SECFORCE takes part on OWASP London presenting “Blind SQL injection optimization techniques”
SECFORCE takes part on the London OWASP meeting presenting its latest research on optimization of blind SQL injection techniques and releasing a tool to assist security professionals to evaluate this kind of vulnerabilities.
SQL injection is a well understood vulnerability present in many deployed scenarios. Exploitation of this kind of vulnerability is tedious as the nature of the attack is slow and therefore optimization of the attack increases the results obtained during the security test.
You can download the paper from our Presentations page.
Date: 6 December 2007 |