SEARCH RESULTS
 
Showing 1-10 of 50 records
 
Expand article

More CNET Sites Under IFRAME Attack

The Article has images
2008-03-06 10:50:57 by HASH0x8b1424c in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
News is spreading fast, appropriate credit is given , but not as fast as the IFRAME campaign targeting several more CNET Networks' web properties besides ZDNet Asia , namely, TV.com , News.com and MySimon.com which I'll assess in this post. In the time of posting this, no other CNET sites are involved in the campaign, including ZDNet's...
 
 
 
 
 
Expand article

Massive IFRAME SEO Poisoning Attack Continuing

The Article has images
2008-03-27 21:12:29 by HASH0x8b4fa7c in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
Last week's massive IFRAME injection attack is slowly turning into a what looks like a large scale web application vulnerabilities audit of high profile sites. Following the timely news coverage , Symantec's rating for the attack as medium risk, StopBadware commenting on XP Antivirus 2008 , and US-CERT issuing a warning about the incident, after...
 
 
 
 
 
Expand article

PR Storm - Mass iFRAME Injectable Attacks

The Article has images
2008-03-17 17:54:21 by HASH0x8b5dc70 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
Here's some recent media coverage regarding the SEO poisoning attack through exploiting the ABC of web application security , namely input validation, a good example of tactical warfare combing two different attack tactics, blackhat SEO for traffic acquisition and abusing input validation for injecting iFRAMES, and abusing the sites' search...
 
 
 
 
 
Expand article

UNICEF Too IFRAME Injected and SEO Poisoned

The Article has images
2008-04-01 07:42:20 by HASH0x8b227b4 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
The very latest, and hopefully very last, high profile site to successfully participate in the recently exposed massive SEO poisoning , is UNICEF's official site. In fact the campaign is so successful, where successful means that each and every poisoned result loads the injected IFRAME using UNICEF.org as a doorway to pharmaceutical spam and...
 
 
 
 
 
Expand article

More High Profile Sites IFRAME Injected

The Article has images
2008-03-12 09:49:36 by HASH0x8b74b5c in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
The ongoing monitoring of this campaign reveals that the group is continuing to expand the campaign, introducing over a hundred new bogus .info domains acting as traffic redirection points to the campaigns hardcoded within the secondary redirection point, in this case radt.info where a new malware variant of Zlob is attempting to install though...
 
 
 
 
 
Expand article

Hackers launch massive IFrame attack

2008-03-13 13:00:00 by Editor in Computerworld Security News
 
Hackers are using IFrame redirects to subvert hundreds of thousands of Web pages that can send unwary users to malware-spewing sites, researchers said today
 
 
 
 
 
Expand article

Hackers launch massive IFRAME attack

2008-03-16 00:00:00 by HASH0x8473538 in Network World on Security
 
Hackers using a new scam continue to subvert hundreds of thousands of Web pages with IFRAME redirects that send unwary users to malware-spewing sites, researchers said today Sign up for a FREE NETWORK RISK ASSESSMENT Advertisement MORE THAN 70% of networks are infected with hidden Malware. Find out if your network is infected now
 
 
 
 
 
Expand article

Hackers expand massive IFRAME attack to prime sites

2008-03-28 13:00:00 by Editor in Computerworld Security News
 
A massive IFRAME attack that began earlier this month has spread to a number of prominent Web sites whose search results have been poisoned with malicious code, according to security researchers
 
 
 
 
 
Expand article

Wired.com and History.com Getting RBN-ed

The Article has images
2008-03-10 14:20:33 by HASH0x8aeaaa0 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
Monitoring last week's IFRAME injection attack at high page rank-ed sites , reveals a simple truth, that persistent simplicity seems to work. The attack is still ongoing, this time successfully injecting a multitude of new domains into Wired Magazine, and History.com's search engines, which are again caching anything submitted, particularly not...