4 ms·
I have run a number of small and medium websites (20 users per month up to 2 million). At least 50% of the traffic I see in my logs includes some sql injection
by amylene 7y ago
I have run a number of small and medium websites (20 users per month up to 2 million). At least 50% of the traffic I see in my logs includes some sql injection or other mass script kiddie bs.
- tyingq 7y agoThat's fairly black and white. Blocking an unusual user-agent because you "think" it might be malicious is another thing.
- amylene 7y agoIt might be a poor business decision, but probably not for the reason most people would think. An unusual UA is unlikely to move the needle on top line metrics, but it is a distraction and a misuse of resources to play cat and mouse. (Unless your business would be materially harmed by someone scraping your data... in which case, you’re doomed anyway.)
- megous 7y agoI've looked at my logs, and obvious nonsense like POST or GETs with any search params on a website that only has static html pages wich should not generate these kinds of requests is about 1% of last 25000 requests.
- ryanlol 7y agoWhy care about such traffic? Blocking it seems like a pointless exercise.
- amylene 7y agoI was responding to OPs question. Iirc, we discussed it and never implemented any blocking.