TEAM INTRA has hacked into subdomains of Siemens & Canon and databases of both the domains are posted online . According to JoinSe7en , member of Team Intra, he found Error based SQL Injection in Siemens and a Blind SQL Injection vulnerability in Canon’s website.
Full disclosure of leaked database can be seen on:
Canon: http://pastebin.com/fbL0s9aS
#Author: JoinSe7en #Target: http://www.canon.com/ #Method: SQL injection #Attack Point: http://cvi.canon.com/news-events/newsroom/view-release.php?id=1Siemens: http://pastebin.com/HBL966wh
#Author: JoinSe7en #Target: http://www.siemens.com/entry/cc/en/ #Method: SQL injection #Attack Point: ‘