ss_blog_claim=fae120e5c1d5998d026dfd45fe319473 Hack to Learn: List of incidents of class SQL Injection

Tuesday, April 15, 2008

List of incidents of class SQL Injection

Previosly, byPasser told me about database injection. So i need more info about databse injection bcoz not really details explained. Finally, i found info thats look incident in SQL injection. I listed all incident happended lately in SQL injection hacking activities. There are 26 incidents of class SQL Injection, but i listed a bit:

1.WHID 2007-47: Commerce Bank, a US regional bank, hacked
Date: 10 October 2007
Incident Type: Security Breach
WASC Threat Classification: SQL Injection

2.WHID 2007-51: 570 Scarborough & Tweed customers' personal information accessed by SQL injection Date: 30 September 2007
Incident Type: Security Breach
WASC Threat Classification: SQL Injection

3.WHID 2007-37: United Nations VS SQL Injections
Date: 12 August 2007
Incident Type: Security Breach
WASC Threat Classification: SQL Injection
4.WHID 2007-30: Microsoft UK site defaced
Date: 27 June 2007
Incident Type: Security Breach
WASC Threat Classification: SQL Injection

5.WHID 2007-20: Pirate Bay breach leaks database Date: 10 May 2007
Incident Type: Security Breach
WASC Threat Classification: SQL Injection
6.WHID 2007-19: Hacker accessed data at University of Missouri
Date: 08 May 2007
Incident Type: Security Breach
WASC Threat Classification: SQL Injection
7.WHID 2007-21: Belgian Defense Ministry site defaced by Turks
Date: 15 January 2007
Incident Type: Security Breach
WASC Threat Classification: SQL Injection
8.WHID 2006-3: Russian hackers broke into a RI GOV website
Date: 13 January 2006
Incident Type: Security Breach
WASC Threat Classification: SQL Injection
9.WHID 2006-22: SQL injection in a banking application
Date: 01 January 2006
Incident Type: Vulnerability Disclosure
WASC Threat Classification: SQL Injection
10.WHID 2005-46: Teen uses SQL injection to break to a security magazine web site
Date: 01 November 2005
Incident Type: Security Breach
WASC Threat Classification: SQL Injection

Source:http://www.webappsec.org/projects/whid/list_class_sql_injection.shtml
Company: Web Application Security Consortium

0 comments: