F-OFF mr sql injection hacker

by rumblepup on June 9, 2008

in The Internet

Well, after we implemented our fix, mr. sql injecting hacker has been shown the door.  Today we where attacked three more times, both in the url and it seems in our open form fields, and as I’m apt to say when I do a beat down, FUACATA.

Bye bye sql injection hacker.

{ 2 comments… read them below or add one }

1 Brad February 2, 2009 at 11:52 pm

What’s the fix?

Reply

2 rumblepup February 3, 2009 at 3:46 am

@Brad – The Fix was to eliminate the passing of sql triggers through forms and text fields. Also eliminating things like VARCHAR, TABLE_CURSOR, or anything else that’s found int this file.

Reply

Leave a Comment

Previous post:

Next post: