CMIT321 Week 5 Discussions B

Please do some research and find out what some of the latest methods of performing SQL injection are and the syntax for the commands. Also, what are some of the legacy commands to review data for tables, inject entries into SQL databases, etc…

The Open Web Application Security Project (OWASP) lists SQL injections attacks as the number we application threat and defines it as a “type of injection attack, in which SQL commands are injected into data-plane input in order to effect the execution of predefined SQL commands” (OWASP, 2016). SQL which is also known as a Structured Query Language is a programming language designed mostly for databases for communication and managing purposes. These commands includes Data Definition Language (DDL), Data Control Language (DCL), Data Query Language (DQL), and Data Manipulation Language (DML). These commands exploit vulnerabilities at the database layer. Since database systems operates at the back end of most web

