RE: SQL injection attack - FBI

2008-08-09 Thread Dave Watts
> They don't seem to care, but suggested that I report it to > CERT at https://www.cert.org/reporting/incident_form.txt > > Perhaps if a few of us reported it to CERT, they will investigate. CERT posted this back in June. It's been active for a while, but originally targeted ASP only. Dave Watt

RE: SQL injection attack - FBI

2008-08-09 Thread Al Musella, DPM
I heard back from the FBI.. a live agent, not an automated response like I was expecting:) They don't seem to care, but suggested that I report it to CERT at https://www.cert.org/reporting/incident_form.txt Perhaps if a few of us reported it to CERT, they will investigate. By the way - I hit

RE: SQL injection attack - FBI

2008-08-09 Thread Al Musella, DPM
There are many that are on both lists.. most are Asia, but there are some locals, like 24.73.176.42 which is in virginia. I reported this to the FBI and offered to help identify the computers involved in the attack. IF they respond, maybe we could build a web app that collects all of our logs