SQL Injections Led to 60% of UK Data Breaches | Internet News

SQL Injections Led to 60% of UK Data Breaches

Feb 6, 2010
1 minute read


The SQL injection is hardly a new attack vector, but it’s emerging as one of the chief ways that hackers are able to gain access to supposedly secure data. eSecurity Planet looks at a new report that finds that not only are a majority of the UK’s online data breaches conducted via SQL injection, but that they’re growing in complexity.


Hackers used SQL injection tactics to access corporate networks in 60 percent of significant data breach incidents reviewed by 7Safe, a leading computer security and forensics consulting firm in London.

SQL injection attacks, which target vulnerable code in the database layer, have long been a nightmare for IT administrators because they’re extremely difficult to defend against in a live production environment and often require multiple patches to the installed database software.

E-commerce sites and online banking customers in December learned just how painful these new and increasingly complex SQL injection attacks can be. A new variant contaminated more than 125,000 Web sites with a Trojan known to harvest credit card and other banking information.



Read the full story at eSecurity Planet:


Hackers Feast on SQL Injection Exploits

Internet News Logo

InternetNews is a source of industry news and intelligence for IT professionals from all branches of the technology world. InternetNews focuses on helping professionals grow their knowledge base and authority in their field with the top news and trends in Software, IT Management, Networking & Communications, and Small Business.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.