Use app×
Join Bloom Tuition
One on One Online Tuition
JEE MAIN 2025 Foundation Course
NEET 2025 Foundation Course
CLASS 12 FOUNDATION COURSE
CLASS 10 FOUNDATION COURSE
CLASS 9 FOUNDATION COURSE
CLASS 8 FOUNDATION COURSE
0 votes
42 views
in Information Technology by (141k points)
What Is SQL Injection and How Can It Be Prevented?

Please log in or register to answer this question.

1 Answer

0 votes
by (141k points)

 SQL injection is a technique where an attacker inserts malicious SQL code into a query. To prevent it, use parameterized queries or prepared statements. Here's an example using Python's SQLite library:

import sqlite3

conn = sqlite3.connect('database.db')
cursor = conn.cursor()

user_input = "'; DROP TABLE users --"
cursor.execute("SELECT * FROM data WHERE name = ?", (user_input,))

Welcome to Sarthaks eConnect: A unique platform where students can interact with teachers/experts/students to get solutions to their queries. Students (upto class 10+2) preparing for All Government Exams, CBSE Board Exam, ICSE Board Exam, State Board Exam, JEE (Mains+Advance) and NEET can ask questions from any subject and get quick answers by subject teachers/ experts/mentors/students.

Categories

...