I’ve recently spotted a currently circulating across the underground ecosystem a newly released DIY search engines based mass SQL injection capable hacking tool and I’ve decided to take a deeper look inside how the tool actually works.

Among the key features of the tool include the use of search engines for the purpose of building “hit lists” of potentially vulnerable Web sites which will be later on included in a potential mass SQL injection launching campaign in a DIY point and click fashion. The tool is capable of using a variety of publicly accessible search engines including the use of proxies for the purpose of building “hit lists” that would be later on used by the cyber attacker to launch mass SQL injection attacks.