<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: How Microsoft UK got hacked and how you can learn from their mistakes</title>
	<atom:link href="http://jesscoburn.com/archives/2007/08/01/how-microsoft-uk-got-hacked-and-how-you-can-learn-from-their-mistakes/feed/" rel="self" type="application/rss+xml" />
	<link>http://jesscoburn.com/archives/2007/08/01/how-microsoft-uk-got-hacked-and-how-you-can-learn-from-their-mistakes/</link>
	<description>Windows Web Hosting, Web Technologies, etc</description>
	<lastBuildDate>Thu, 09 Feb 2012 13:10:30 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: (bs.)</title>
		<link>http://jesscoburn.com/archives/2007/08/01/how-microsoft-uk-got-hacked-and-how-you-can-learn-from-their-mistakes/comment-page-1/#comment-3101</link>
		<dc:creator>(bs.)</dc:creator>
		<pubDate>Sat, 04 Aug 2007 14:12:59 +0000</pubDate>
		<guid isPermaLink="false">http://jesscoburn.com/archives/2007/08/01/how-microsoft-uk-got-hacked-and-how-you-can-learn-from-their-mistakes/#comment-3101</guid>
		<description>Great post, Jess. Thanks! 
 
I haven&#039;t used inline SQL since .net 1.1 - Stored procs are always the way to go. But with .net 2.0, you can use inline queries against your datastore in an ObjectDataSource. Does this compromise security and leave one open to SQL Injection. My initial thought would be yes, because you&#039;re not calling a stored procedure, but then I doubt, thinking that Microsoft has to have accounted for that.  
 
Perhaps I&#039;m missing something, I&#039;m only 6 months into the 2.0 framework and 3.5 is already ramping up and deploying... Can&#039;t ever stay on top of technology. Not sanely, at least. 
 
Goodday, Jess! 
(bs.) </description>
		<content:encoded><![CDATA[<p>Great post, Jess. Thanks!</p>
<p>I haven&#039;t used inline SQL since .net 1.1 &#8211; Stored procs are always the way to go. But with .net 2.0, you can use inline queries against your datastore in an ObjectDataSource. Does this compromise security and leave one open to SQL Injection. My initial thought would be yes, because you&#039;re not calling a stored procedure, but then I doubt, thinking that Microsoft has to have accounted for that. </p>
<p>Perhaps I&#039;m missing something, I&#039;m only 6 months into the 2.0 framework and 3.5 is already ramping up and deploying&#8230; Can&#039;t ever stay on top of technology. Not sanely, at least.</p>
<p>Goodday, Jess!</p>
<p>(bs.)</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using wincache (Feed is rejected)
Page Caching using wincache
Database Caching using wincache
Object Caching 255/276 objects using wincache

Served from: www.jesscoburn.com @ 2012-02-12 02:38:31 -->
