It appears that the old SQL Injection hack is still alive and well or at least it seems that way.
It accused Mr Rivera and others of stealing data from Sony using a hacking technique known as an SQL injection.
They add that SonyPictures.com was breached using a simple SQL injection technique.
FORBES: LulzSec Hackers Purge SonyPictures.com, Say 1 Million User Accounts Compromised
Yet, the continuing vulnerability of Web-facing applications made SQL injection one of the most common forms of attack against websites at the time.
FORBES: The Hidden IT Security Threat: Multifunction Printers
LulzSec members broke in using a rudimentary technique called SQL Injection, which allowed them access to unauthorized data on the Sony Pictures site.
The security world has long seen the Web as a buggy, infected tangle of sites vulnerable to hacks like cross-site scripting and SQL injection.
FORBES: Researchers Say Hijackable Bug Infects 30% Of Websites
There has been a surge of cyber attacks on companies this year using SQL Injection, a relatively straightforward method that involves inputting programming code, which a server or site cannot handle.
FORBES: Nokia's Developer Website Hacked, User Data Compromised
Some 88% of all SQL injection attacks between January and March of this year were carried out by either Havij or sqlmap, according to new research from Imperva, with the majority of attacks using Havij.
FORBES: Now Anyone Can Hack A Website Thanks To Clever, Free Programs
The last decade of the 20th century and the early part of the 21st century have seen vulnerabilities like SQL injection make headlines as hackers have stolen millions of credit-card numbers at a time.
But most of those sites still remain vulnerable to SQL injection--meaning the same group of hackers or a copycat group could use similar techniques to redirect the sites' visitors to another server hosting malicious software, Danchev argues.
Google hacking was first popularized by Johnny Long, a penetration tester who created a Google Hacking Database that allowed anyone to add interesting security search queries that might turn up vulnerabilities to exploits like SQL Injection or Cross-Site Scripting.
FORBES: Researchers Will Turn Google And Bing Into Web Bug Warning System
The SQL injection attacks made the network hosting the sites read over 2 billion unique user access attempts at the same time, slowing the site down, or shutting it down completely, according to a statement from the Office of the President.
Then in 2002 he founded Imperva, after noticing that companies were focusing too much on protecting the perimeter of their networks, rather than guarding their most prized possession data itself from simple and increasingly prevalent attacks methods like SQL injection.
FORBES: Imperva CEO: Companies Are Getting It Wrong On Cybersecurity
Plenty of folks in the cyber security field have debated whether the rise of Anonymous would actually lead to increased spending on services like protection from DDoS attacks, which can temporarily paralyze a website, and SQL injection-type attacks that can raid a database and sometimes purge it of all contents.
FORBES: Anonymous Takes From The Rich, Gives To... The Cyber Security Industry?
Not too long ago the Plenty of Fish site was hacked with a SQL injection hack and it was all over the web with the founder and the guy who hacked it exchanging blows on why he did it and turns out the hacker ended up saying he wanted a job to take care of the security at the site.
The vast majority of those millions of passwords became public after the breach of RockYou.com, a social networking applications site penetrated by cybercriminals using an SQL-injection.
FORBES: Researcher Creates Clearinghouse Of 14 Million Hacked Passwords
应用推荐