默认情况下,它不会检测所有函数,而只是检测确实需要保护的函数(主要是使用字符数组的函数)。
By default, it doesn't instrument all functions, only those that it deems as being in need of protection (mainly functions with character arrays).
这段代码接受来自用户的受感染数据,检查要打印的字符只有字母和数字字符以及空格符,以此来提供安全保护。
This piece of code takes up tainted data from the user, ensuring protection as it checks that the characters to be printed are only alphanumeric characters and Spaces.
清除传入数据并通过转义传入的字符串保护数据库(参见清单3)。
"Clean up the incoming data and protect the database by escaping the incoming string (see Listing 3)."
令牌一般是字母和数字(不限于)组成的随机字符串,它是唯一的,难于猜测的,通过密钥来保护它不被篡改。
A Token is generally a random string of letters and Numbers (but not limited to) that is unique, hard to guess, and paired with a Secret to protect the Token from being abused.
在SNMP标准的版本1中,社区字符串是保护或限制访问的唯一方法。
In Version 1 of the SNMP standard, the community string was the only method of securing or restricting access.
被授权的用户为取得对系统或系统中被保护的信息的存取权而输入给系统的专门的字符串。
A unique string of characters input by an authorized user in order to gain access to a system or to protected information in the system.
如果您的应用程序将传输保护用户数据,使用字符串在你访问请求应该清楚地通知用户,他们的数据将被上传到您的服务器,如果他们同意。
If your application will be transmitting protected user data, the usage string in your access request should clearly inform the user that their data will be uploaded to your server if they consent.
如果连接字符串未受保护,那么它就是一个潜在漏洞。
A connection string presents a potential vulnerability if it is not secured.
如果选择SQL身份验证,将使用数据保护API (DPAPI)基于您的用户凭据对连接字符串进行加密。
If you choose SQL authentication, the connection strings are encrypted, using Data Protection API (DPAPI), based on your user credentials.
如果选择SQL身份验证,将使用数据保护API (DPAPI)基于您的用户凭据对连接字符串进行加密。
If you choose SQL authentication, the connection strings are encrypted, using Data Protection API (DPAPI), based on your user credentials.
应用推荐