The research team at Armorize have discovered a mass SQL injection coupled with a drive-by download, which they describe as a "mass meshing injection" attack. --Mass Meshing Injections are unlike Mass SQL injection attacks such as Lizamoon, which are easily detected due to a low number of malicious redirector domains that can be easily detected and then have signatures assigned to them. --Mass Meshing Injection avoids detection because there are no malicious redirectors in use and every redirector itself is an infected domain, making blacklisting difficult and prone to false alarms.
http://blogs.csoonline.com/1555/researchers_warn_of_mass_meshing_injection_attack
Source: Csoonline
Subscribe
0 Comments