<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:copyright="http://blogs.law.harvard.edu/tech/rss" xmlns:image="http://purl.org/rss/1.0/modules/image/">
    <channel>
        <title>Security</title>
        <link>http://weblogs.sqlteam.com/jeffs/category/237.aspx</link>
        <description>Tips and tricks to keep things secure, and things to look out for.  SQL Injection is a popular topic these days.</description>
        <language>en-US</language>
        <copyright>Jeff Smith</copyright>
        <managingEditor>smith_jeffreyt@yahoo.com</managingEditor>
        <generator>Subtext Version 1.9.4.0</generator>
        <item>
            <title>Vulnerable to SQL Injection?</title>
            <link>http://weblogs.sqlteam.com/jeffs/archive/2006/04/21/9651.aspx</link>
            <description>One of the things that troubles me most about SQL Injection is that is seems it is still very misunderstood.
For example, is the following psuedo-code vulnerable to SQL Injection?
&lt;br&gt;&lt;br&gt;
&lt;a href="http://weblogs.sqlteam.com/jeffs/archive/2006/04/21/9651.aspx"&gt;read more...&lt;/a&gt;
&lt;img src="http://weblogs.sqlteam.com/jeffs/aggbug/9651.aspx" width="1" height="1" /&gt;</description>
            <dc:creator>Jeff Smith</dc:creator>
            <guid>http://weblogs.sqlteam.com/jeffs/archive/2006/04/21/9651.aspx</guid>
            <pubDate>Fri, 21 Apr 2006 13:34:00 GMT</pubDate>
            <comments>http://weblogs.sqlteam.com/jeffs/archive/2006/04/21/9651.aspx#feedback</comments>
            <slash:comments>9</slash:comments>
            <wfw:commentRss>http://weblogs.sqlteam.com/jeffs/comments/commentRss/9651.aspx</wfw:commentRss>
            <trackback:ping>http://weblogs.sqlteam.com/jeffs/services/trackbacks/9651.aspx</trackback:ping>
        </item>
        <item>
            <title>Some Simple SQL Rules to Live By</title>
            <link>http://weblogs.sqlteam.com/jeffs/archive/2006/03/14/9289.aspx</link>
            <description>Most of these are really basic.  Some are my take on established ideas and standards, and may be controversial.  Agree or disagree? All feedback is welcome! (well ... mostly the "I agree, you're a genius" feedback is welcome ... but I'll accept all of it, I suppose)&lt;br&gt;&lt;br&gt;&lt;a href="http://weblogs.sqlteam.com/jeffs/archive/2006/03/14/9289.aspx"&gt;read more...&lt;/a&gt;&lt;img src="http://weblogs.sqlteam.com/jeffs/aggbug/9289.aspx" width="1" height="1" /&gt;</description>
            <dc:creator>Jeff Smith</dc:creator>
            <guid>http://weblogs.sqlteam.com/jeffs/archive/2006/03/14/9289.aspx</guid>
            <pubDate>Tue, 14 Mar 2006 16:42:00 GMT</pubDate>
            <comments>http://weblogs.sqlteam.com/jeffs/archive/2006/03/14/9289.aspx#feedback</comments>
            <slash:comments>28</slash:comments>
            <wfw:commentRss>http://weblogs.sqlteam.com/jeffs/comments/commentRss/9289.aspx</wfw:commentRss>
            <trackback:ping>http://weblogs.sqlteam.com/jeffs/services/trackbacks/9289.aspx</trackback:ping>
        </item>
    </channel>
</rss>