SQLAuthority News – Rise in SQL Injection Attacks Exploiting Unverified User Data Input

Microsoft is aware of a recent escalation in a class of attacks targeting Web sites that use Microsoft ASP and ASP.NET technologies but do not follow best practices for secure Web application development. These SQL injection attacks do not exploit a specific software vulnerability, but instead target Web sites that…
Read More

SQLAuthority News – Microsoft Source Code Analyzer for SQL Injection

Microsoft Source Code Analyzer for SQL Injection is a static code analysis tool for finding SQL Injection vulnerabilities in ASP code. Customers can run the tool on their ASP source code to help identify code paths that are vulnerable to SQL Injection attacks. Perform the following steps to download and…
Read More