<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Securing SQL Server</title>
	<atom:link href="http://securingsqlserver.com/comments/feed" rel="self" type="application/rss+xml" />
	<link>http://securingsqlserver.com</link>
	<description>Protecting Your Database from Attackers</description>
	<lastBuildDate>Thu, 26 Apr 2012 14:01:28 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
	<item>
		<title>Comment on Other Books by Securing SQL Server 2nd Edition Coming Soon - SQL Server with Mr. Denny</title>
		<link>http://securingsqlserver.com/other-books#comment-6862</link>
		<dc:creator>Securing SQL Server 2nd Edition Coming Soon - SQL Server with Mr. Denny</dc:creator>
		<pubDate>Thu, 26 Apr 2012 14:01:28 +0000</pubDate>
		<guid isPermaLink="false">http://securingsqlserver.com/?page_id=18#comment-6862</guid>
		<description>[...] updated everything there for the new edition.  You can always find the old edition listed on the Other Books page on that site or on the Books page on mrdenny.com.     .topsy_widget_shortcode,div.topsy-sm [...]</description>
		<content:encoded><![CDATA[<p>[...] updated everything there for the new edition.  You can always find the old edition listed on the Other Books page on that site or on the Books page on mrdenny.com.     .topsy_widget_shortcode,div.topsy-sm [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Other Books by Securing SQL Server &#187; Blog Archive &#187; Securing SQL Server 2nd Edition Coming Soon</title>
		<link>http://securingsqlserver.com/other-books#comment-6831</link>
		<dc:creator>Securing SQL Server &#187; Blog Archive &#187; Securing SQL Server 2nd Edition Coming Soon</dc:creator>
		<pubDate>Tue, 24 Apr 2012 21:14:21 +0000</pubDate>
		<guid isPermaLink="false">http://securingsqlserver.com/?page_id=18#comment-6831</guid>
		<description>[...] Other Books [...]</description>
		<content:encoded><![CDATA[<p>[...] Other Books [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Chapter 1 of &#8220;Securing SQL Server&#8221; is now available for free on Amazon. by custom database design</title>
		<link>http://securingsqlserver.com/chatper-1-of-securing-sql-server-is-now-available-for-free-on-amazon#comment-6070</link>
		<dc:creator>custom database design</dc:creator>
		<pubDate>Tue, 20 Mar 2012 16:55:24 +0000</pubDate>
		<guid isPermaLink="false">http://securingsqlserver.com/?p=52#comment-6070</guid>
		<description>&lt;strong&gt;custom database design...&lt;/strong&gt;

[...]Securing SQL Server &#187; Blog Archive &#187; Chapter 1 of &#8220;Securing SQL Server&#8221; is now available for free on Amazon.[...]...</description>
		<content:encoded><![CDATA[<p><strong>custom database design&#8230;</strong></p>
<p>[...]Securing SQL Server &raquo; Blog Archive &raquo; Chapter 1 of &#8220;Securing SQL Server&#8221; is now available for free on Amazon.[...]&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Kindle version of Securing SQL Server is available by mrdenny</title>
		<link>http://securingsqlserver.com/kindle-version-of-securing-sql-server-is-available#comment-5783</link>
		<dc:creator>mrdenny</dc:creator>
		<pubDate>Fri, 09 Mar 2012 03:15:30 +0000</pubDate>
		<guid isPermaLink="false">http://securingsqlserver.com/?p=6#comment-5783</guid>
		<description>All you should need to do is attach those files to the SQL Server using the stored procedure sp_attach_db.  You can also use SQL Server Management Studio, by right clicking on Databases and select all tasks then select Attach Database.</description>
		<content:encoded><![CDATA[<p>All you should need to do is attach those files to the SQL Server using the stored procedure sp_attach_db.  You can also use SQL Server Management Studio, by right clicking on Databases and select all tasks then select Attach Database.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Kindle version of Securing SQL Server is available by Leisha Modica</title>
		<link>http://securingsqlserver.com/kindle-version-of-securing-sql-server-is-available#comment-5782</link>
		<dc:creator>Leisha Modica</dc:creator>
		<pubDate>Fri, 09 Mar 2012 03:09:01 +0000</pubDate>
		<guid isPermaLink="false">http://securingsqlserver.com/?p=6#comment-5782</guid>
		<description>Greetings, I figured you will be able to help me. I have a Microsoft SQL .ldf and .mdf file that I need to restore. Any opinions on how to do this?  Cheers</description>
		<content:encoded><![CDATA[<p>Greetings, I figured you will be able to help me. I have a Microsoft SQL .ldf and .mdf file that I need to restore. Any opinions on how to do this?  Cheers</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Exposing SQL Server to the public Internet is a pretty bad idea by http://westcampusconnect.asu.edu/?p=1543</title>
		<link>http://securingsqlserver.com/exposing-sql-server-to-the-public-internet-is-a-pretty-bad-idea#comment-4214</link>
		<dc:creator>http://westcampusconnect.asu.edu/?p=1543</dc:creator>
		<pubDate>Thu, 05 Jan 2012 22:35:31 +0000</pubDate>
		<guid isPermaLink="false">http://securingsqlserver.com/?p=90#comment-4214</guid>
		<description>&lt;strong&gt;Title...&lt;/strong&gt;

This is my Excerpt...</description>
		<content:encoded><![CDATA[<p><strong>Title&#8230;</strong></p>
<p>This is my Excerpt&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on MySQL.com compromised via SQL Injection attack. Someone should have read Chapter 6. by pws frap</title>
		<link>http://securingsqlserver.com/mysql-com-compromised-via-sql-injection-attack-someone-should-have-read-chapter-6#comment-3028</link>
		<dc:creator>pws frap</dc:creator>
		<pubDate>Tue, 22 Nov 2011 05:17:11 +0000</pubDate>
		<guid isPermaLink="false">http://securingsqlserver.com/?p=62#comment-3028</guid>
		<description>&lt;strong&gt;pws frap...&lt;/strong&gt;

[...]Securing SQL Server &#187; Blog Archive &#187; MySQL.com compromised via SQL Injection attack. Someone should have read Chapter 6.[...]...</description>
		<content:encoded><![CDATA[<p><strong>pws frap&#8230;</strong></p>
<p>[...]Securing SQL Server &raquo; Blog Archive &raquo; MySQL.com compromised via SQL Injection attack. Someone should have read Chapter 6.[...]&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Looks like MySQL isn&#8217;t the only company to be succeptable to a SQL Injection Attack (looking at you Barracuda) by Joe L.</title>
		<link>http://securingsqlserver.com/looks-like-mysql-isnt-the-only-company-to-be-succeptable-to-a-sql-injection-attack-looking-at-you-barracuda#comment-378</link>
		<dc:creator>Joe L.</dc:creator>
		<pubDate>Wed, 11 May 2011 18:17:49 +0000</pubDate>
		<guid isPermaLink="false">http://securingsqlserver.com/?p=75#comment-378</guid>
		<description>If you only allow your app to hit stored procedures, you can prevent a hacker from running ad-hoc queries through SQL injection. When the web-dev groupo says they need ad-hoc SQL queries, just say no. If you really have to give ad-hoc access, grant it only to a DMZ schema and take care what you put in there.</description>
		<content:encoded><![CDATA[<p>If you only allow your app to hit stored procedures, you can prevent a hacker from running ad-hoc queries through SQL injection. When the web-dev groupo says they need ad-hoc SQL queries, just say no. If you really have to give ad-hoc access, grant it only to a DMZ schema and take care what you put in there.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Looks like MySQL isn&#8217;t the only company to be succeptable to a SQL Injection Attack (looking at you Barracuda) by Ayyappan</title>
		<link>http://securingsqlserver.com/looks-like-mysql-isnt-the-only-company-to-be-succeptable-to-a-sql-injection-attack-looking-at-you-barracuda#comment-314</link>
		<dc:creator>Ayyappan</dc:creator>
		<pubDate>Sat, 30 Apr 2011 15:22:35 +0000</pubDate>
		<guid isPermaLink="false">http://securingsqlserver.com/?p=75#comment-314</guid>
		<description>Thank you Denny.</description>
		<content:encoded><![CDATA[<p>Thank you Denny.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Looks like MySQL isn&#8217;t the only company to be succeptable to a SQL Injection Attack (looking at you Barracuda) by mrdenny</title>
		<link>http://securingsqlserver.com/looks-like-mysql-isnt-the-only-company-to-be-succeptable-to-a-sql-injection-attack-looking-at-you-barracuda#comment-206</link>
		<dc:creator>mrdenny</dc:creator>
		<pubDate>Tue, 12 Apr 2011 19:42:00 +0000</pubDate>
		<guid isPermaLink="false">http://securingsqlserver.com/?p=75#comment-206</guid>
		<description>This is the catch with SQL Injection, as DBAs we can&#039;t protect  the databases from SQL Injection.  This must be done from the application layer before the data gets to the SQL Server.  By the time it gets to the SQL Server it is just to late.  I talk about SQL Injection in chapter 6 of &quot;Securing SQL Server&quot;, there are lots of other books available on SQL Injection specifically.</description>
		<content:encoded><![CDATA[<p>This is the catch with SQL Injection, as DBAs we can&#8217;t protect  the databases from SQL Injection.  This must be done from the application layer before the data gets to the SQL Server.  By the time it gets to the SQL Server it is just to late.  I talk about SQL Injection in chapter 6 of &#8220;Securing SQL Server&#8221;, there are lots of other books available on SQL Injection specifically.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

