From the course: Writing Secure Code for Android by Infosec

Unlock this course with a free trial

Join today to access over 25,400 courses taught by industry experts.

Input sanitization

Input sanitization

- Input sanitization. Let's talk about input sanitization. So important to clean out unwanted characters. What is it? It's the act of removing, replacing, neutralizing potentially harmful incoming characters. It's a general defense for stopping any number of attacks. If you do it properly, it could even stop attacks that you might not even foresee. Now, it won't stop everything, of course not. It will help restrict the attacks or make them more difficult to execute. There's a favorite cartoon about little Bobby Tables here, and so here's mom, and she's answering the phone and it's, "Hi, this is your son's school. We're having some computer trouble." Mom, "Oh, dear, did he break something?" "Well, in a way." "Did you really name your son Robert?" (laughs) Single quote, close paren, semicolon, DROP TABLE Students, semicolon, tack, tack. "Oh yes, little Bobby Tables, we call him." "Well, we've lost this year's student records. I hope you're happy." And Mom says, "And I hope you've…

Contents