web-hacking incident statistics 2007

No explicit questions like "how do I hack xxx.com" please!
Post Reply
User avatar
bad_brain
Site Owner
Site Owner
Posts: 11636
Joined: 06 Apr 2005, 16:00
19
Location: In your eye floaters.
Contact:

web-hacking incident statistics 2007

Post by bad_brain »

Breach security has released their annual web-hacking statistics for 2007, the most used attacks/vulnerabilities were:

#1 SQl injections 20%
#2 unintentional information disclosure 17%
#3 known vulnerabilities 15%
#4 cross site scripting 12%
#5 insufficient access control 10%
#6 credential/session prediction 8%
#7 OS commanding 3%
#8 misconfiguration 3%
#9 insufficient anti-automation 3%
#10 denial of service 3%
#11 redirection 2%
#12 insufficient session expiration 2%
#13 cross site request forgery 2%

the full report is available here.

:wink:

User avatar
jasonxxx102
Fame ! Where are the chicks?!
Fame ! Where are the chicks?!
Posts: 176
Joined: 04 Feb 2008, 17:00
16
Contact:

Post by jasonxxx102 »

Nice thx for this one bad_brain

User avatar
Lyecdevf
cyber Idi Amin
cyber Idi Amin
Posts: 1222
Joined: 16 Mar 2006, 17:00
18
Location: In between life and death.
Contact:

Post by Lyecdevf »

Thanks! Is there a report that would analyze all of the internet security related issues such as phishing, viruses,...?
We will either find a way, or make one.
- Hannibal

Post Reply