Es curioso que ayer la página de MySQL.com fuera hackeada mediante (redoble de caja) una inyección SQL.
Según la fuente original:
MySQL offers database software and services for businesses at an enterprise level as well as services for online retailers, web forums and even governments. The vulnerability for the attack, completed using blind SQL injection and targeted servers including MySQL.com, MySQL.fr, MySQL.de and MySQL.it, was initially found by "TinKode" and "Ne0h" of Slacker.Ro (according to their pastebin.com/BayvYdcP dump of the stolen credentials) but published by "Jackh4x0r".
The stolen database contain both member and employee email addresses and credentials, as well as tables with customer and partner information and internal network details. Hashes from the database have been posted, with some having been already cracked.
No sólo la página de MySQL ha sido comprometida, sino también la de Sun:
http://tinkode27.baywords.com/
Qué opinión os da esto? Sinceramente, a mí se me ha venido a la cabeza:
Edit: Ups, se me olvidó la fuente :-)
Fuente: http://techie-buzz.com/tech-news/mysql-com-database-compromised-sql-injection.html