Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

How is this different from sending SQL to a remote MysQL server? It is literally wrapping existing interface with obscure query strings in URL


Somewhat less prone to SQL injection attacks (I haven't looked at the code, so I may be wrong, but this does limit what can be queried if implemented correctly.)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: