logo

CISA urges software devs to weed out SQL injection vulnerabilities

ID: 8c5a5721-86a5-5d3f-9ae4-d9b2696e9cfd

STIX ID: report--8c5a5721-86a5-5d3f-9ae4-d9b2696e9cfd

Feed Name: Bleeping Computer

Threat Score
80/100

Date Published: 2024-03-25

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

CISA and the FBI issued a joint alert urging technology manufacturers to eliminate SQL injection (SQLi) vulnerabilities following Clop ransomware group's mass exploitation of a zero-day SQLi in Progress MOVEit that enabled extensive data theft and high-value extortion; the agencies recommend secure-by-design practices such as parameterized queries and prepared statements to prevent SQLi and reduce future risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.