4 ms·
> Or security on all of these websites really sucks Yup. The status quo / baseline of security online is terrible. Slashdot rumor has it they've got themselv
by bxr 15y ago
> Or security on all of these websites really sucks
Yup. The status quo / baseline of security online is terrible.
Slashdot rumor has it they've got themselves an Apache 0-day, but other hypothesizes have then SQL injecting or otherwise exploiting the webapps themselves.
Either way, the rate of attacks in the world hasn't changed, just these guys have gone back to the old way of yelling about what they accomplish rather than remaining silent.
- saulrh 15y agoTheir data-dump attacks have been by SQLi, I think; they generally publish the URL of the vulnerable input in their release. They're using other means to root machines, though. My guess is that anybody that took the right classes in college could be doing exactly what they're doing now.