“SLQ” is an acronym for “Structured Query Language,” a special purpose programming language for management of data in a relational database. If this language is tampered with by an unauthorized user or malicious actor, the results might include:
SQL injection is considered a major risk to organizations based on the frequency of and general ease with which these attacks are executed. Readily available automated web crawling tools allow attackers to find input vulnerabilities without any manual intervention. Executing the input of malicious code can be automated as well. OWASP includes SLQ injection among its Top Ten List of Web Application Attacks published each year.
Because software code is prone to human error, some prevention methods which security teams may implement include:
Below is an exmple taken from https://www.owasp.org/index.php/SQL_Injection:
Get the DeMISTIfying InfoSec newsletter every Tuesday!