Hacker Read top | best | new | newcomments | leaders | about | bookmarklet login

As long as there is string concatenation and SQL libs accept queries as a string there will be SQL injections.


view as:

How does someone learn SQL these days and go about getting a job doing it, without having it drilled into them that you must never concatenate strings and stick them in a raw query? Isn't anyone who's capable of learning SQL capable of understanding this?

Legal | privacy