import sqlite3
conn = sqlite3.connect(':memory:')
cur = conn.cursor()
cur.execute('CREATE TABLE users (id INTEGER PRIMARY KEY, username TEXT, password TEXT)')
cur.execute("INSERT INTO users (username, password) VALUES ('alice', 'wonderland')")
# Unsafe way: directly inserting user input
user_input = "alice' OR '1'='1"
query = f"SELECT * FROM users WHERE username = '{user_input}'"
cur.execute(query)
print('Unsafe query result:', cur.fetchall())
# Safe way: using parameterized query
safe_query = "SELECT * FROM users WHERE username = ?"
cur.execute(safe_query, (user_input,))
print('Safe query result:', cur.fetchall())