Yup - I warned a client of mine (who I know has vulnerable code) and
they put a rule in their corporate firewall to block it.  24 hours
later they emailed to thank me for the warning and said their firewall
was getting attacked like mad, but it was blocking everything.

So far none of my clients have been successfully hit.
(crosses fingers)

-Cameron

On Thu, Jul 24, 2008 at 2:16 PM, Zaphod Beeblebrox
<[EMAIL PROTECTED]> wrote:
> Yeah, my manager's wife does CF sites on the side....I've reviewed her
> code before and warned her that she was open to sql injection.....that
> was over 2 years ago.  Of the twenty sites she managed, around half
> got slammed by it.
>
>
> On Thu, Jul 24, 2008 at 12:58 PM, Cameron Childress <[EMAIL PROTECTED]> wrote:
>> I've gotten some calls asking for rescue help from people who got SQL
>> Injected recently.
>>
>> On Thu, Jul 24, 2008 at 1:25 PM, Zaphod Beeblebrox
>> <[EMAIL PROTECTED]> wrote:
>>> Past two days, 3 recruiting calls.  Is there some kinda CF app spike?
>>
>>
>
> 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Adobe® ColdFusion® 8 software 8 is the most important and dramatic release to 
date
Get the Free Trial
http://ad.doubleclick.net/clk;203748912;27390454;j

Archive: 
http://www.houseoffusion.com/groups/CF-Community/message.cfm/messageid:264542
Subscription: http://www.houseoffusion.com/groups/CF-Community/subscribe.cfm
Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=89.70.5

Reply via email to