Barney's Blog

Blog archive

All I Want for Christmas Is a SQL Injection

The holidays were a bit strange this year. The economy was tough, malls were empty, and we in America awaited a new and very different presidential administration.

My own family here in North Central Massachusetts also had an odd time. Due to a massive ice storm and an inept power company, our electricity went out and I had no heat for 15 days. It didn't crank back up 'til the day after Christmas (though many, including the elderly and poor, had it far worse than I did, so no complaints here). My family huddled around a space heater on Christmas morning and were none the worse for wear.

But Christmas wasn't entirely without gifts. Wall Street had $700 billion to play with, our next president talked about an extra trillion dollars or so a year in federal spending (deficit, what deficit?) and hackers blessed the world with a new SQL injection attack.

Apparently, no systems were actually hit and no patch has been released. The news leaked out only because a security researcher let it out, leading experts to rightly criticize the disclosure.

Posted by Doug Barney on January 07, 2009 at 11:53 AM


Featured

  • The 2021 Microsoft Product Roadmap

    From Windows 10X to the next generation of Microsoft's application server products, here are the product milestones coming down the pipeline in 2021.

  • The Future of Windows Server Includes Less Frequent Updates

    Microsoft is ending its practice of issuing semiannual channel updates for most Window Server editions, turning instead to long-term servicing channel updates.

  • Notebook

    Microsoft Bolsters Dynamics 365 with Suplari Acquisition

    An acquisition announced by Microsoft on Wednesday promises to bring AI solutions for assessing supply-chain spending to the Dynamics 365 product.

  • Microsoft Announces Positive Q4 Revenue Results of $46.2B

    Microsoft on Tuesday reported $46.2 billion in total revenue during its fiscal-year 2021 Q4 period, up 21% from the same quarter last year.