SQL-injection attack hits 380,000 URLs

By Nicole Kobie on Apr 4, 2011 8:49 AM
Filed under Security

Websense says the "bad guys" haven't made use of their success yet.

A massive SQL-injection attack has compromised 380,000 URLs, according to Websense.

The security firm first noticed the attack on Tuesday. From then, the number of affected URLs has jumped from 28,000 to 380,000 and counting - making it one of the largest such campaigns Websense has seen.

Affected sites are easy to spot by searching for the line of JavaScript that the attack inserts into a page, which links to a site called Liza Moon.

That site is currently down, but Websense said in a blog post it was redirecting users to a fake antivirus site earlier in the week.

Websense listed several iTunes URLs as compromised with the injected code, but said Apple's system doesn't execute the code, so users are safe.

Indeed, the "bad guys" haven't yet done much with the attack, Websense noted.

“We have been monitoring the attack since it came out and noticed that the number of the compromised URLs is still increasing... Different payload sites, have started to be involved in addition to the original Lizamoon.com," said Carl Leonard, threat research manager at Websense Security Labs.

"The payload sites remain inactive at present although they could be ‘switched’ on at any time," he added. "We can only speculate as to what the bad guys are waiting for.”

This article originally appeared at pcpro.co.uk

 
Follow us on Facebook and Twitter
 

Copyright © PC Pro, Dennis Publishing

SQL-injection attack hits 380,000 URLs
 
 
 
 
 
Top Stories
EU cites Huawei and ZTE for trade violations
Violating anti-dumping and anti-subsidy guidelines.
 
Parliament backs crime data sharing overhaul
IT challenges being scoped.
 
In pictures: HTC One vs Samsung Galaxy S4
Two Android titans battle it out.
 
Sign up to receive CRN email bulletins
   FOLLOW US...
Latest Comments
Polls
Is your business doing as well now as it was at this time last year?


   |   View results
Yes
  32%
 
No
  53%
 
The same
  15%
TOTAL VOTES: 351

Vote now
CRN Magazine

Issue: 315 | May 2013

CRN Magazine looks in-depth at the emerging issues and developments for the channel, and provides insight, analysis and strategic information to help resellers better run their businesses.