Go Back   Cloud Computing > Support > MySQL Issues.
 

Reply
 
Thread Tools Display Modes
  #1 (permalink)  
Old 05-20-11, 08:27
BOD Member
 
Join Date: Apr 2011
Posts: 74
Question FaceBook Applications?

Hi

I am working with an application for social networking sites for FaceBook. While testing that applications from tester, we found that it is possible to change the prices of things and get them at free of cost. I have discussed this issue with several web developers and they say, I need to create database tables read only, but I am pretty new to this field so not sure how do execute this.
Reply With Quote
  #2 (permalink)  
Old 05-20-11, 08:36
Rozanne's Avatar
BOD Member
 
Join Date: Nov 2010
Posts: 116
Default

If they are tapping weakness in your code, then probably your need take advice from those developers who are specialized in social networking sites applications. You just need to ensure that application users cannot be succeed by using SQL injection attacks, but for practice you need to use all those methods to test your application. I would recommend you to browse few sites whose are dedicated to social networking sites application security.
Reply With Quote
  #3 (permalink)  
Old 05-20-11, 09:36
BOD Member
 
Join Date: Apr 2011
Posts: 74
Default

Alright, but how can I set tables to read only, as I am newish to database. Also I've had a look, but cannot find how to do this?
Reply With Quote
  #4 (permalink)  
Old 05-20-11, 09:38
Rozanne's Avatar
BOD Member
 
Join Date: Nov 2010
Posts: 116
Default

You can set up through suitable use of user permissions that is GRANT whatever permissions are required. You should check the MySQL manual for security permissions. There you will find lot of tweaks and tricks.

However, as I said earlier mostly they can be doing this via SQL injections so you should create a certain code that doesn't allow such kind of attacks, but that is coding issues for particular application. So that is the reason I recommended you to search social networking sites applications advice.
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off
Forum Jump


All times are GMT -6. The time now is 00:50.

Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0
Copyright © 1999-2012, BODHost Ltd. All rights reserved.