Tag Archives: security

Elevation of Privileges

At SQL Bits this year I attended a security presentation from Andreas Wolter. The session examined some attack methodologies, showing the flow that an attacker might go through to gain information about your database instance with SQL Injection. It’s a scary and eye-opening talk, … Continue reading

Posted in Editorial | Tagged , | Comments Off on Elevation of Privileges

Frustration with Bad Design

This is not how you handle things. When you find security issues, and they don’t get fixed, it’s one thing to attempt to prove a point with a PEN test. It’s quite another to publicly expose information. You might find yourself in … Continue reading

Posted in Editorial | Tagged , , , , | Comments Off on Frustration with Bad Design

Administering Securely

This piece was originally published on Jul 8, 2009. It is being re-run as Steve is away on sabbatical. The other day I noticed a post where someone was asking a question that I’ve seen asked often. I still haven’t … Continue reading

Posted in Editorial | Tagged , | Comments Off on Administering Securely

Lockdown or Let Them Free

This piece was originally published on Sept 21, 2009. It is being re-run as Steve is away on sabbatical/ I ran into this blog post about IT v other workers. The post is in response to an article in Slate about workers being oppressed … Continue reading

Posted in Editorial | Tagged , | Comments Off on Lockdown or Let Them Free