\u17c5<\/strong><\/p>\n<p><strong>\u179f\u17d2\u179c\u17c2\u1784\u1799\u179b\u17cb\u17a2\u17c6\u1796\u17b8 \u178f\u17be\u17a2\u17d2\u179c\u17b8\u1791\u17c5\u1787\u17b6\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1794\u17c2\u1794 SQL Injection<\/strong><\/p>\n<p>\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a SQL Injection \u1782\u17ba\u1787\u17b6\u179c\u17b7\u1792\u17b8\u179f\u17b6\u179f\u17d2\u178f\u17d2\u179a\u1798\u17bd\u1799\u1793\u17c3\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1791\u17c5\u179b\u17be\u1780\u1780\u1798\u17d2\u1798\u179c\u17b7\u1792\u17b8\u179c\u17c1\u1794 (web application) \u17a7. \u179c\u17c1\u1794\u179f\u17b6\u1799\u1787\u17b6\u178a\u17be\u1798 \u178a\u17be\u1798\u17d2\u1794\u17b8\u179b\u17bd\u1785\u1799\u1780\u1796\u17d0\u178f\u17cc\u1798\u17b6\u1793 \u17ac\u1791\u17b7\u1793\u17d2\u1793\u1793\u17d0\u1799\u179f\u17c6\u1781\u17b6\u1793\u17cb\u1796\u17b8\u17a2\u1784\u17d2\u1782\u1797\u17b6\u1796\u178e\u17b6\u1798\u17bd\u1799 \u179c\u17b6\u17a2\u17b6\u1785\u1787\u17b6\u1794\u1785\u17d2\u1785\u17c1\u1780\u1791\u17c1\u179f\u1798\u17bd\u1799\u178a\u17cf\u1796\u17c1\u1789\u1793\u17b7\u1799\u1798\u179f\u1798\u17d2\u179a\u17b6\u1794\u17cb\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1791\u17c5\u179b\u17be\u179f\u17d2\u179a\u1791\u17b6\u1794\u17cb\u1780\u1798\u17d2\u1798\u179c\u17b7\u1792\u17b8 (application layer)\u17d4 SQL Injection \u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1791\u17c5\u179b\u17be\u1785\u17c6\u1793\u17bb\u1785\u1781\u17d2\u179f\u17c4\u1799\u1793\u17c3\u1780\u17bc\u178a\u178a\u17c2\u179b\u1794\u17b6\u1793\u1794\u1784\u17be\u178f Web Applications \u1793\u17c4\u17c7 \u17a2\u17d2\u1793\u1780\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u178a\u17b6\u1780\u17cb\u1794\u1789\u17d2\u1785\u17bc\u179b\u1793\u17bc\u179c\u1796\u17b6\u1780\u17d2\u1799\u1794\u1789\u17d2\u1787\u17b6 \u201cSQL\u201d \u1785\u17bc\u179b\u1791\u17c5\u1780\u17d2\u1793\u17bb\u1784 \u1791\u17b8\u178f\u17b6\u17c6\u1784\u178e\u17b6\u1798\u17bd\u1799 (\u17a7. Login Form) \u178a\u17be\u1798\u17d2\u1794\u17b8\u17a2\u1793\u17bb\u1789\u17d2\u1789\u17b6\u178f\u17b2\u17d2\u1799\u1796\u17bd\u1780\u1782\u17c1\u1798\u17b6\u1793\u179f\u17b7\u1791\u17d2\u1792\u1785\u17bc\u179b\u1791\u17c5\u1780\u17b6\u1793\u17cb\u1794\u17d2\u179a\u1796\u17d0\u1793\u17d2\u1792\u179a\u1794\u179f\u17cb\u17a2\u17d2\u1793\u1780\u1794\u17b6\u1793\u17d4<br \/>\nSQL Injection \u1794\u17d2\u179a\u17be\u1794\u17d2\u179a\u17b6\u179f\u17cb\u1793\u17bc\u179c\u1797\u17b6\u179f\u17b6 Structured Query Language (SQL) \u178a\u17c2\u179b\u1787\u17b6\u1797\u17b6\u179f\u17b6\u1798\u17bd\u1799\u178a\u17c2\u179b\u178f\u17d2\u179a\u17bc\u179c\u1794\u17b6\u1793\u1794\u17d2\u179a\u17be\u1794\u17d2\u179a\u17b6\u179f\u17cb\u179f\u1798\u17d2\u179a\u17b6\u1794\u17cb\u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u1782\u17d2\u179a\u1794\u17cb\u1782\u17d2\u179a\u1784\u1791\u17b7\u1793\u17d2\u1793\u1793\u17d0\u1799\u1793\u17c5\u1780\u17d2\u1793\u17bb\u1784 Database \u178a\u17c2\u179b\u1797\u17b6\u1782\u1785\u17d2\u179a\u17be\u1793\u1794\u17d2\u179a\u17be\u1794\u17d2\u179a\u17b6\u179f\u17cb\u1793\u17bc\u179c relational database management systems (RDBMS) \u1794\u17d2\u179a\u1797\u17c1\u1791\u1793\u17c3\u1794\u17d2\u179a\u1796\u17d0\u1793\u17d2\u1792\u1782\u17d2\u179a\u1794\u17cb\u1782\u17d2\u179a\u1784 \u178a\u17c2\u179b\u1794\u17d2\u179a\u17be\u1794\u17d2\u179a\u17b6\u179f\u17cb\u1793\u17bc\u179c SQL \u1798\u17b6\u1793\u178a\u17bc\u1785\u1787\u17b6 Microsoft SQL Database, Oracle, MySQL, PostgreSQL \u1793\u17b7\u1784\u1795\u17d2\u179f\u17c1\u1784\u17d7\u1791\u17c0\u178f \u17d4<br \/>\n\u1781\u17b6\u1784\u1780\u17d2\u179a\u17c4\u1798\u1793\u17c1\u17c7\u1782\u17ba\u1787\u17b6\u17a7\u1791\u17b6\u17a0\u179a\u178e\u17cd\u179f\u17b6\u1798\u1789\u17d2\u1789\u1798\u17bd\u1799 \u178a\u17be\u1798\u17d2\u1794\u17b8\u1791\u17b6\u1789\u1799\u1780\u1793\u17bc\u179c\u1796\u17d0\u178f\u17cc\u1798\u17b6\u1793\u17a2\u17c6\u1796\u17b8 Table<\/p>\n<p>Select * from table_name;<\/p>\n<p>\u1783\u17d2\u179b\u17b6\u1781\u17b6\u1784\u179b\u17be\u1793\u17c1\u17c7\u1782\u17ba\u1794\u17d2\u179a\u17be\u1794\u17d2\u179a\u17b6\u179f\u17cb\u1793\u17bc\u179c\u1793\u17b7\u1798\u17b7\u178f\u17d2\u178f\u179f\u1789\u17d2\u1789\u17b6 * \u178a\u17be\u1798\u17d2\u1794\u17b8\u1791\u17b6\u1789\u1799\u1780\u1793\u17bc\u179c\u1791\u17b7\u1793\u17d2\u1793\u1793\u17d0\u1799\u1791\u17b6\u17c6\u1784\u17a2\u179f\u17cb\u1796\u17b8\u1780\u17d2\u1793\u17bb\u1784\u178f\u17b6\u179a\u17b6\u1784 \u201ctable_name\u201d<\/p>\n<p><strong>\u17e2. \u178a\u17c6\u178e\u17be\u179a\u1780\u17b6\u179a\u1793\u17c3\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a SQL Injection<\/strong><\/p>\n<p>\u17a2\u17d2\u1793\u1780\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1798\u17b7\u1793\u178f\u17d2\u179a\u17b9\u1798\u178f\u17c2\u17a2\u17b6\u1785\u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u1791\u17b6\u1789\u1799\u1780\u1793\u17bc\u179c\u1796\u17d0\u178f\u17cc\u1798\u17b6\u1793\u1796\u17b8\u1780\u17d2\u1793\u17bb\u1784\u179c\u17c1\u1794\u179f\u17b6\u1799\u179a\u1794\u179f\u17cb\u17a2\u17d2\u1793\u1780\u1794\u17c9\u17bb\u178e\u17d2\u178e\u17c4\u17c7\u1791\u17c1 \u1782\u17ba\u179c\u17b6\u17a2\u17b6\u179f\u17d2\u179a\u17d0\u1799\u1791\u17c5\u178f\u17b6\u1798\u1785\u17c6\u1793\u17bb\u1785\u1781\u17d2\u179f\u17c4\u1799\u178a\u17c2\u179b\u1798\u17b6\u1793\u1793\u17c5\u1780\u17d2\u1793\u17bb\u1784 web application \u1796\u17c1\u179b\u1781\u17d2\u179b\u17c7\u17a2\u17d2\u1793\u1780\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u17a2\u17b6\u1785\u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u179a\u17c6\u179b\u1784\u1793\u17bc\u179c\u1780\u17b6\u179a Login (bypass logins) \u178a\u17be\u1798\u17d2\u1794\u17b8\u1797\u17d2\u1787\u17b6\u1794\u17cb\u1791\u17c5\u1780\u17b6\u1793\u17cb\u1791\u17b7\u1793\u17d2\u1793\u1793\u17d0\u1799 \u1780\u17c2\u1794\u17d2\u179a\u17c2\u1796\u17d0\u178f\u17cc\u1798\u17b6\u1793\u178a\u17bc\u1785\u1787\u17b6\u1780\u17b6\u179a\u1780\u17c2\u1794\u17d2\u179a\u17c2\u1791\u17c6\u1796\u17d0\u179a\u1798\u17bb\u1781 (Web Defacement) \u179b\u17bb\u1794\u1791\u17b7\u1793\u17d2\u1793\u1793\u17d0\u1799 \u17ac\u17a2\u17b6\u1785\u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u1794\u17b7\u1791\u1793\u17bc\u179c\u1798\u17c9\u17b6\u179f\u17ca\u17b8\u1793\u1798\u17c1\u1787\u17b6\u178a\u17be\u1798 \u1787\u17b6\u179a\u17bf\u1799\u17d7\u1782\u17ba\u1796\u17c1\u179b\u178a\u17c2\u179b\u1798\u17b6\u1793\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1794\u17c2\u1794\u1793\u17c1\u17c7 \u1782\u17ba\u1780\u179a\u178e\u17b8\u178a\u17c2\u179b\u1794\u17b6\u1793\u179a\u17c0\u1794\u179a\u17b6\u1794\u17cb\u17a2\u17b6\u1785\u1793\u17b9\u1784\u1780\u17be\u178f\u1798\u17b6\u1793\u17a1\u17be\u1784\u17d4<br \/>\n\u1787\u17c6\u17a0\u17b6\u1793\u178a\u17c6\u1794\u17bc\u1784\u1782\u17ba\u17a2\u17d2\u1793\u1780\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u179f\u17d2\u1780\u17c1\u1793\u1793\u17bc\u179c\u179c\u17c1\u1794\u179f\u17b6\u1799\u178a\u17be\u1798\u17d2\u1794\u17b8\u179f\u17d2\u179c\u17c2\u1784\u179a\u1780\u1785\u17c6\u1793\u17bb\u1785\u1781\u17d2\u179f\u17c4\u1799 \u17a2\u17d2\u1793\u1780\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u17a2\u17b6\u1785\u1794\u17d2\u179a\u17be\u1794\u17d2\u179a\u17b6\u179f\u17cb\u1794\u1785\u17d2\u1785\u17c1\u1780\u1791\u17c1\u179f Google Dork \u178a\u17c2\u179b\u17a2\u17b6\u1785\u1787\u17b6\u179c\u17b7\u1792\u17b8\u179f\u17b6\u179f\u17d2\u178f\u17d2\u179a\u178a\u17cf\u1798\u17b6\u1793\u1794\u17d2\u179a\u179f\u17b7\u1791\u17d2\u1792\u1797\u17b6\u1796\u1798\u17bd\u1799\u1780\u17d2\u1793\u17bb\u1784\u1780\u17b6\u179a\u179f\u17d2\u179c\u17c2\u1784\u179a\u1780\u1785\u17c6\u1793\u17bb\u1785\u1781\u17d2\u179f\u17c4\u1799\u1793\u17c3\u179c\u17c1\u1794\u179f\u17b6\u1799\u1794\u17b6\u1793\u178a\u17c4\u1799\u1784\u17b6\u1799\u17d7 \u1794\u1793\u17d2\u1791\u17b6\u1794\u17cb\u1796\u17b8\u1780\u17b6\u179a\u179a\u1780\u1783\u17be\u1789\u17a2\u17d2\u1793\u1780\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1793\u17b9\u1784\u1796\u17d2\u1799\u17b6\u1799\u17b6\u1798\u179f\u17d2\u179c\u17c2\u1784\u179a\u1780\u1793\u17bc\u179c\u1791\u17b7\u1793\u17d2\u1793\u1793\u17d0\u1799\u1791\u17b6\u1780\u17cb\u1791\u1784\u1791\u17c5\u1793\u17b9\u1784\u1788\u17d2\u1798\u17c4\u17c7 \u1793\u17b7\u1784\u1796\u17b6\u1780\u17d2\u1799\u179f\u17c6\u1784\u17b6\u178f\u17cb\u179a\u1794\u179f\u17cb\u1782\u178e\u1793\u17b8\u1793\u17c3\u17a2\u1797\u17b7\u1794\u17b6\u179b\u1782\u17d2\u179a\u1794\u17cb\u1782\u17d2\u179a\u1784\u179c\u17c1\u1794\u179f\u17b6\u1799 (usernames\/passwords) \u17a0\u17be\u1799\u1793\u17b9\u1784\u1791\u17b7\u1793\u17d2\u1793\u1793\u17d0\u1799\u179f\u17c6\u1781\u17b6\u1793\u17cb\u17d7\u1798\u17bd\u1799\u1785\u17c6\u1793\u17bd\u1793\u1791\u17c0\u178f\u17d4<br \/>\n\u1781\u17b6\u1784\u1780\u17d2\u179a\u17c4\u1798\u1787\u17b6\u17a7\u1791\u17b6\u17a0\u179a\u178e\u17cd \u1793\u17c3\u1780\u17b6\u179a\u1794\u17d2\u179a\u17be\u1794\u17d2\u179a\u17b6\u179f\u17cb\u1796\u17b6\u1780\u1794\u1789\u17d2\u1787\u17b6\u179a\u179a\u1794\u179f\u17cb google dork\u17d6<\/p>\n<ul>\n<li>inurl:index.php?id=<\/li>\n<li>inurl:gallery.php?id=<\/li>\n<li>inurl:article.php?id=<\/li>\n<li>\u00a0inurl:pageid=<\/li>\n<\/ul>\n<p>\u17a2\u17d2\u1793\u1780\u17a2\u17b6\u1785\u179f\u17b6\u1780\u179b\u17d2\u1794\u1784\u178a\u17bc\u1785\u1781\u17b6\u1784\u1780\u17d2\u179a\u17c4\u1798\u178a\u17c4\u1799\u179c\u17b6\u1799\u1794\u1789\u17d2\u1785\u17bc\u179b\u1793\u17bc\u179c\u179c\u17c1\u1794\u179f\u17b6\u1799 \u1793\u17b7\u1784\u1796\u17b6\u1780\u17d2\u1799\u1794\u1789\u17d2\u1787\u17b6\u179a<\/p>\n<p>www. [TargetSite.com] + inurl:index.php?id=<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3078\" src=\"http:\/\/it.isophal.com\/wp-content\/uploads\/2019\/04\/SQL-Injection-Attack-Overview.png\" alt=\"\" width=\"750\" height=\"550\" srcset=\"https:\/\/isophal.com\/news\/wp-content\/uploads\/2019\/04\/SQL-Injection-Attack-Overview.png 750w, https:\/\/isophal.com\/news\/wp-content\/uploads\/2019\/04\/SQL-Injection-Attack-Overview-600x440.png 600w, https:\/\/isophal.com\/news\/wp-content\/uploads\/2019\/04\/SQL-Injection-Attack-Overview-300x220.png 300w, https:\/\/isophal.com\/news\/wp-content\/uploads\/2019\/04\/SQL-Injection-Attack-Overview-585x429.png 585w\" sizes=\"auto, (max-width: 750px) 100vw, 750px\" \/><\/p>\n<p>source:\u00a0https:\/\/d3eaqdewfg2crq.cloudfront.net\/wp-content\/uploads\/2018\/01\/image1.png<\/p>\n<p><strong>\u17e3. \u179c\u17b7\u1792\u17b8\u179f\u17b6\u179f\u17d2\u178f\u17d2\u179a\u1780\u17b6\u179a\u1796\u17b6\u179a<\/strong><\/p>\n<p>\u178a\u17c6\u178e\u17b9\u1784\u179b\u17d2\u17a2\u1782\u17ba\u1790\u17b6 \u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1794\u17c2\u1794\u1793\u17c1\u17c7\u1782\u17ba\u179c\u17b6\u1798\u17b6\u1793\u1784\u17b6\u1799\u179f\u17d2\u179a\u17bd\u179b\u1780\u17d2\u1793\u17bb\u1784\u1780\u17b6\u179a\u1780\u17b6\u179a\u1796\u17b6\u179a \u1793\u17b7\u1784\u1787\u17c0\u179f\u179c\u17b6\u1784 \u1798\u17b6\u1793\u1782\u1798\u17d2\u179a\u17c4\u1784\u1798\u17bd\u1799\u178a\u17c2\u179b\u1794\u17b6\u1793\u1794\u1784\u17be\u178f\u17a1\u17be\u1784\u178a\u17be\u1798\u17d2\u1794\u17b8\u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u1780\u17b6\u179a\u1796\u17b6\u179a\u1791\u17c5\u179b\u17be\u1785\u17c6\u1793\u17bb\u1785\u1781\u17d2\u179f\u17c4\u1799\u1793\u17c3\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a SQL Injection \u178a\u17c2\u179b\u1798\u17b6\u1793\u1788\u17d2\u1798\u17c4\u17c7\u1790\u17b6 Open Web Application Security Project (OWASP) \u179c\u17b6\u1798\u17b6\u1793\u1793\u17bc\u179c\u17af\u1780\u179f\u17b6\u179a\u1794\u1784\u17d2\u17a0\u17b6\u1789\u1796\u17b8\u1780\u17b6\u179a\u1780\u17b6\u179a\u1796\u17b6\u179a SQL Injection (SQL Injection Prevention Cheat Sheet) \u178a\u17c2\u179b\u1785\u1784\u17d2\u17a2\u17bb\u179b\u1794\u1784\u17d2\u17a0\u17b6\u1789\u1793\u17bc\u179c\u1785\u17c6\u1793\u17bb\u1785\u1792\u17c6\u17d7 \u1793\u17b7\u1784\u179c\u17b7\u1792\u17b8\u1780\u17b6\u179a\u1796\u17b6\u179a\u1798\u17b6\u1793\u178a\u17bc\u1785\u1781\u17b6\u1784\u1780\u17d2\u179a\u17c4\u1798\u17d6<\/p>\n<ul>\n<li><strong>Prepared Statements (Parameterized Queries) \u2013 Parameterized queries<\/strong>\u00a0\u17a2\u17d2\u1793\u1780\u17a2\u1797\u17b7\u179c\u178c\u17d2\u178d\u1780\u17bc\u178a\u1780\u1798\u17d2\u1798\u179c\u17b7\u1792\u17b8\u178f\u17d2\u179a\u17bc\u179c\u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u1780\u17c6\u178e\u178f\u17cb\u1793\u17bc\u179c\u179a\u17b6\u179b\u17cb SQL Code \u1791\u17b6\u17c6\u1784\u17a2\u179f\u17cb \u17a0\u17be\u1799\u1794\u1789\u17d2\u1787\u17bc\u1793\u179a\u17b6\u179b\u17cb parameter \u1793\u17b7\u1798\u17bd\u1799\u17d7\u1791\u17c5\u1780\u17b6\u1793\u17cb query \u178a\u17c2\u179b\u17a2\u1793\u17bb\u1789\u17d2\u1789\u17b6\u178f\u17b2\u17d2\u1799 Database \u17a2\u17b6\u1785\u1785\u17c2\u1780\u17b2\u17d2\u1799\u178a\u17b6\u1785\u17cb\u1796\u17b8\u1782\u17d2\u1793\u17b6\u179a\u179c\u17b6\u1784\u1780\u17bc\u178a \u1793\u17b7\u1784\u1791\u17b7\u1793\u17d2\u1793\u1793\u17d0\u1799 \u1791\u17c4\u17c7\u1794\u17b8\u1787\u17b6\u1780\u17b6\u179a\u1794\u1789\u17d2\u1785\u17bc\u179b\u1791\u17b7\u1793\u17d2\u1793\u1793\u17d0\u1799\u1794\u17d2\u179a\u1797\u17c1\u1791\u17a2\u17d2\u179c\u17b8\u1780\u17cf\u178a\u17c4\u1799\u17d4<\/li>\n<li><strong>Stored Procedures<\/strong>\u00a0\u2013 \u1782\u17ba\u178f\u17d2\u179a\u17bc\u179c\u1794\u17b6\u1793\u1780\u17c6\u178e\u178f\u17cb \u1793\u17b7\u1784\u179a\u1780\u17d2\u179f\u17b6\u1791\u17bb\u1780\u1793\u17c5\u1780\u17d2\u1793\u17bb\u1784 Databases \u17a0\u17be\u1799\u1794\u1793\u17d2\u1791\u17b6\u1794\u17cb\u1798\u1780 \u17a0\u17c5\u1798\u1780\u1796\u17b8 application \u179c\u17b7\u1789\u17d4<\/li>\n<li><strong>Escaping all User Supplied Input<\/strong>\u00a0\u2013 \u179a\u17b6\u179b\u17cb Database \u1793\u17b7\u1798\u17bd\u1799\u17d7\u1782\u17ba\u1798\u17b6\u1793\u1793\u17bc\u179c\u1799\u1793\u17d2\u178f\u1780\u17b6\u179a\u178a\u17be\u1798\u17d2\u1794\u17b8\u1791\u1794\u17cb\u179f\u17d2\u1780\u17b6\u178f\u17cb\u1793\u17bc\u179c\u1780\u17bc\u178a\u1798\u17b7\u1793\u179f\u1798\u179a\u1798\u17d2\u1799 (\u1793\u17b7\u1798\u17b7\u178f\u17d2\u178f\u179f\u1789\u17d2\u1789\u17b6) \u178a\u17c2\u179b\u1794\u1789\u17d2\u1787\u17bc\u179b\u178a\u17c4\u1799\u17a2\u17d2\u1793\u1780\u1794\u17d2\u179a\u17be\u1794\u17d2\u179a\u17b6\u179f\u17cb \u178a\u17c2\u179b\u17a2\u17b6\u1785\u1787\u17c0\u179f\u1795\u17bb\u178f\u1793\u17bc\u179c\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1794\u17c2\u1794 SQL Injection \u1798\u17bd\u1799\u1785\u17c6\u1793\u17bd\u1793\u17d4<\/li>\n<\/ul>\n<p><strong>\u1785\u17c6\u1793\u17bb\u1785\u1780\u17b6\u179a\u1796\u17b6\u179a\u1794\u1793\u17d2\u1790\u17c2\u1798\u1791\u17c0\u178f\u179a\u17bd\u1798\u1798\u17b6\u1793\u17d6<\/strong><\/p>\n<p>\u17e1. Least Privilege \u2013 \u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u1780\u17c6\u178e\u178f\u17cb\u179f\u17b7\u1791\u17d2\u1792\u17b7\u17b2\u17d2\u1799\u1793\u17c5\u1791\u17b6\u1794\u1794\u17c6\u1795\u17bb\u178f\u178a\u17c2\u179b\u1795\u17d2\u178f\u179b\u17cb\u1791\u17c5\u17b2\u17d2\u1799\u1782\u178e\u1793\u17b8 Databases \u1793\u17b7\u1798\u17bd\u1799\u17d7<br \/>\n\u17e2. White List Input Validation \u2013 \u1792\u17d2\u179c\u17be\u1780\u17b6\u179a\u1795\u17d2\u1791\u17c0\u1784\u1795\u17d2\u1791\u17b6\u178f\u17cb\u1793\u17bc\u179c\u1780\u17b6\u179a\u1794\u1789\u17d2\u1785\u17bc\u179b\u1796\u17d0\u178f\u17cc\u1798\u17b6\u1793 \u178a\u17be\u1798\u17d2\u1794\u17b8\u1780\u17b6\u179a\u1796\u17b6\u179a\u1780\u17b6\u179a\u1794\u1789\u17d2\u1785\u17bc\u179b\u1791\u17b7\u1793\u17d2\u1793\u1793\u17d0\u1799\u1798\u17b7\u1793\u179f\u1798\u179a\u1798\u17d2\u1799 \u1798\u17bb\u1793\u1796\u17c1\u179b\u178a\u17c2\u179b\u179c\u17b6\u178a\u17c6\u178e\u17be\u179a\u1780\u17b6\u179a\u178a\u17c4\u1799\u1780\u1798\u17d2\u1798\u179c\u17b7\u1792\u17b8<\/p>\n<p><strong>\u17e4. \u179c\u17c1\u1794\u179f\u17b6\u1799\u1796\u17b6\u1780\u17cb\u1796\u17d0\u1793\u17d2\u1792<\/strong><\/p>\n<p>https:\/\/www.acunetix.com\/websitesecurity\/sql-injection\/<\/p>\n<p>https:\/\/www.incapsula.com\/web-application-security\/sql-injection.html\/<\/p>\n<p>https:\/\/www.owasp.org\/index.php\/SQL_Injection<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u17e1. \u1796\u17d0\u178f\u17cc\u1798\u17b6\u1793\u1791\u17bc\u1791\u17c5 \u179f\u17d2\u179c\u17c2\u1784\u1799\u179b\u17cb\u17a2\u17c6\u1796\u17b8 \u178f\u17be\u17a2\u17d2\u179c\u17b8\u1791\u17c5\u1787\u17b6\u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a\u1794\u17c2\u1794 SQL Injection \u1780\u17b6\u179a\u179c\u17b6\u1799\u1794\u17d2\u179a\u17a0\u17b6\u179a&hellip;<\/p>\n","protected":false},"author":1,"featured_media":3079,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[344,450],"tags":[],"class_list":["post-3077","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-dbms","category-mysql"],"_links":{"self":[{"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/posts\/3077","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/comments?post=3077"}],"version-history":[{"count":1,"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/posts\/3077\/revisions"}],"predecessor-version":[{"id":3080,"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/posts\/3077\/revisions\/3080"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/media\/3079"}],"wp:attachment":[{"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/media?parent=3077"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/categories?post=3077"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/isophal.com\/news\/wp-json\/wp\/v2\/tags?post=3077"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}