I don’t always find SQL injection vulnerabilities in the web applications I test but I have been seeing it more and more recently. I can’t figure out why… When I do uncover this grandest of all vulnerabilities, it’s usually pretty ugly as it was with this recent finding:
Look for this flaw. Use good tools such as Acunetix Web Vulnerability Scanner both without and with user authentication…across all your applications. It’s the last vulnerability you can afford to have in your environment.
“A business associate referred our company to Principle Logic when we were seeking a resource to perform vulnerability /penetration testing for our external and internal networks. We found Kevin Beaver to be professional, well informed, and easy to work with. His testing did not disrupt our networks, and his progress updates were timely.
His final report was very thorough and included security recommendations for our network environment. The executive leadership was so impressed with Kevin’s security expertise, they have extended their agreement to continue to perform periodic testing. We highly recommend Kevin Beaver and Principle Logic as a resource for network security testing.”