Is Your Web Site at Risk of Injection?

Robbing banks is dangerous and unpredictable, and it requires leaving the house. Hacking, on the other hand, has a high success rate, pays well (extortionists ask for–and get–an average of $160,000 per hack) and can be done in one’s pajamas.

“The attacks work because the software most people use has vulnerabilities,” says Alan Paller, Director of Research at the SANS Institute, a security watchdog. The first challenge, he says, is simply to find out what those vulnerabilities are. “It’s like owning a car, and every week there are new defects. But no one tells you what they are. Instead, you’re supposed to somehow divine them.”

Sites that use scripts to create pages dynamically are particularly prone to attacks. Because the back-end applications of a dynamic site view the Web server as a “trusted source,” seemingly innocent text fields can act as entry points for malicious requests. One such attack, SQL Injection, could lead to a site’s entire back-end database being downloaded by a hacker, says Caleb Sima, chief technology officer and co-founder of security vendor SPI Dynamics. “The problem is extremely common,” he says.

Sima has provided steps for testing your own Web site for SQL Injection and other vulnerabilities.

Feeling stuck in self-doubt?

Stop trying to fix yourself and start embracing who you are. Join the free 7-day self-discovery challenge and learn how to transform negative emotions into personal growth.

Join Free Now

Picture of Regina Kwon

Regina Kwon

TRENDING AROUND THE WEB

7 small choices boomers made daily that built generational stability

7 small choices boomers made daily that built generational stability

Global English Editing

8 hard lessons you learn when you finally stop begging to be chosen

8 hard lessons you learn when you finally stop begging to be chosen

Small Business Bonfire

7 phrases people with poor social skills love to use without realizing how cringey they sound

7 phrases people with poor social skills love to use without realizing how cringey they sound

Personal Branding Blog

If you’re in your 70s and can still get these 7 things done, you’re mentally stronger than 95% of people your age

If you’re in your 70s and can still get these 7 things done, you’re mentally stronger than 95% of people your age

Global English Editing

If you enjoy talking about these topics, you’re probably a high-level thinker

If you enjoy talking about these topics, you’re probably a high-level thinker

Global English Editing

7 traits of people who always wait for someone to leave the party before leaving themselves

7 traits of people who always wait for someone to leave the party before leaving themselves

The Blog Herald