Home   |   Quick Register   |     |   FAQ
Lost Password? / Register
Category

›› Main Page / Home
›› News
›› Useful Articles
›› All in One
›› Software
›› Portable
›› Desktop Enhancements
›› Music / Songs
››› Music Video
›› Movie
›› Games
›› Mobile
›› Security Spyware
›› Operating System
›› E-Books
››› Magazine
›› Graphic
›› Script
›› Video Tutorial
›› Other
›› Jokes Section

 
Popular Articles
  • WinRAR 4.20 Beta 2 (32bit-64bit)
  • warH mormon spider
  • Avast! Internet Security 7.0.1426 till 2050 Incl Crack ...
  • Bigasoft Total Video Converter v3.6.20.4501 Incl. Keyma ...
  • DVD Ranger v4.1.1.0 Multilingual Cracked
  • CleanMyPC Registry Cleaner v4.45 Incl Keygen-Lz0
  • arizona state arizona california basketball
  • warH mormon spider
  •  
    Archives
    May 2012 (7)
    April 2012 (76)
    March 2012 (2)
    February 2012 (54)
    January 2012 (23)
    December 2011 (62)
     
    Friend's Sites
    SEOnlineLab
    RSS My Site
    FuturezDwlds
    Warez Download
    Downloadz Unlimited
    Reviews on Bollywood Movies
    Rapidshare Download
    Top Rating Games
    More Friends

     

    Your site Link here
     
     

     

     

    template images

    Useful Articles :   MySQL.com Database Hacked via SQL Injection

    template images
    template images
    template images

     

    MySQL.com Database Hacked via SQL Injection
    MySQL.com Database Hacked via SQL Injection


    Hackers have compromised the database of MySQL.com, as well as the French, German, Italian, Japanese and other localized versions of the website, ironically by exploiting an SQL injection vulnerability.

    A hacker calling himself Jackh4xo took credit for the compromise by reporting it on the popular Full Disclosure mailing list.

    The report included information about the vulnerable parameter, a list of tables from several databases and a list of database users with hashed passwords.

    Soon afterwards, Romanian hacker TinKode published a more complete report on his blog claiming that it was he and a friend who discovered the vulnerability a few months ago and that it wasn't supposed to be made public.

    "In this morning our friend Jackh4x0r decided to make public a vulnerability in MySQL.com. It’s about an parameter vulnerable to SQL Injection, what we (TinKode & Ne0h) had found with few months ago [sic.]," the hacker writes.

    As proof for his claim he links to a previously private thread on Team Insecurity Romania's (ISR) forum where the vulnerability has been discussed since January 3, 2011.

    TinKode's disclosure also includes more information like cracked passwords for some database and blog accounts, including that of Robin Schumacher, MySQL's director of product management.

    Mr. Schumacher's blog password is made up of only four digits, which is why cracking it from the hash was trivial. The password of Kaj Arnö, the former vice president of the MySQL Community in the Database Group at Sun Microsystems, was also disclosed.

    TinKode previously exposed similar vulnerabilities in sites belonging to the UK Royal Navy, NASA and the U.S. Army. He was also responsible for disclosing the XSS vulnerability in YouTube comments that was exploited by 4chan members to target Justin Bieber fans a year ago.

    The incident proves just how common these vulnerabilities are. If the creators of MySQL, the most widely used database engine in the world, can't secure their own website against SQL injection attacks, what reasonable expectation of security can one have from websites that aren't run by experts?

    It's worth pointing out that SQL injection is a very dangerous attack vector. Unlike cross-site scripting, which can be used to inject rogue code into pages, SQLi vulnerabilities can also be exploited to extract sensitive data like private customer information from databases.

    Source : Softpedia News (http://news.softpedia.com/news/MySQL-com-Database-Hacked-via-SQL-Injection-191635.shtml)

     

     


    ---------------------------------------------------------
    I am having trouble downloading files! Click for Tutorial, How to Download
    ---------------------------------------------------------

     

     

    ----- " None of the files are hosted in download123.in server, it's hosted on Hotfile ( hotfile.com ), Fileserve ( fileserve.com ), Duckload ( duckload.com ) or other free file hosting sites. " ------

    Still if you want us to remove this content then write to us at admin{at}download123.in

     

     

     
    Please Register to view full news/Comment and write comments. REGISTRATION Takes only few seconds !.

    template images
     (Votes #: 1)
    Comments (1)  Print
    template images
    #1 Commented by : Chianna  


    Rank: Guest
    Join Date: --
    You are so awesome for hlpeing me solve this mystery.
    Total Comments Written: 0 Reply    
    Add comments
     
     

     
    Voting
    What is your Fav. Web Browser

    Firefox
    Internet Explorer
    Chrome
    Opera
    Safari
    Other


    Show all Votes
     
    Donate Us
    Donate US for our hardwork
     
    Find us on Facebook

    Find us on Facebook  Find us on Twitter

     

     

     

     

    DISCLAIMER

    None of the files shown here are hosted or transmitted by this server. The links are provided solely by this site's users. The administrator of this site (DOWNLOAD123.IN) cannot be held responsible for what its users post, or any other actions of its users. You may not use this site to distribute or download any material when you do not have the legal rights to do so. It is your own responsibility to adhere to these terms. Read our DMCA Policy

    Download123.in © 2010 All Rights Reserved