EvilZone

Hacking and Security => Hacking and Security => : Satan911 March 28, 2011, 08:48:57 PM

: MySQL.com hacked via... SQL injection vuln
: Satan911 March 28, 2011, 08:48:57 PM
MySQL.com was hacked over the weekend via an attack which used a blind SQL injection exploit to pull off the pawnage.
Hackers extracted usernames and password hashes from the site, which were subsequently posted to pastebin.com. Any easy to guess login credentials could be easily extracted from this data using rainbow tables to match dictionary passwords to their hash values.

[...]

Article: http://www.theregister.co.uk/2011/03/28/mysql_hack/ (http://www.theregister.co.uk/2011/03/28/mysql_hack/)
: Re: MySQL.com hacked via... SQL injection vuln
: Stackprotector March 28, 2011, 09:11:32 PM
Almost 1 april right?
: Re: MySQL.com hacked via... SQL injection vuln
: Satan911 March 28, 2011, 09:58:27 PM
I've seen the database tables / columns.. Will try to find it. (it was in another article)

Edit: Here's a bit more detail: http://www.hackerregiment.com/mysql-com-vulnerable-to-blind-sql-injection.html (http://www.hackerregiment.com/mysql-com-vulnerable-to-blind-sql-injection.html)
: Re: MySQL.com hacked via... SQL injection vuln
: Zesh March 28, 2011, 10:08:21 PM
MySQL.com was done over by a SQL injection, LOL :P
: Re: MySQL.com hacked via... SQL injection vuln
: IFailStuff March 28, 2011, 11:26:59 PM
Maybe it's a fake database that they set up for 1st april? :P
: Re: MySQL.com hacked via... SQL injection vuln
: Stackprotector March 28, 2011, 11:39:12 PM
Maybe it's a fake database that they set up for 1st april? :P
Very good possibility, as its just to funny to be real:P.
 
: Re: MySQL.com hacked via... SQL injection vuln
: Satan911 March 28, 2011, 11:57:48 PM
I don't know it seems like a bit risky and it's not even April 1st.
: Re: MySQL.com hacked via... SQL injection vuln
: I_Learning_I March 29, 2011, 01:27:16 AM
Has MySQL answered to that? Figures it something like that happened it would be all over the internet in every forums and so.
: Re: MySQL.com hacked via... SQL injection vuln
: Clowner March 29, 2011, 10:40:50 AM
lol!
: Re: MySQL.com hacked via... SQL injection vuln
: Pillus March 29, 2011, 10:55:33 AM
Oh i smell thy irony! >_<