When Designing Logon Systems, Pay More Attention To Password Questions.
Posted by: Denny Cherry
In recent months the Internet has started to wake up to security just a little bit more, and probably forgotten all about it as well (read this,
In recent months the Internet has started to wake up to security just a little bit more, and probably forgotten all about it as well (read this,
One of the companies which I work with has the occasion to create new databases when they do releases of their software. Normally this isn't a problem, except that they are setup to use maintenance plans to handle the backup and pruning of their transaction logs. As all the new databases are...
While I applaud the hard work and ingenuity of the sysadmins who works through the days after hurricane Sandy to keep the generators running, one thing kept coming to my mind. Why...
I wrote a little while ago about the fact that sensitive data needs to be encrypted within the database for all applications. This is the first technique that is available to you to encrypt data...
What happens to most obsolete web based applications at most companies? They sit idle on a web server for months, sometimes years. Why is this a problem? Because many of these old applications can be easily exploited via SQL Injection allowing access into the SQL Server databases which they...
In case you missed the blog post over on securingsqlserver.com, I wanted to repost it here...
I'm afraid that I've got some bad news. You can no longer pre-order
The title of this post pretty much says it all. If you store sensitive data in a database you have to work under the assumption that someone is going to try and break into the system and steal that data. Thinking otherwise simply isn’t responsible as the developer and/or administrator of the...
SQL Injection is probably the most popular attack vector for hackers when they attempt to break into databases. The reason for this is that it is so easy for an attacker to gain access to the system, and typically to get pretty high level permissions to a database engine so that they can then...
The SQL PASS session list for the SQL PASS 2012 Summit has been released. This year there are 192 sessions being presented at the SQL PASS summit. Last year at the 2011 summit there were only a couple of sessions...
Another major data loss is showing that if you want to keep your data, its up to you to back it up. T-Mobile customers who have a sidekick phone are being told this weekend that they...
