Slashdot Mirror


SQL Injection Attack Claims 132,000+

An anonymous reader writes "A large scale SQL injection attack has injected a malicious iframe on tens of thousands of susceptible websites. ScanSafe reports that the injected iframe loads malicious content from 318x.com, which eventually leads to the installation of a rootkit-enabled variant of the Buzus backdoor trojan. A Google search on the iframe resulted in over 132,000 hits as of December 10, 2009."

12 of 186 comments (clear)

  1. hey by Spazztastic · · Score: 2, Funny

    Hey, I went to 318x.com and all of a sudden my computer is acting funny. Any suggestions?

    --
    Posts not to be taken literally. Almost everything is sarcasm.
    1. Re:hey by jo42 · · Score: 4, Funny

      dd if=/dev/zero of=/dev/sda bs=8192 will fix it.

    2. Re:hey by Yvan256 · · Score: 4, Funny

      Call a comedy club and get your computer on stage?

    3. Re:hey by unformed · · Score: 2, Funny

      dd: opening `/dev/sda` failed: Permission denied.

    4. Re:hey by Anonymous Coward · · Score: 2, Funny

      "'dd' is not recognized as an internal or external command, operable program or batch file."

      Still broken! =(

      Posting AC so I don't get modded to hell by people who either don't think that was funny or are simply incapable of recognizing a joke.

    5. Re:hey by Anonymous Coward · · Score: 2, Funny

      sudo !!

      sudo dd if=/dev/zero of=/dev/sda bs=8192

      Nope. Just says "Bad command or file name".

    6. Re:hey by Arancaytar · · Score: 3, Funny

      I actually post all my comments via a dead-man's-switch proxy that logs my keystrokes in real time and submits the post once it detects inactivity. This way I can type things like Candlejack and still publish my po

  2. Little Bobby Tables by bmearns · · Score: 2, Funny

    I blame Mrs. Roberts.

    --
    Slashdot is not a game, Slashdot is not a game. Crap, I just lost points.
    1. Re:Little Bobby Tables by bmearns · · Score: 1, Funny

      Digg? Sorry, I'm not really into Pokemon.

      --
      Slashdot is not a game, Slashdot is not a game. Crap, I just lost points.
  3. Reminds me of xkcd by BountyX · · Score: 3, Funny

    Seriously people stop naming your kids with ');DROP TABLE at the end...

    --
    Trying to install linux on my microwave, but keep getting a kernel panic...
  4. Re:Details? by Bert64 · · Score: 4, Funny

    Windows 9x used to due a pretty good job, can't own a system once it's bluescreened.

    --
    http://spamdecoy.net - free throwaway anonymous email - avoid spam!
  5. SQL injections? Are those for H1N1? by fortapocalypse · · Score: 2, Funny

    Oops. Send those SQL injections back. We don't need them.