logo

Mobilizing SQL Injection Attacks: Same Pig, New Lipstick?

ID: 3d2dc0a9-7662-5cb6-ba14-39a7425d5b50

STIX ID: report--3d2dc0a9-7662-5cb6-ba14-39a7425d5b50

Feed Name: Security Ledger

Threat Score
65/100

Date Published: 2015-05-22

Date Updated: 2026-04-26

Author: Or Katz

...
...

Akamai researchers observed a targeted SQL injection campaign against a government Joomla tourism site in which attackers sent ~1,500 SQLi payloads over ~3 hours from ~150 distinct IPs—many belonging to Chinese mobile carrier networks—to obscure origin and distribute attack traffic; correlation of a shared User-Agent and evolving SQL payloads revealed a coordinated effort to exploit a specific vulnerable URL and harvest data, with application error responses leaking SQL queries.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.