Someone posted a comment to this blog earlier, looks like they were trying to use SQL injection to beat the spam filters or it may have been a real person trying their luck.
Anyway I find this stuff pretty interesting so I thought I would post the attack, here is what he posted:
I think it’s pretty clever how he tries to make the SQL post his message with a fake IP address. I’m also really curious why he takes the trouble to add a fake spam comment to the end of the query.
I looked up the IP address it seems to be associated with a shared server provided by svservers.com. I guess this guy didn’t get a private IP address.
Results 220.127.116.11 resolves to "svservers.com" Top Level Domain: "svservers.com" Country IP Address: MALAYSIA
Anyway that’s all for now. If anyone could explain more about what he’s up to I would be interested to hear it.
Edit2: I no longer use a database at all for the blog! Unfortunately, in the transition, the quotes from the SQL have been munged somewhat. Hopefully, I’ve got them right…