SQL injections - an update

Published: 2008-08-23
Last Updated: 2008-08-23 14:17:35 UTC
by Mark Hofman (Version: 1)
0 comment(s)

In an earlier story  we looked at an SQL injection that has infected close to 1.5 million sites.  The same search now only returns about 175K sites and many of those are discussing the injection.  The URLs I checked were all dead links, so well done everybody in cleaning up isle 3. 

With regards to the second set of SQL injections we talked about here  the number successful injections is still going up.  When I first came across these about 4.5k sites were injected,  now we are up to 33K.  Not a real success story for this particular attack.  The error with the 06014.html page is still not fixed.  The only variation I've seen so far is the target url which changes,  the rest is pretty much the same, the end game is still the stealing of WOW passwords.

People have reported that typically they get two hits from the one IP address and then it moves along. 

Keep an eye on your logs and consider implementing an IDS or use tools such as suhosin for PHP sites,  mod_security for apache, or any other url checking/sanitisation tool.

Mark - Shearwater

Keywords: sql injection
0 comment(s)

Comments

cwqwqwq
eweew<a href="https://www.seocheckin.com/edu-sites-list/">mashood</a>
WQwqwqwq[url=https://www.seocheckin.com/edu-sites-list/]mashood[/url]
dwqqqwqwq mashood
[https://isc.sans.edu/diary.html](https://isc.sans.edu/diary.html)
[https://isc.sans.edu/diary.html | https://isc.sans.edu/diary.html]
What's this all about ..?
password reveal .
<a hreaf="https://technolytical.com/">the social network</a> is described as follows because they respect your privacy and keep your data secure:

<a hreaf="https://technolytical.com/">the social network</a> is described as follows because they respect your privacy and keep your data secure. The social networks are not interested in collecting data about you. They don't care about what you're doing, or what you like. They don't want to know who you talk to, or where you go.

<a hreaf="https://technolytical.com/">the social network</a> is not interested in collecting data about you. They don't care about what you're doing, or what you like. They don't want to know who you talk to, or where you go. The social networks only collect the minimum amount of information required for the service that they provide. Your personal information is kept private, and is never shared with other companies without your permission
https://thehomestore.com.pk/

Diary Archives