A couple of good reviews of SQL Injection Attacks and Defense have been posted to Amazon recently (both 5 stars). Firstly we have a review from Chris Gates which gives a good balanced review of the book and points out some things he'd have liked to see. I agree with all of the points, and if we ever get a chance to do a second edition, we can add those on the todo list.
Second and most recent was a review from Richard Bejtlich who was also very positive about the book and mentioned it may be in the running for his "best book of 2009"!.
Found this useful? Then Digg It.
