Skip to main content

SQL Injection, Teknik Hacking Klasik Namun Sakti Mantraguna

SQL injection, sebuah metode hacking sederhana namun memiliki efek yang sungguh luar biasa. Hanya dengan memasukkan query-query sederhana, Sang hacker dapat mengambil alih kendali website. Mulai dari memasukkan data, merubah data, menghapus isi website, sampai mematikan (deface) website tersebut.

Pertama, mungkin saya jelaskan terlebih dahulu apa itu SQL. SQL (Structured Query Language) merupakan bahasa pemrograman database yang banyak digunakan oleh aplikasi website pada saat ini. Banyak aplikasi database yang mengunakan SQL sebagai bahasa pengeloaan data yang disimpan dalam database, diantaranya adalah Oracle, Mic. Access, SQL Server, dan yang paling terkenal adalah MySQL.

SQL injection, mulai menjadi sebuah metode fenomenal pada tahun 2004. Metode ini memanfaatkan rapuhnya script aplikasi website yang dibangun oleh programmer. Tentu Anda masih ingat dengan kasus bobolnya website KPU saat Pemilu 2004 kemarin. Sang Hacker hanya dengan menggunakan SQL Injection mampu mengobok-obok situs yang berisikan jumlah suara pemilu.

SQL Injection dapat dilakukan dengan berbagai cara, diantara adalah melalui form yang tersedia pada website dan melalui URL website itu sendiri. Khusus untuk Anda sebagai programmer website pemula, yang perlu Anda perhatikan adalah untuk tidak memproses sebuah input atau perintah dari pengguna website sebelum melewati tahap pemeriksaan isi dari input tersebut. Karakter dari isi perintah/input yang harus difilter adalah tanda petik ganda ( " ), tanda petik tunggal ( ' ), titik koma ( ; ), sama dengan ( = ).

Apabila Anda programmer PHP, Anda dapat menggunakan fungsi str_replace. Sedangkan bila Anda programmer ASP, Anda dapat menggunakan fungsi Replace.

Mungkin saat ini metode tersebut sudah agak basi dikalangan Hacker, namun bukan berarti Anda tidak waspada bukan? Jadi tidak heran bila Anda sebagai pemilik website harus tetap ekstra waspada terhadap potensi bahaya dari metode ini.

Popular posts from this blog

Pull System VS Push System

Push system / Press System is a system of centralized production control (Indrianti & Nursubiyantoro, 2006). Whereas the pull system is a production control system is not centralized (Indrianti & Nursubiyantoro, 2006). The different both Push System and Pull System are: Push System: Production control systems are centralized, controlling the entire production department Push system, the material motivated to further the process on the basis of the available resources In press system allows the inventory, which will cause the cost of inventory Planning and production control on press systems using MPS and MRP Pull System: Pull system is not centralized Material drawn by the following process according to the amount of material that is only needed Inventory amount sought to be eliminated or minimized pull system using kanban

Avoid Google Adsense Public Sevice Advertise (PSAs) at Blogger

Might be some blogger have same problem with me, how to avoid Google Adsense Public Sevice Advertise (PSAs). Although they have used supported language, but the PSAs still appear. How to avoid that? The answer is, you can use "Section Targeting". Section targeting allows you to suggest sections of your text and HTML content that you'd like Google to emphasize or downplay when matching ads to your site's content. To implement section targeting, you'll need to add a set of special HTML comment tags to your code. These tags will mark the beginning and end of whichever section(s) you'd like to emphasize or de-emphasize for ad targeting. The HTML tags to emphasize a page section take the following format: <!-- google_ad_section_start --> your content here (supported language).. your content here (supported language).. your content here (supported language).. <!-- google_ad_section_end --> You can use section targeting to make suggestions about as many s

50% Indonesian Poor Family Spent Their Money for Smoking

Smoking is more important than family Happiness. 50% poor family in Indonesia spent their money for smoking. Whereas they can use the money to buy food and milk for their children than cigarette. "1 from 2 poor family, which their wage only under IDR 600.000, spent their money to buy cigarette," said Abdilah Hasan, Indonesian Demography Researcher Institut (Src: detik.com, Apr 21, 2009). Wow... Unbelievable!! But, I don't have any idea to disagree with Abdilah Hasan's pronouncement. If I can make analysis, there are few factors why that happen. 1. Education level Average low middle economic level only have education until junior high school. It's different with intelectual people which ordinary is up middle economic level. Intelectual people has already know that smoking is not good for their healthy. 2. Stress and economic problems My friend ever told me he smoke if he had some problems which he can't solve it. He said with smoking, he felt better and he can