Members
  • Total Members: 14176
  • Latest: toxxxa
Stats
  • Total Posts: 42952
  • Total Topics: 16150
  • Online Today: 4651
  • Online Ever: 51419
  • (01. January 2010., 10:27:49)









Author Topic: Romanian hackers successfully hack MySQL.com with SQL injection  (Read 4440 times)

0 Members and 2 Guests are viewing this topic.

Samker

  • SCF Administrator
  • *****
  • Posts: 7528
  • KARMA: 322
  • Gender: Male
  • Whatever doesn't kill us makes us stronger.
    • SCforum.info - Samker's Computer Forum
 

MySQL.com was hacked over the weekend via an attack which used a blind SQL injection exploit to pull off the pawnage.

Hackers extracted usernames and password hashes from the site, which were subsequently posted to pastebin.com. Any easy to guess login credentials could be easily extracted from this data using rainbow tables to match dictionary passwords to their hash values.

This information revealed that the director of product management for WordPress at MySQL used a four digit number as his password, among other snippets, net security firm Sophos reports: http://nakedsecurity.sophos.com/2011/03/27/mysql-com-and-sun-hacked-through-sql-injection

Romanian grey-hat hackers TinKode and Ne0h of Slacker.Ro claimed responsibility for the attack.

MySQL offers open source-based database software and services to enterprises.

Security practices at MySQL.com obviously left quite a lot to be desired. As well as the vulnerability actually used to pull off the attack MySQL.com has been vulnerable to XSS exploits since January, according to XSSed.com.

MySQL's parent company Sun/Oracle was also hit by the same hackers, who extracted emails from compromised websites. Login credentials were not compromised in that case.


(ElReg)

Samker's Computer Forum - SCforum.info


shellyhowell

  • SCF Member
  • **
  • Posts: 15
  • KARMA: -3
Re: Romanian hackers successfully hack MySQL.com with SQL injection
« Reply #1 on: 30. April 2011., 07:23:49 »
Wow! shocking news you have shared here.. I think today hacking problem is the main problem in the network.. be careful..

Samker's Computer Forum - SCforum.info

Re: Romanian hackers successfully hack MySQL.com with SQL injection
« Reply #1 on: 30. April 2011., 07:23:49 »

 

With Quick-Reply you can write a post when viewing a topic without loading a new page. You can still use bulletin board code and smileys as you would in a normal post.

Name: Email:
Verification:
Type the letters shown in the picture
Listen to the letters / Request another image
Type the letters shown in the picture:
Second Anti-Bot trap, type or simply copy-paste below (only the red letters):www.scforum.info:

Enter your email address to receive daily email with 'SCforum.info - Samker's Computer Forum' newest content:

Terms of Use | Privacy Policy | Advertising