Talk With an Expert

Incident Handlers Guide to SQL Injection Worms

Incident Handlers Guide to SQL Injection Worms (PDF, 2.40MB)Published: 18 Jun, 2009
Created by:
Justin Folkerts

In 2008 a damaging SQL Injection attack took place which became known as the ASPROX Worm. During its height, many hundreds of thousands of web sites were compromised, News sources were reporting grossly exaggerated accounts of the attack, and real solid information to identify and combat this worm was scarce. Having witnessed a number of security professionals overreact or apply panicked solutions to this attack motivated this paper.