<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/MustLive Edition" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
	<title>Коментарі для запису: SQL DB Structure Extraction vulnerabilities</title>
	<link>http://websecurity.com.ua/4038/</link>
	<description></description>
	<pubDate>Tue, 19 May 2026 15:27:25 +0000</pubDate>
	<generator>http://wordpress.org/?v=MustLive Edition</generator>

	<item>
		<title>від: Bob</title>
		<link>http://websecurity.com.ua/4038/#comment-313358</link>
		<pubDate>Sun, 21 Mar 2010 14:22:14 +0000</pubDate>
		<guid>http://websecurity.com.ua/4038/#comment-313358</guid>
					<description>This is old stuff man.</description>
		<content:encoded><![CDATA[<p>This is old stuff man.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>від: Jasper</title>
		<link>http://websecurity.com.ua/4038/#comment-313352</link>
		<pubDate>Sun, 21 Mar 2010 13:27:26 +0000</pubDate>
		<guid>http://websecurity.com.ua/4038/#comment-313352</guid>
					<description>Please stop posting obvious things to full-disclosure mailing list ? If you have an sec-list at Ukraine - post there twice ok ? Save us some time</description>
		<content:encoded><![CDATA[<p>Please stop posting obvious things to full-disclosure mailing list ? If you have an sec-list at Ukraine - post there twice ok ? Save us some time
</p>
]]></content:encoded>
				</item>
	<item>
		<title>від: MustLive</title>
		<link>http://websecurity.com.ua/4038/#comment-313319</link>
		<pubDate>Sat, 20 Mar 2010 21:18:52 +0000</pubDate>
		<guid>http://websecurity.com.ua/4038/#comment-313319</guid>
					<description>&lt;strong&gt;zmx&lt;/strong&gt;

Thanks for your attention to my article ;-). I'm glad that for you these things are obvious, for me they are obvious too. But for many people they can be not so obvious.

For example, it's quite obvious that better to attend to security of your web site and to fix all holes, but most people have many holes at their sites and don't care about security. Especially I see such complete ignorance in Ukraine, but in other countries this situation is not much better. So in security there are no obvious things :-) - one may know and understand something, others may don't know or don't understand it.

In this article I wrote about such class of vulnerabilities as SQL DB Structure Extraction (as I called it), which is subclass of Information Leakage. Because I used this term from 2006, so I decided to write an article, to describe this class in more details (for those who don't know or don't understand it). So I'll be referencing to this article in future when it'll be needed.

&lt;blockquote&gt;It would save us some time.&lt;/blockquote&gt;
Try to read only those articles and advisories in mailing lists, which are interesting for you - it'll save you a lot of time.</description>
		<content:encoded><![CDATA[<p><strong>zmx</strong></p>
<p>Thanks for your attention to my article <img src='http://websecurity.com.ua/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> . I&#8217;m glad that for you these things are obvious, for me they are obvious too. But for many people they can be not so obvious.</p>
<p>For example, it&#8217;s quite obvious that better to attend to security of your web site and to fix all holes, but most people have many holes at their sites and don&#8217;t care about security. Especially I see such complete ignorance in Ukraine, but in other countries this situation is not much better. So in security there are no obvious things <img src='http://websecurity.com.ua/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' />  - one may know and understand something, others may don&#8217;t know or don&#8217;t understand it.</p>
<p>In this article I wrote about such class of vulnerabilities as SQL DB Structure Extraction (as I called it), which is subclass of Information Leakage. Because I used this term from 2006, so I decided to write an article, to describe this class in more details (for those who don&#8217;t know or don&#8217;t understand it). So I&#8217;ll be referencing to this article in future when it&#8217;ll be needed.</p>
<blockquote><p>It would save us some time.</p></blockquote>
<p>Try to read only those articles and advisories in mailing lists, which are interesting for you - it&#8217;ll save you a lot of time.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>від: zmx</title>
		<link>http://websecurity.com.ua/4038/#comment-313204</link>
		<pubDate>Thu, 18 Mar 2010 14:32:05 +0000</pubDate>
		<guid>http://websecurity.com.ua/4038/#comment-313204</guid>
					<description>Would you please stop posting obvious things to security mailing lists? It would save us some time. Thanks.</description>
		<content:encoded><![CDATA[<p>Would you please stop posting obvious things to security mailing lists? It would save us some time. Thanks.
</p>
]]></content:encoded>
				</item>
</channel>
</rss>
