Does SQL injections only apply to webpages or will it also work on "normal" programs? -
my question header says, i'm interesting in knowing injections via barcode scanners.
https://youtu.be/qt_gwl1drhc?t=22m36s
it seems dangerously easy hide injections person scanning.
barcode scanners pass through data can decode (unless you've programmed them ignore families of barcodes) , in cases, act keyboard device. if allow code128, valid barcode:
regardless of device used enter data, input user needs validated first.
*for ref, see https://xkcd.com/327/

Comments
Post a Comment