Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Blog

October 2nd, 2012, 12:42 GMT · By

BLOG

Site of Japanese Restaurant Wagamama Hijacked, Users Led to BlackHole

SHARE:

Adjust text size:


Wagamama website has been compromised Enlarge picture - Wagamama website has been compromised
A website owned by Wagamama – the famous Japanese restaurant and noodle bar - has been hijacked by cybercriminals. Experts found it to be injected with a piece of malicious code that’s part of the RunForestRun campaign.

Websense experts report that the RunForestRun attack leverages a vulnerability in Parallels' Plesk to steal user credentials and compromise accounts.

Once an account is hijacked, the hacker plants obfuscated code inside JavaScript files. When these scripts are executed, an iframe containing pseudo-randomly generated URLs is loaded.

In the end, these URLs lead the victim to the well-known BlackHole exploit kit.

Since this attack is not new, most security solutions are able to identify and block the malicious URLs. However, at the time of writing, our trusty antivirus was still displaying warning messages when we tried to access the goeast.wagamama.com subdomain.

TELL US WHAT YOU THINK:

1,044 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Thousands of Sites Possibly Hacked by Exploiting Plesk Zero-Day

Malware Authors Upgrade Exploit Kits to Randomly Generate Domains

Fake BBB “Money Order Scam” Emails Lead to BlackHole 2.0

BlackHole 2.0 Exploit Kit Used to Advertise Malicious Services

BlackHole Exploit Kit 2.0 Made Available, Price Remains the Same

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM