What's wrong with this SQL hmac check?
What's wrong with this SQL HMAC check in a webhook table. The SQL code compares signatures with a non constant time check in application logic. In SQL backed services this allows timing attacks.
#whatswrongwiththissqlquery #sqlbug #sqlproductionbug #sqldebugging #sqldatabase #sqlcodereview #sqlperformance #sqlreliability #sqlanalytics #sqldataintegrity #sqlengineering #sqlhmac #sqltimingattack #sqlwebhook #s...