Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

because you also have integer based SQL injection. Escaping strings isn't a complete fix.


Yep. In fact the typical SQL injection example is " 0 OR 1=1 ".




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: