Export or edit this event...

Portland OWASP - SQL Injection! (Open Web Application Security Project)

U.S. Bancorp Tower
111 SW 5th Avenue
Portland, Oregon, United States (map)



SQL Injection

This talk provides a brief introduction to SQL injection and continues with a discussion of advanced exploitation methods. The presentation concludes with coverage of various prevention and mitigation strategies.


  • History & Background
  • Basic Examples
  • Common Exploitation Methods
  • Exfiltration
  • Escalation
  • Prevention, Avoidance & Mitigaiton
  • Encoding
  • Data Validation
  • Deployment Configuration

Event details: Date: September 30th, 2009 Time: 03:30PM - 04:30PM PST Location: US Bank Tower Plaza 111SW 5th Avenue, Portland, OR.

More information will be provided shortly on the OWASP Portland chapter mailing list: https://lists.owasp.org/mailman/listinfo/owasp-portland Additional information recently posted: https://lists.owasp.org/pipermail/owasp-portland/2009-September/000007.html

NOTE: For future notices on events, be sure to join the mailing list.


The Open Web Application Security Project (OWASP) is a worldwide free and open community focused on improving the security of application software. Our mission is to make application security visible, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license. The OWASP Foundation is a 501c3 not-for-profit charitable organization that ensures the ongoing availability and support for our work from Individuals, Organization Supporters & Accredited University Supporters.