SI
SI
discoversearch

We've detected that you're using an ad content blocking browser plug-in or feature. Ads provide a critical source of revenue to the continued operation of Silicon Investor.  We ask that you disable ad blocking while on Silicon Investor in the best interests of our community.  If you are not using an ad blocker but are still receiving this message, make sure your browser's tracking protection is set to the 'standard' level.
Strategies & Market Trends : BAK - Investing

 Public ReplyPrvt ReplyMark as Last ReadFilePrevious 10Next 10PreviousNext  
To: alertmeipp who wrote (3175)4/15/2024 10:32:53 PM
From: ikea2 Recommendations

Recommended By
hydono11
LongsPeak

   of 3249
 
I am not sure through what vector the hackers came in. Blue's IV code base does seem old -- some Microsoft ASP stuff? They exploited holes there? Or the site depends on MSSql too much, and hackers got in through query injections? IV's code definitely needs more sanity checking on data -- user inputs, queries, even results from their databases (it sounds like the attackers corrupted IV's database, and possibly stored their malicious code inside the DB).

Blue is not explicit with details. We can only speculate.
Report TOU ViolationShare This Post
 Public ReplyPrvt ReplyMark as Last ReadFilePrevious 10Next 10PreviousNext