Dot Net Security



Hi

I'm an MCT and came across this little nugget last week.

Using Reflector, I created a project from the Integration services Dll
from sql2005.
I took off the assembly signing, added some code to write to a file.

I dropped the dll in the directory where sqlservr.exe is

I created a new text file in the same directory called
sqlservr.exe.local

Using Sql2005 SIS, it ran my version of the dll!!!!!

Whoops!


I'm waiting to see if Office2007 etc can be controlled in the same way

Hmm...

Tom

.