SQL injection will be more and more easy ?

Marco Ramilli
Date
17 June 2008
Read
Share

Yes folks, I think the title of this post is right.
IBM(R) has published his new "Database Connectivity for Javascript" which allows Web clients to have directly access to server side data base. Here it is from IBM(R):

What is Database Connectivity for JavaScript?
IBM® Database Connectivity for JavaScript™ is middleware that enables Web clients to directly access server-side relational data without compromising enterprise security.
On the client, IBM Database Connectivity for JavaScript consists of a JavaScript API and library that can be used by Web applications without special browser plug-ins. On the server, the IBM Database Connectivity for JavaScript gateway, written in PHP, is an adaptor layer that mediates between IBM Database Connectivity for JavaScript and relational databases and provides functions such as operation forwarding and security. Web 2.0 applications can thus use IBM Database Connectivity for JavaScript to access relational data as a first-class construct instead of through ad hoc protocols. [..]

Well, actually I'm wondering: “Directly access” without compromising “enterprise security” ?? Isn't there something strange ?? Control layer on my Firebug, hemmm I wanna say .. on my bowser ? Do you really trust that ? 🙂

Marco Ramilli
Date
17 June 2008
Read
Share
← Go back
Latest Posts

i-SOON Data Leak: Key Points

Introduction i-SOON (上海安洵), a prominent contractor for various Chinese government agencies such […]

Date
26.02.2024
Duration
5 min
Text
Marco Ramilli

X Gold Badges: a new proliferating market

When I saw a threat actor hijacking the X account of Google's […]

Date
08.01.2024
Duration
5 min
Text
Marco Ramilli

Technical Data Sheet: LOCKBIT 3.0

LOCKBIT 3.0 is a notorious Ransomware Group that was first identified on […]

Date
20.12.2023
Duration
5 min
Text
Marco Ramilli
1 2 3 236
Back to Top
magnifier