Imagine you have been asked to work at your organization’s booth at a high schoo

Imagine you have been asked to work at your organization’s booth at a high school career fair. You and other members of the IT security team must be ready to discuss important topics in IT security with the students on the topic you have been assigned. Your assigned topic is SQL injection attacks.
Write a 1- to 2-page outline of your talking points for the career fair in which you:
Define SQL injection.
Identify common SQL injection attacks and explain what each attack does.
Identify SQL injection detection techniques.
Identify countermeasures to SQL injection.
Describe the effectiveness of the SQL injection countermeasures you identified.

Why are the terms ”field” and ”record” incorrect when referring to column an

Why are the terms ”field” and ”record”
incorrect when referring to column and row
2.
Why is the term ”NULL value” incorrect
3.
How many
orders where made from the Sales.Orders table
4.
Get the
Shippeddate,the count of Numorders,the count of Shippeddate,the minimum
shippeddate as the first ship date,the maximum shippddate as the Latestshipdate
(JUST WRITE QUERY)
5.
Get the top
3 order details of Total Sales where total sales is defined as the product
of the Unitprice and quantity (JUST WRITE QUERY)
6.
Get the
Ship ID, The total freight greater than 2000 from the Sales.orders table (JUST WRITE QUERY)
7.
Get the
hire country,hiredate ,the Number of employees hired after 20030101 from the
HR.Employees Table (JUST WRITE QUERY)
8.
Write a
query to return orders that were not shipped yet. Such orders have a NULL in
the shippeddate column.
9.
You are
requested to return all orders that were placed between February 11,2008 and
February 12,2008 (JUST WRITE QUERY)
10.
If I want
to return information about employees from Washington State in the United
States, sorted by city and empid (JUST WRITE QUERY)
11.
Write a
query that returns the orders for customer 77. Such that the rows will be
sorted by shipperid. To avoid tiebreakers perform secondary ordering by shipped
date and orderid, descending respectively (JUST
WRITE QUERY)

Data Definition – DDL (CREATE DATABASE, CREATE TABLE…) 1. Create the SQL stateme

Data Definition – DDL (CREATE DATABASE, CREATE TABLE…)
1. Create the SQL statements that construct (CREATE) a database named “DOCTIME” and all
of the tables (entities and attributes) using the MySQL database language syntax from the attached ERD.
2. Don’t foreget to decide the data type used for each attribute. You should use common sense
judgement when defining the data type. If the value uses any kind of text or character values, use
the VARCHAR() data type. When using the VARCHAR data type make sure you define the
maximum length potential for each value. For example: If you think the value will be on average
10 characters, may reach a maximum of 12, then use VARCHAR(12).
3. Remember, Primary Key fields require the NOT NULL property.
4. Do not worry about the Foreign Key or UNIQUE properties for this exercise.

Why are the terms ”field” and ”record” incorrect when referring to column an

Why are the terms ”field” and ”record”
incorrect when referring to column and row
2.
Why is the term ”NULL value” incorrect
3.
How many
orders where made from the Sales.Orders table
4.
Get the
Shippeddate,the count of Numorders,the count of Shippeddate,the minimum
shippeddate as the first ship date,the maximum shippddate as the Latestshipdate
(JUST WRITE QUERY)
5.
Get the top
3 order details of Total Sales where total sales is defined as the product
of the Unitprice and quantity (JUST WRITE QUERY)
6.
Get the
Ship ID, The total freight greater than 2000 from the Sales.orders table (JUST WRITE QUERY)
7.
Get the
hire country,hiredate ,the Number of employees hired after 20030101 from the
HR.Employees Table (JUST WRITE QUERY)
8.
Write a
query to return orders that were not shipped yet. Such orders have a NULL in
the shippeddate column.
9.
You are
requested to return all orders that were placed between February 11,2008 and
February 12,2008 (JUST WRITE QUERY)
10.
If I want
to return information about employees from Washington State in the United
States, sorted by city and empid (JUST WRITE QUERY)
11.
Write a
query that returns the orders for customer 77. Such that the rows will be
sorted by shipperid. To avoid tiebreakers perform secondary ordering by shipped
date and orderid, descending respectively (JUST
WRITE QUERY)

Data Definition – DDL (CREATE DATABASE, CREATE TABLE…) 1. Create the SQL stateme

Data Definition – DDL (CREATE DATABASE, CREATE TABLE…)
1. Create the SQL statements that construct (CREATE) a database named “DOCTIME” and all
of the tables (entities and attributes) using the MySQL database language syntax from the attached ERD.
2. Don’t foreget to decide the data type used for each attribute. You should use common sense
judgement when defining the data type. If the value uses any kind of text or character values, use
the VARCHAR() data type. When using the VARCHAR data type make sure you define the
maximum length potential for each value. For example: If you think the value will be on average
10 characters, may reach a maximum of 12, then use VARCHAR(12).
3. Remember, Primary Key fields require the NOT NULL property.
4. Do not worry about the Foreign Key or UNIQUE properties for this exercise.

Note: If you double click sqlite3.exe, you wont be able to immediately create or

Note: If you double click sqlite3.exe, you wont be able to immediately create or access a database. You’ll see a red line of text telling you that if you work with a database, it will be transient /in memory only. You don’t want that. The instructions for this project ask you to open the Windows prompt, change to the directory where you save the sqlite3.exe file. If you have to double click sqlite3.exe to access SQLite, then once you open it that way, you’ll need to type this dot command:
.open premiere.db
If premiere.db does not exist, sqlite creates it. If the database exists, it opens it.

Create a simple database for tracking information, using a provided template. Fo

Create a simple database for tracking information, using a provided template.
For this third assessment, you will learn how to backup our Volunteer database by using the command-line utility mysqldump.exe. After you have a database backup, you will then practice database normalization by splitting the PERSON table into smaller tables containing our volunteers contact information. For this assessment, you will learn to use various SQL commands:
Use the mysqldump.exe command line tool to backup the data in your Volunteer database.
Create three new tables (ADDRESS, PHONE, AND EMAIL) for your volunteer database. These new tables will hold the street address, phone number, and email address for each volunteer.
Use the SQL INSERT INTO statement to populate your new tables with information for the volunteers in the PERSON table.
Modify the PERSON table to remove the columns for the data moved to the new tables.

Create a simple database for tracking information, using a provided template. Fo

Create a simple database for tracking information, using a provided template.
For this third assessment, you will learn how to backup our Volunteer database by using the command-line utility mysqldump.exe. After you have a database backup, you will then practice database normalization by splitting the PERSON table into smaller tables containing our volunteers contact information. For this assessment, you will learn to use various SQL commands:
Use the mysqldump.exe command line tool to backup the data in your Volunteer database.
Create three new tables (ADDRESS, PHONE, AND EMAIL) for your volunteer database. These new tables will hold the street address, phone number, and email address for each volunteer.
Use the SQL INSERT INTO statement to populate your new tables with information for the volunteers in the PERSON table.
Modify the PERSON table to remove the columns for the data moved to the new tables.