SQL Injection Attempts

This is from the analog report on the Apache access logs for the drumbeat.org staging server. It leaves me wondering whether there were actually any genuine searches done at all…

Listing the top 30 query words by the number of requests, sorted by the number of requests.

reqs search term
2459
2094 0
1745 delay’0:0:20′
1396 waitfor
714 and
703 or
698 1=1
698 1=2
349 ‘waitfor
349 %27
349 %00′
51 drumbeat.stage.mozilla.com/
34 drumbeat.stage.mozilla.com/events
16 2=2
5 1=3
3 drumbeat
3 73541692′
3 73919112′
3 27417321′
3 38822036′
3 19286078′
2 72884114′
2 20580310′
2 73307134′
2 17959598′
2 17674419′
2 14638227′
2 16063538′
2 miro
2 83234186′
1045 [not listed: 704 search terms]

One thought on “SQL Injection Attempts