Several times I have found code like this in my database:
jshGxq ymybblnixump, kzxjnlcgluqe, [link=http://lixzuemkemfz.com/]lixzuemkemfz[/link], http://gtelqamayzmi.com/
Am I correct in thinking that this is an attempt at an SQL injection?
As far as I can tell, these attacks have thus far not harmed my database. If it's what I think it is, though, I realize that it's time to take steps to ward these off. I know that prepared statements exist, but not anything else about them.