Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
SQL attack continues to infect Web sites
Robert Lemos, 2008-01-10
Comments Mode:
SQL attack continues to infect Web sites 2008-01-10
Anonymous
it isn't that hard to automate sql-injection tests w/auto exploit w/auto loader. I'm not impressed with 'their' skill nor their brazen lack of secrecy....

[ more ]  [ reply ]
SQL attack continues to infect Web sites 2008-01-10
Anonymous (1 replies)
What is the suggested fix, that is if one exists, for this exploit?...

[ more ]  [ reply ]
Re: SQL attack continues to infect Web sites 2008-01-17
Anonymous
Use MSSQL/PL-SQL Stored Procedures, limit what and who has access to the stored procedures and associated tables. Perform code reviews, check that string, interger, etc. types are declared in the code and perform error checking. Patch and set IDS/IPS SQL-Injection signatures to High and send alerts ...

[ more ]  [ reply ]
SQL attack continues to infect Web sites 2008-01-11
Anonymous
It's a XSS attack and not a SQL one ........

[ more ]  [ reply ]
SQL attack continues to infect Web sites 2008-01-19
Anonymous
Hahaha ... Iframe is used to XSS attacks .. What centers with SQL Injection attacks? :-D...

[ more ]  [ reply ]







 

Privacy Statement
Copyright 2009, SecurityFocus