SQL Question

RegEx to Detect SQL Injection

Is there a Regular Expression that can detect SQL in a string? Does anyone have a sample of something that they have used before to share?


Don't do it. You're practically guaranteed to fail. Use PreparedStatement (or its equivalent) instead.