Blog Home Page Photos Home RSS 2.0 Kavinda Munasinghe's Blog



 Saturday, June 28, 2008
Posted by Kavinda Munasinghe on Saturday, June 28, 2008 12:14:18 PM (Sri Lanka Standard Time, UTC+05:30)
Earlier this week Microsoft IIS team released its URLScan 3.0 (beta) to help fight SQL injection attacks at the Web Server, now Microsoft has put out another tool, this time in the form of a Code Analyzer. Microsoft Source Code Analyzer for SQL Injection should help out to quickly analyze and secure any existing ASP code.

Microsoft Source Code Analyzer for SQL Injection [Community Technology Preview (June 2008)]
Static code analysis tool for finding SQL Injection vulnerabilities in ASP code.
Microsoft Source Code Analyzer for SQL Injection

Also, there is this tool from HP that allows you to check your sites against these types of vulnerabilities.

Scrawlr (offered as-is and is not a supported product by HP)
Developed by the HP Web Security Research Group in coordination with the MSRC will crawl a website while simultaneously analyzing the parameters of each individual web page for SQL Injection vulnerabilities.




#    Comments [0]   
Name
E-mail
(will show your gravatar icon)
Home page

Comment (HTML not allowed)  

Live Comment Preview



Copyright © 2008 Kavinda Munasinghe. All rights reserved.