Hacker News new | ask | show | jobs
by sebcat 4681 days ago
How can you have blind-/boolean based SQL injection without any false positives? I would at least expect some level of false positives for these methods as they generally imply causation from correlation.
2 comments

How can you have any kind of system without false positives? Even medical tests have false positives, and there is a lot more review than this stuff.

But, copy writing is art and science. Keep the fluff away from HN skeptics, and you should be fine. :-)

Well, if you don't have any positives . . .
Yes, the word Free is also highlighted in bold on the homepage, while False-Positive isn't. I assumed it was a free service for a good 5 seconds. If that was intentional or not, I can't tell.