WTF?It ain't a sql bot, it's a browser based bot
pangolin is a pen program u initiate from a GUI that runs a bunch of automated dynamic sql that attempt a sql injection hack on a variety of websites. You tell it which DBMS and point it to a bunch of websites and it attempts to compromise the dbms.
Early versions (as referenced above) also contained a backdoor that sent the logs home to China.
http://www.nosec.org/en/pangolin.html
if walks and smells like a duck, it's a duck.
Call it what you like.
Scotty, beam me up...





Reply With Quote