Problems displaying this newsletter? View online.
Database Weekly
The Complete Weekly Roundup of SQL Server News by SQLServerCentral.com
Hand-picked content to sharpen your professional edge
Editorial
 

Patching Quickly

The Equifax breach and hack occurred because of an un-patched Apache server. Recently a manufacturing plant was disrupted because of a VPN vulnerability, one for which a patch was available. There are no shortage of similar stories, where a patch wasn't applied, and a hacker took advantage of the vulnerability. It seems that social engineering was a huge problem a decade ago, but not un-patched systems are becoming more of an issue.

In the case of the manufacturing plant, the hackers seemed to have spent time using the vulnerability to explore the network and eventually attacked database servers, seeing these as the systems that would most likely disrupt the operations and get the company to pay a ransom.

While ransomware is in the news, I find many more "quiet" stories passed among professionals that had to deal with an attack and recover systems. We know that database systems are incredibly valuable and they often provide the information that drives other systems. If you were going to attack a system and stop operations, those might be the servers you look to find on a network.

Many of us that manage database servers aren't also responsible for other systems. We are responsible for our database systems, but do we patch them regularly? I've always been a little more conservative, but the last few years I've looked to patch my own systems more often. In fact, I also want to be sure we are patching production servers on a regular basis, even if they are running well. The quality of Microsoft Cumulative Updates has improved, though they are not perfect. Make sure you test, and keep an eye out for news of issues with patches.

I would also say that regular patching is a good habit to get into for all administrators. You want to be confident you can test and patch systems if needed. This is especially true for known security vulnerabilities. Even if you can't patch other servers, you can set a good example and request others patch to be sure that you don't wind up the subject of a story like the one linked above.

Steve Jones - SSC Editor

Join the debate, and respond to the editorial on the forums

 
The Weekly News
All the headlines and interesting SQL Server information that we've collected over the past week, and sometimes even a few repeats if we think they fit.
Vendors/3rd Party Products

Join the SQL Monitor Forum Q&A

Got a question about SQL Monitor? SQL Monitor’s Product Manager and Tech Lead are hosting a Q&A on the Redgate Forums on Tuesday 13 April.

Have your say about PASS Summit 2021 (and win a Peloton bike)

Redgate has committed to organizing a free virtual Summit for the PASS Community this fall. To help guide the format and provide you and the data platform community with the best virtual event experience possible, we'd appreciate your input. As a thank you for your feedback you could win a Peloton Bike or $3,000 (the equivalent in your local currency) to donate to your chosen charity.

Have your say on the state of database monitoring in 2021

From Blog – Redgate Software

Since 2018, over 2,400 SQL Server professionals have provided valuable insights into how they monitor and manage their estates, and what challenges they’re facing, through the only industry-wide survey...

SQL Monitor v11.1 now supports Azure SQL Managed Instances

Migration to the cloud and PaaS solutions has accelerated in the past years, and many organizations now manage hybrid estates. To reflect this, the latest release of SQL Monitor adds Azure SQL Managed Instances to its list of supported cloud platforms. This article explains how to monitor performance and activity for Azure SQL Managed Instances using SQL Monitor, with advice on monitoring hybrid estates and migrating from on-prem to Azure SQL Managed Instance.

AI/Machine Learning/Cognitive Services

Insurance price prediction using Machine Learning (ML.NET)

From Simple Talk

In this article, Chandra Kudumula shows how to us...

Administration of SQL Server

Restoring SQL Server – Are you Ready?

From StraightPath Solutions SQL Blog

It’s 5 AM on Wednesday. Your CIO has called your cell phone at home. “We need you to log in right now! Someone or something deleted all of the...

Default Maintenance Plan Shrink Database – Video Tip

From Steve Stedman

The problem with using the default maintenance pla...

Extended Events: Embrace the XML

From Scary DBA (Grant Fritchey)

While XML is, without a doubt, a giant pain in the bottom, sometimes, the best way to deal with Extended Events is to simply embrace the XML. Now, I...

Azure SQL Database

Error creating Azure SQL Database

From SQLServerCentral Blogs

A quick post today, quite simply, the error messag...

Azure Synapse (SQL Data Warehouse and Data Lake)

Query Millions of Genomic Variants At-Scale using Azure Synapse

From BlueGranite Blog

One struggle for genomics research is the ability to analyze the vast amounts of data in an efficient way. Previously, this would have been performed using large, on-premise high...

Backup and Recovery

The production database just went down! What do I do?

From SQLServerCentral Blogs

A few of my colleagues can relate with the title o...

Community Interests

Help Build an Amazing Summit in 2021

From SQLServerCentral Blogs

For a good portion of my career, I’ve been going to the annual Summit in the fall with lots of my fellow SQL Server/Data Platform professionals. I have been... The...

A Year of “Good Morning!”

From SQLServerCentral Blogs

Just a little over a year ago, I started posting a...

Computing in the Cloud (Azure, Google, AWS)

FanGraphs Tags a Cloud Database to Keep Up with the Big Show

From IT Pro - Microsoft Windows Information, Solutions, Tools

Website for baseball analysis turned to MariaDB SkySQL as it looks to take on more game data from domestic and international sources.

The 'Other' Hybrid Cloud Providers: IBM, Oracle and Cisco

From IT Pro - Microsoft Windows Information, Solutions, Tools

The Big 3 clouds are not the only games in town when it comes to hybrid cloud providers.

Deploying Azure Data Services via Terraform Part 7: Deploying an Azure Arc enabled Data Services Controller

From https://chrisadkin.io

Part seven of this series focuses on deploying an Azure Arc enabled Data Services controller to a Kubernetes cluster. As per the closing comments of the last blog post,...

DMO/SMO/Powershell

Cleaning with PowerShell Revisited

Springtime is approaching in North America. Where I live, the snow has finally melted and we have blue skies with warmer temperatures. Of course, this means Spring Cleaning. Time to clear out the winter debris and spruce up the house. For me, this is also a good time for some computing housecleaning as well. I don’t know about your Windows environment, but I tend to accumulate a lot of junk. Most of the time I don’t see it, but I know it’s there. While the junk normally doesn’t have a negative impact, I think mentally, I like clearing things out and tidying up. So I pulled out some older PowerShell code, freshened it up, and now I have a set of tools for clearing out junk and temporary folders.

Data Privacy, Compliance, and GDPR

Google illegally tracking Android users, according to new complaint

From Ars Technica

Activist alleges use of tracking identifiers witho...

How Apple’s new App Tracking Transparency policy works

From Ars Technica

Paper covers IDFA alternatives, rules for Apple's own apps, and more.

Data Visualisation

how do I know which graph to use?

From Storytelling with Data

Illustrations by Catherine Madden Time &...

Database Design, Theory and Development

Mastering TempDB: Managing TempDB growth

Out-of-control tempdb growth must be managed to keep the server running. Monica Rathbun gives her strategy to handle unexpected tempdb growth.

DevOps and Continuous Delivery (CI/CD)

How to improve DevOps communication clarity

From Simple Talk

Communication is at the heart of DevOps, but it ca...

How Do You Overcome “We Have Always Done It This Way”?

From Blog – Redgate Software

I work in computers and my son works in manufacturing, but both of us loathe a single phrase: We have always done it this way. Please allow me to...

DocumentDB/Key-Value/Graph/other NoSQL Databases

Different ways to insert data into Hive table

There are several different variations and ways wh...

Apache Kafka Made Simple: A First Glimpse of a Kafka Without ZooKeeper

At the heart of Apache Kafka® sits the log—a si...

Hardware

Intel 3rd Gen Xeon Scalable (Ice Lake SP) Review: Generationally Big, Competitively Small

From AnAndTech

The launch of Intel’s Ice Lake Xeon Scalable pro...

Microsoft Surface leak: Looks like the Surface Laptop 4 is coming soon

From Ars Technica

2021 AMD-powered Microsoft Surface editions are on...

Silicon Motion Announces SM2708 SD Express Controller

From AnAndTech

Silicon Motion has announced their first SD Card controller to support the NVMe-based SD Express interface. The new SM2708 controller is capable of sequential transfer speeds of 1700 MB/s,...

Microsoft’s Tiny Data Center Liquid Cooling Experiment Is a Big Deal

From IT Pro - Microsoft Windows Information, Solutions, Tools

It’s even bigger than that time its researchers sunk a submarine-like data center in the ocean.

Hardware Testing

HammerDB CLI for Oracle on Azure

From DBAKevlar

Disclaimer: I’m not a big fan of benchmark data.  I find it doesn’t provide us as much value in the Tags:  azure, oracle, Performance Del.icio.us Facebook TweetThis Digg...

MDX/DAX

FIXED – DAX Guide

From Sqlbi

FIXED: Rounds a number to the specified number of ...

Computing rolling average in DAX

From Sqlbi

Computing the rolling 12-months average in DAX loo...

FIND – DAX Guide

From Sqlbi

FIND: Returns the starting position of one text string within another text string. FIND is case-sensitive and accent-sensitive. https://dax.guide/find/

COMBINEVALUES – DAX Guide

From Sqlbi

COMBINEVALUES: Combines the given set of operands using a specified delimiter. https://dax.guide/combinevalues/

CONCATENATE, CONCATENATEX – DAX Guide

From Sqlbi

CONCATENATE: Joins two text strings into one text string. https://dax.guide/concatenate/ CONCATENATEX : Evaluates expression for each row on the table, then return the concatenation of those values in a...

Oracle

Oracle sequences: The basics

Oracle sequences can be used to create artificial IDs for a table. In this article, Jonathan Lewis explains how they work under-the-hood.

Performance Tuning SQL Server

Plansplaining, part 17. Temporal tables (part 2)

From SQL Server Fast

Welcome to part seventeen of the plansplaining ser...

Finding a Spinlock Owner in a Dump

From Forrest Shares Stuff

Oh. Lovely… Well, this SQL Server has dumps. At ...

Spinlock Contention With Parallel Window Aggregates In SQL Server 2019

From Erik Darling Data

Wild, Wild Life The post Spinlock Contention With Parallel Window Aggregates In SQL Server 2019 appeared first on Erik Darling Data.

Common Query Plan Patterns For Joins: OR Clauses

From Erik Darling Data

Least Favorite This is one of my least favorite query patterns, because even with appropriate indexes, performance often isn’t very good without additional interventions. Without indexes in place, or...

Common Query Plan Patterns For Windowing Functions: Column Selection Matters

From Erik Darling Data

Not A Doctor All of our previous queries looked about like this: WITH Comments AS ( SELECT ROW_NUMBER() OVER ( PARTITION BY c.UserId ORDER BY c.CreationDate ) AS n...

Five stages of grief – internals of a hash spill

From SQL Server Fast

This page contains the description for my conference session “Five stages of grief – internals of a hash spill”. Description Target audience Experienced database developers and DBAs, plus all...

PowerPivot/PowerQuery/PowerBI

How to make your matrix column widths all equal to each other in Power BI using DAX.

From Purple Frog Systems

Have you ever come across an issue where your Powe...

Exploring the Power BI Model View

From Guy in a Cube

Have you really used the Power BI model view? Patr...

Power BI for the NON-TECHnical person

From Guy in a Cube

Is Power BI intimidating? Coming from Microsoft Ex...

Exploring Object Level Security in Power BI – Unplugged #13

From Sqlbi

Explore how you can hide columns and tables to Pow...

Partitioned Tables, Power BI And Parquet Files In ADLSgen2

From Chris Webb's BI Blog

Earlier in this series on importing data from ADLSgen2 into Power BI I showed how partitioning a table in your dataset can improve refresh performance. In that post I...

Product Reviews and Articles

Detecting Database Drift during Flyway Database Development

From Product learning – Redgate Software

How to detect database drift prior to running a database migration, so that you can be certain that a database hasn't been subject to any 'uncontrolled' changes that could...

Monitor your SQL Server databases in the cloud and on-premises with one monitoring tool

From Blog – Redgate Software

There’s no doubt the cloud is having a big impact on the nature and make-up of SQL Server estates. The 2021 State of Database DevOps report from Redgate, for...

R Language

SAS graphs for R programmers - pie charts

From AllAnalytics

This is another in my series of blog posts where I take a deep dive into converting R graphs into SAS graphs. Today we'll be working on pie charts. I...

SQL Server Security and Auditing

What to monitor for SQL Server security

Keeping databases secure is critical. In this article, Robert Sheldon explains what to monitor for SQL Server security.

Security News and Issues

Backdoor Added — But Found — in PHP

From Schneier on Security

Unknown hackers attempted to add a backdoor to the...

Facebook Data on 533 Million Users Reemerges Online for Free

From IT Pro - Microsoft Windows Information, Solutions, Tools

The personal data of more than half a billion Face...

How a VPN vulnerability allowed ransomware to disrupt two manufacturing plants

From Ars Technica

Patching in industrial settings is hard. Ransomware shutting down production is harder.

Google’s Project Zero Finds a Nation-State Zero-Day Operation

From Schneier on Security

Google’s Project Zero discovered, and caused to be patched, eleven zero-day exploits against Chrome, Safari, Microsoft Windows, and iOS. This seems to have been exploited by “Western government operatives...

Did 4 Major Ransomware Groups Truly Form a Cartel?

From IT Pro - Microsoft Windows Information, Solutions, Tools

An analysis of well-known extortion groups and their cryptocurrency transactions reveals the answer.

How to Create a Cyber Security Incident Response Plan

From IT Pro - Microsoft Windows Information, Solutions, Tools

Having an effective cyber security incident response plan in place will mitigate the damage an incident can cause.

T-SQL

THROW command is non-terminating across linked servers

While working on a project today, I ran into an interesting issue I’d never encountered before. The THROW command is non-terminating if it is used in a stored procedure over a linked-server.

Never, Ever, Ever Start T-SQL Comments with Two Dashes

From Brent Ozar Unlimited

There are two ways you can write comments in T-SQL...

SQL CASE: Know and Avoid 3 Lesser-Known Hassles

From SQL Server – {coding}Sight

Total: 1 Average: 5SQL CASE? Piece of cake! Really...

Tech News

Google vs. Oracle: SCOTUS Ruling Supports Interoperability Trend

From Past News - RSS Feeds

All around us, we are seeing a war of what was, versus what we are becoming. This battle isn’t new; every age has those that hang onto the past...

Google is now writing low-level Android code in Rust

From Ars Technica

Google's promotion of Rust over C and C++ should l...

FTC urges courts not to dismiss Facebook antitrust case

From Ars Technica

FTC blasts "anticompetitive actions to neutralize, hinder, or deter" competitors.

How the pandemic is fueling the tech industry’s union push

From Technology Review Feed - Tech Review Top Stories

The last votes for one of the most closely watched unionization drives in modern history came in on Monday, March 29, and results could be announced shortly. The vote...

Wi-Fi Devices as Physical Object Sensors

From Schneier on Security

The new 802.11bf standard will turn Wi-Fi devices into object sensors: In three years or so, the Wi-Fi specification is scheduled to get an upgrade that will turn wireless devices...

The Lighter Side

SpaceX landed a rocket on a boat five years ago—it changed everything

From Ars Technica

"We were like, well, we didn't really account for that."

Four astronauts took a Dragon for a spin on Monday morning

From Ars Technica

Cargo and Crew Dragons are creating a bit of a traffic jam in space.

Is Sensible Green Data Center Regulation Even Possible in the EU?

From IT Pro - Microsoft Windows Information, Solutions, Tools

EUDCA managing director Alex Rabbetts on The Data Center Podcast

ABL Space has never launched a rocket, but it just landed a huge contract

From Ars Technica

"We take the scaling challenge seriously and have a clear roadmap."

 
RSS FeedTwitter
This email has been sent to {email}. To be removed from this list, please click here. If you have any problems leaving the list, please contact the webmaster@sqlservercentral.com. This newsletter was sent to you because you signed up at SQLServerCentral.com. Note: This is not the SQLServerCentral.com daily newsletter list, and unsubscribing to this newsletter will not stop you receiving the SQL Server Central daily newsletters. If you want to be removed from that list, you can follow the instructions on the daily newsletter.
©2019 Redgate Software Ltd, Newnham House, Cambridge Business Park, Cambridge, CB4 0WZ, United Kingdom. All rights reserved.
webmaster@sqlservercentral.com

 

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -