Nick Galbreath presents SQL-RISC, a new approach to significantly reduce the SQL injection attack surface without needing new hardware or extensive application changes. By analyzing over 50,000 SQL injection samples, SQL-RISC aims to eliminate vulnerable SQL features such as unions, comments, and subselects, achieving over 95% reduction in attacks. The method not only simplifies SQL but also enhances security, making it feasible for public web applications.