Announcement

Collapse
No announcement yet.

55,000 Web sites hacked to serve up malware cocktail

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • 55,000 Web sites hacked to serve up malware cocktail

    August 24th 2009

    Posted by Ryan Naraine @ 12:08 pm

    Security researchers are raising an alarm for a potent malware cocktail — backdoor Trojans and password stealers — being pushed to Windows users from about 55,000 hacked Web sites.

    According to Mary Landesman, a researcher in ScanSafe’s security threat alert team, the cybercriminals have embedded a malicious iFrame into tens of thousands of Websites to fire exploits at unsuspecting PC users who surf to one of the rigged sites.


    The iFrame points to an intermediary exploit site which in turn loads additional exploits and malware from up to seven different malware domains, Landesman said.

    She ran a Google search of the iFrame script tag and found it embedded on about 54,900 sites, many of them legitimate online destinations.

    Victim sites include Free RSS News Widgets and RSS Gadgets - Feedzilla.com, latindiscover.com, and a number of charitable and nursing facilities, including howellcarecenter.com, sweetgrassvillagealf.com, Foods Resource Bank - A Christian response to world hunger., and morningsideassistedliving.com.

    At the time of writing this blog post, the number of hacked sites listed in Google results climbed to 56,000.

    It is not yet clear which vulnerabilities are being exploited in this attack but, judging from recent history, end users should ensure that operating system and desktop software programs are fully patched.

    The most common programs under attack include Adobe Flash, Adobe PDF Reader, Apple’s QuickTime, WinZip and RealPlayer. In addition to Microsoft Windows patches, these desktop applications should be updated to the newest version immediately.

    55,000 Web sites hacked to serve up malware cocktail | Zero Day | ZDNet.com

  • #2
    Do you know the patches we need to update?

    Comment


    • #3
      Originally posted by kbsooner21 View Post
      Do you know the patches we need to update?
      No, but it recommends at the end of the paragraph which programs you should check on updating.

      Comment


      • #4
        FileHippo.com Update Checker - FileHippo.com

        Above is software you can download and run as it will show you what software on your computer needs updating.

        Comment


        • #5
          Originally posted by BettorsChat View Post
          FileHippo.com Update Checker - FileHippo.com

          Above is software you can download and run as it will show you what software on your computer needs updating.

          That worked very well Monte ...


          Thanks

          Comment

          Working...
          X