- Visitors can check out the Forum FAQ by clicking this link. You have to register before you can post: click the REGISTER link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. View our Forum Privacy Policy.
- Want to receive the latest contracting news and advice straight to your inbox? Sign up to the ContractorUK newsletter here. Every sign up will also be entered into a draw to WIN £100 Amazon vouchers!
Reply to: MySQL hacks - Putin???
Collapse
You are not logged in or you do not have permission to access this page. This could be due to one of several reasons:
- You are not logged in. If you are already registered, fill in the form below to log in, or follow the "Sign Up" link to register a new account.
- You may not have sufficient privileges to access this page. Are you trying to edit someone else's post, access administrative features or some other privileged system?
- If you are trying to post, the administrator may have disabled your account, or it may be awaiting activation.
Logging in...
Previously on "MySQL hacks - Putin???"
Collapse
-
Check out OWASP.
Implement some tried and tested input filtering to prevent sql injection attacks.
Leave a comment:
-
You probably just have to accept an amount of bot traffic looing for exploits hitting your site.
If I ever check the requests logs for my sites there is always bazillions of entries for wordpress urls.
Leave a comment:
-
MySQL hacks - Putin???
It seems pretty weird as my tiny business is hardly running for the US presidency but when I check visitors to my site who have clicked on products but not completed a purchase, 60%+ are from Russia.
Just recently I have found two dbase records that are significantly different from the original entry as logged in my and Paypal's emails and a copy of the table. It can't be a fault in my code due to the nature of the change, the fact that umpteen other records are fine and I haven't changed the code that has been working ok for months anyway.
I have already implemented various protections in my code, HTML entities, length limits, removed MySQL error messages, ensured that INSERT fields can't contain quotes etc. etc. but clearly need to do some more on Monday. Any pointers to best resources? Ta.Tags: None
- Home
- News & Features
- First Timers
- IR35 / S660 / BN66
- Employee Benefit Trusts
- Agency Workers Regulations
- MSC Legislation
- Limited Companies
- Dividends
- Umbrella Company
- VAT / Flat Rate VAT
- Job News & Guides
- Money News & Guides
- Guide to Contracts
- Successful Contracting
- Contracting Overseas
- Contractor Calculators
- MVL
- Contractor Expenses
Advertisers
Contractor Services
CUK News
- Bills of Exchange: Here’s what caught my attention as an umbrella compliance expert Today 03:46
- Loan charge recall issue returns, with new demands making UK contractors ‘half-suicidal’ Yesterday 03:58
- AI interviews are here. Here's how IT contractors can ace them Jun 9 06:53
- Closing your limited company isn't failure. It's just the end of a chapter. Jun 8 05:00
- Young people not in education, employment or training isn’t a contractor’s problem. It’s a problem for us all Jun 5 05:26
- How does HMRC’s forward interest change benefit contractors? Jun 4 04:22
- What are Bills of Exchange, and should HMRC's alert worry umbrella contractors? Jun 3 04:09
- Bills of Exchange fail to avoid new umbrella company rules, says HMRC Jun 2 05:32
- Is permanent employment still the safer bet? Yes, but it's a lot less safe than it used to be. Jun 1 04:34
- Is your Director’s Loan Account (DLA) a target of HMRC’s closer look at close companies? May 29 04:45

Leave a comment: