Twice a year our partner, Alert Logic, analyzes its customer intrusion detection data to see what kinds of threats people are really experiencing, and there are some interesting findings this time around. This time, as in the past, they find that web application attacks like SQL injection and cross-site scripting are one of the biggest problems customers face. In this Fall 2012 report, they also identified the tools that criminals used to launch the attacks, and found that two-thirds of them are now relying on automated tools – things like Havij, a favorite of Anonymous, which can be easily downloaded.
Some quick points covered in the report: