Paulitician
Member
- Joined
- Jul 21, 2007
- Messages
- 3,333
It could have been hackers or it could have just been buggy. Who knows.
Don't make people paranoid until we know for sure what the deal is. That's like yelling fire in a theater.Basically what an injection attack is designed to do is utilize character input bars to plant code that they hope the server will parse into actually command statements. It does it by first figuring out what the server is programmed in, then working to design a special character string to dump the current line of code the server would be working on and have it follow a different command... from which that point the hacker can almost have complete control.
They literally could be draining the entire database of CC#, address... etc
It didn't work probably, successfully injected code wouldn't be visible there.
I called campaign. They're aware. Just a technical issue.
That would have been uber scary, though.
Don't make people paranoid until we know for sure what the deal is. That's like yelling fire in a theater.