Automated SQL Injection Critically Compromises Websites
According to Rapid7, a provider of security solutions to business organizations, on May 13, 2008, several Websites that came under SQL injection attack have been affected after their content got modified. This has resulted in malware installation onto all those computers that accessed those sites.
Security Researchers at Rapid7 said that these Websites were susceptible to SQL injection and those that were succumbed to hack with the use of this automated toolkit. Furthermore, by running a Google search for the malware-loaded server name, attackers could know the sites that had been already hacked.
In the attack using the "winzipices.cn" SQL injection, the target was on Web programs based on Microsoft's SQL Se...
» SPAMfighter News - 5/19/2008
We are happy to see you are reading our IT Security News.
We do believe, that the foundation for a good work environment starts with fast, secure and high performing computers. If you agree, then you should take a look at our Business Solutions to Spam Filter & Antivirus for even the latest version of Exchange Servers - your colleagues will appreciate it!