MySQL Code Injection Through Comments/Trackback on My SEOContest2008 Site

Written by Sulumits Retsambew on March 9th, 2008

I have been receiving this quite often already.

MySQL Code Injection on SEOContest2008: Author Bill609228727, 196235052billy@msn.com, 155.146.20.8, lynx, comment, spam, 64.191.63.181, titania.hostingmadeeasy.com

People trying to hack and go straight to the database by injecting MySQL code. But it does not seem to work on my blog. Maybe older versions of Wordpress are more vulnerable to this attack? Could this be related to the number of SEOContest2008 hacking attempts that have been going on mentioned by the other competitors? I believe not since I have been getting this also on my other blogs.

Popularity: 37% [?]

Bookmark this Sulumits Retsambew Story:
  • e-mail
  • Digg
  • Sphinn
  • del.icio.us
  • Facebook
  • Mixx
  • Google Bookmarks
  • blinkbits
  • BlinkList
  • blogmarks
  • BlogMemes
  • blogtercimlap
  • Blue Dot
  • Book.mark.hu
  • Bumpzee
  • co.mments
  • connotea
  • De.lirio.us
  • DotNetKicks
  • DZone
  • eKudos
  • Fark
  • feedmelinks
  • Fleck
  • Furl
  • Gwar
  • LinkaGoGo
  • Linkter
  • Live
  • Ma.gnolia
  • MisterWong
  • MyShare
  • Netvouz
  • NewsVine
  • NuJIJ
  • PlugIM
  • PopCurrent
  • ppnow
  • Propeller
  • RawSugar
  • Rec6
  • Reddit
  • Scoopeo
  • scuttle
  • Shadows
  • Simpy
  • Sk-rt
  • Slashdot
  • Smarking
  • Socialogs
  • SphereIt
  • Spurl
  • StumbleUpon
  • Taggly
  • TailRank
  • Technorati
  • ThisNext
  • TwitThis
  • Wykop
  • YahooMyWeb
  • Webride
  • Global Grind
  • Internetmedia
  • laaik.it
  • LinkArena
  • N4G
  • Webnews.de
  • Xerpi
  • Yigg
  • BarraPunto
  • BlogMemes Cn
  • BlogMemes Fr
  • BlogMemes Jp
  • BlogMemes Sp
  • Blogosphere News
  • Blogsvine
  • Design Float
  • E-mail this story to a friend!
  • Haohao
  • HealthRanker
  • Hemidemi
  • IndiaGram
  • IndianPad
  • kick.ie
  • Kirtsy
  • LinkedIn
  • Meneame
  • MisterWong.DE
  • muti
  • Pownce
  • Print this article!
  • Ratimarks
  • SalesMarks
  • Segnalo
  • Upnews
  • Wikio
  • Wikio FR
  • Wikio IT
  • Wists
  • Bitacoras.com
  • Faves
  • GeenRedactie
  • Identi.ca
  • Leonaut
  • MySpace
  • Netvibes
  • Ping.fm
  • Symbaloo
  • Tipd
  • Tumblr
  • Yahoo! Buzz

Most Popular Posts

 

9 Comments so far ↓

  1. Dirty tactics i agree & i must say i have seen the same dirty tatics tried on my entry! I notice you have the IP address you should see the post within the thread in UKWW about hacking & compare the IP to see if it is the same.

    Regards, Resonate
    UKWW Internet Marketing Admin

  2. Hehe, you too ^^.

  3. SEOContest2008 says:

    Well I have a small hosting business, not that big, just a few clients and I get this hacking attempts all the time. So I don’t want to rule it out as an attack from a competitor right away. But I’ll still bear this in mind while looking at my raw log files.

    @Resonate: The IP of the attack on mine is US based. 64.191.63.181 and traces back to the host: titania.hostingmadeeasy.com with it’s datacenter at Network Operations Center Inc. Still hard to pinpoint anyone since it can be any hosting client on their machine. Or maybe on of the hosting clients got cracked and is used to crack into other places.

  4. What does this code do ?

  5. vincent says:

    What does that code do?

  6. Acidifié says:

    I had the same in an Automobile Blog :
    Auteur : Bill783242688','183579377billy@msn.com','','173.2.70.182','2008-03-20 02:31:01','2008-03-20 02:31:01','','0','lynx','comment','0','0'),('0', '', '', '', '', '2008-03-21 02:31:01', '2008-03-21 02:31:01', '', 'spam', '', 'comment', '0','0' ) /* (IP : 124.217.227.127 , svservers.com)
    E-mail :
    URL : http://None
    Whois : http://ws.arin.net/cgi-bin/whois.pl?queryinput=124.217.227.127
    Commentaire :
    None...

    Don’t know what is it…

  7. Tony says:

    I am amazed that people have tried to hack your site to beat you, perhaps I am just naive… good luck

  8. Benj Arriola says:

    Hi Tony, actually we still don’t know if people tried to hack me to beat me. We only know:

    - People are trying to hack me.
    - People are trying to beat me of course since it is a contest.
    - But we do not know if the person that wants to hack me is the same person that wants to beat me. The hacker can still be any random cracker on the Internet.

  9. Joe Naavaark says:

    And one time, when I was at band-camp….

    Who the heck is gonna try and hack your site to win some small time SEO contest? What could he do? Stuff your headers? Mess with you METAs? Maybe DMCA the entire production and get you blacklisted and tossed into the Internet abyss that can not be used anymore since scrupulous users ikem you have used it to sell porn and other vile smut! Help us Jesus, for the sinners need to repent!

Leave a Comment





1 Trackbacks / Pingbacks

  1. SEOContest2008 | What They do to win the contest