<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Pythian Blog &#187; sql injection</title>
	<atom:link href="http://www.pythian.com/news/tag/sql-injection/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.pythian.com/news</link>
	<description>News and views from Pythian DBAs</description>
	<lastBuildDate>Fri, 10 Feb 2012 09:54:45 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.4</generator>
		<item>
		<title>How to Dynamically Call PL/SQL Procedure in Oracle</title>
		<link>http://www.pythian.com/news/2733/how-to-dynamically-call-plsql-procedure-in-oracle/</link>
		<comments>http://www.pythian.com/news/2733/how-to-dynamically-call-plsql-procedure-in-oracle/#comments</comments>
		<pubDate>Thu, 04 Jun 2009 06:29:56 +0000</pubDate>
		<dc:creator>Alex Gorbachev</dc:creator>
				<category><![CDATA[Oracle]]></category>
		<category><![CDATA[dynamic]]></category>
		<category><![CDATA[pl/sql]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[sql injection]]></category>
		<category><![CDATA[stored procedure]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.pythian.com/news/?p=2733</guid>
		<description><![CDATA[Just got an interesting note on Twitter that you can&#8217;t call a stored procedure dynamically in Oracle from a PL/SQL block like passing the procedure name in a variable. Well, yes we can! And the answer is EXECUTE IMMEDIATE &#8212; it can be used to run anonymous PL/SQL blog and not just a SQL statement. [...]]]></description>
		<wfw:commentRss>http://www.pythian.com/news/2733/how-to-dynamically-call-plsql-procedure-in-oracle/feed/</wfw:commentRss>
		<slash:comments>13</slash:comments>
		</item>
		<item>
		<title>MMUG: Second Meeting Review and Slides</title>
		<link>http://www.pythian.com/news/1185/mmug-second-meeting-review-and-slides/</link>
		<comments>http://www.pythian.com/news/1185/mmug-second-meeting-review-and-slides/#comments</comments>
		<pubDate>Fri, 29 Aug 2008 19:00:55 +0000</pubDate>
		<dc:creator>Nicklas Westerlund</dc:creator>
				<category><![CDATA[MySQL]]></category>
		<category><![CDATA[Pythian Europe]]></category>
		<category><![CDATA[mmug]]></category>
		<category><![CDATA[mysql backup]]></category>
		<category><![CDATA[sql injection]]></category>

		<guid isPermaLink="false">http://www.pythian.com/blogs/1185/mmug-second-meeting-review-and-slides</guid>
		<description><![CDATA[The Malta MySQL User Group (MMUG) met for the second time this Thursday, and compared to last time, we had a much better venue: Ixaris Systems let us use their board room, so we had all the tools we needed to have a good meeting. We managed to get a group picture before everyone has [...]]]></description>
		<wfw:commentRss>http://www.pythian.com/news/1185/mmug-second-meeting-review-and-slides/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Database Security Using White-Hat Google Hacking</title>
		<link>http://www.pythian.com/news/915/database-security-using-white-hat-google-hacking/</link>
		<comments>http://www.pythian.com/news/915/database-security-using-white-hat-google-hacking/#comments</comments>
		<pubDate>Thu, 17 Apr 2008 19:42:28 +0000</pubDate>
		<dc:creator>Sheeri Cabral</dc:creator>
				<category><![CDATA[Group Blog Posts]]></category>
		<category><![CDATA[MySQL]]></category>
		<category><![CDATA[cross site request]]></category>
		<category><![CDATA[cross-site request forgery]]></category>
		<category><![CDATA[cross-site scripting]]></category>
		<category><![CDATA[CSRF]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[sql injection]]></category>
		<category><![CDATA[XSS]]></category>

		<guid isPermaLink="false">http://www.pythian.com/blogs/915/database-security-using-white-hat-google-hacking</guid>
		<description><![CDATA[Here are the slides and links I am using for the &#8220;Database Security Using White-Hat Google Hacking&#8221; at the 2008 MySQL Users Conference and Expo. pdf slides Where to Start: http://johnny.ihackstuff.com/ghdb.php i-hacked.com/content/view/23/42 for the impatient Google&#8217;s Terms of Service Google Operators More Googlehacks to run: Page 35 of http://www.sdissa.org/downloads/San%20Diego%20ISSA%20Google%20Hacking%20and%20Beyond%20May%202006-rhd.pdf http://pauldotcom.com/wiki/index.php/Episode81#Tech_Segment:_Google_Queries_To_Run_Against_Your_Own_Domain http://ferruh.mavituna.com/makale/sql-injection-cheatsheet/ Goolag Google Hacks sofware [...]]]></description>
		<wfw:commentRss>http://www.pythian.com/news/915/database-security-using-white-hat-google-hacking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

