Microsoft Windows Vista Community Forums - Vistaheads
Recommended Download



Welcome to the Microsoft Windows Vista Community Forums - Vistaheads, YOUR Largest Resource for Windows Vista related information.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so , join our community today!

If you have any problems with the registration process or your account login, please contact us.

Driver Scanner

SQL injection, lilupophilupop-style, (Tue, Jul 31st)

Security News






Speedup My PC
Reply
  #1 (permalink)  
Old 07-31-2012
Steve's Avatar
Moderator
 

Join Date: Sep 2006
Location: Emerald Isle
Posts: 82,943
Steve has a brilliant futureSteve has a brilliant futureSteve has a brilliant futureSteve has a brilliant futureSteve has a brilliant futureSteve has a brilliant futureSteve has a brilliant futureSteve has a brilliant futureSteve has a brilliant futureSteve has a brilliant futureSteve has a brilliant future
Thanks: 24
Thanked 176 Times in 46 Posts
SQL injection, lilupophilupop-style, (Tue, Jul 31st)
It's been a while since we published the diary about the lilupophilupop SQL injection(https://isc.sans.edu/diary.html?storyid=12127) that back in January had infected LOTS of web sites. But guess what, they are b-aaa-ck, and are trying pretty much the same thing:

which decoded looks as usual:

Searching for the injected lasimp04risioned URL via Google shows that bad guys don't seem to be as 'successful' with this attack as last time, but this can change. If you have additional information from your web server logs, especially also information on which server or content management system is being targeted this time, please let us know.
Thanks to ISC reader Mike for sharing the excerpt from his web logs!
(c) SANS Internet Storm Center. http://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

More...
Reply With Quote
Sponsored Links
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
ISC StormCast for Tuesday, July 31st 2012 http://isc.sans.edu/podcastdetail.html?id=2701, (Tue, Jul 31st) Steve Security News 0 07-31-2012 03:00
ISC StormCast for Thursday, May 31st 2012 http://isc.sans.edu/podcastdetail.html?id=2569, (Thu, May 31st) Steve Security News 0 05-31-2012 04:40
ISC StormCast for Tuesday, January 31st 2012 http://isc.sans.edu/podcastdetail.html?id=2293, (Tue, Jan 31st) Steve Security News 0 01-31-2012 07:30
Lilupophilupop tops 1million infected pages, (Sat, Dec 31st) Steve Security News 0 12-31-2011 08:40
Interesting PHP injection, (Tue, Aug 31st) Steve Security News 0 08-31-2010 11:00




All times are GMT +1. The time now is 22:33.




Driver Scanner - Free Scan Now

Vistaheads.com is part of the Heads Network. See also XPHeads.com , Win7Heads.com and Win8Heads.com.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.7
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.6.0 RC 2

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120