Page 1 of 1

any body hear about this?

Posted: Fri May 24, 2002 12:32 am
by denolth2
ALERT: SQL Injection Attacks via Port 80 and 443!
It's as simple as placing additional SQL commands into a
Web Form input box giving hackers complete access to your
backend systems! Firewalls, Access Controls and IDS don't
stop such attacks because SQL Injections are NOT seen as
intruders. Download this *FREE* white paper from SPI Dynamics!
http://www.spidynamics.com/mktg/sqlinjection13


I'm kind of leery of sites that require you to register to get something that should be free, if it's information.. :O

dentwo....but that's just me I guess.... :o

Posted: Fri May 24, 2002 12:39 am
by Juggernaut
wow

I guess we'll be expecting another patch soon ;)

Hmmm

Posted: Fri May 24, 2002 11:00 am
by Susky
I see a notice at the NAI site for the "JS/SQLSpida" worm. It works on port 1443, rather than 443.

Here is a link: http://vil.nai.com/vil/content/v_99499.htm