Skip to content

Attackers Targeting Construction Firms Exploiting Mjobtime App Vulnerability Using MSSQL and IIS POST Request

Cybersecuritynews Tushar Subhra Dutta January 26, 2026

Attackers are increasingly turning their attention to construction firms by abusing weaknesses in business software that runs on their job sites. One of the newest targets is the Mjobtime construction time-tracking application, which is often deployed on Microsoft IIS with an MSSQL database in the background. A blind SQL injection flaw in Mjobtime version 15.7.2, […]

Extracted Entities

Attack Types (1)

Industries (1)

Platforms (1)

Vulnerabilities (1)