Mobilizing SQL Injection Attacks: Same Pig, New Lipstick?
ID: 3d2dc0a9-7662-5cb6-ba14-39a7425d5b50
STIX ID: report--3d2dc0a9-7662-5cb6-ba14-39a7425d5b50
Feed Name: Security Ledger
Threat Score
Akamai researchers observed a targeted SQL injection campaign against a government Joomla tourism site in which attackers sent ~1,500 SQLi payloads over ~3 hours from ~150 distinct IPs—many belonging to Chinese mobile carrier networks—to obscure origin and distribute attack traffic; correlation of a shared User-Agent and evolving SQL payloads revealed a coordinated effort to exploit a specific vulnerable URL and harvest data, with application error responses leaking SQL queries.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
