Security researchers warn that variants of a ZeuS spin-off trojan called Ice-IX are being distributed from osCommerce websites compromised during a recent mass injection attack.The attack targeting osCommerce installations vulnerable to a flaw that dates from November 2010 began at the end of July.The code injection ... |
26 August 2011 05:34 GMT |
 |
Researchers from web security vendor Armorize have detected a new mass injection attack that affected over 22,000 websites so far and directs users to drive-by download exploits.The researchers were able to determine the number of affected domains because the attackers originally forgot a script tag, rendering their ... |
17 August 2011 14:47 GMT |
 |
Researchers from web application security vendor Armorize warn that a recent mass injection attack targeting vulnerable osCommerce websites is quickly escalating and has already reached millions of infected pages.A week ago Armorize spotted an attack that injected rogue iframe and script elements into sites running o... |
1 August 2011 05:47 GMT |
 |
Security researchers from web application security provider Armorize have come across a new mass injection attack targeting osCommerce websites that has already infected more than 90,000 pages.Attackers began by injecting a hidden iframe pointing to a malicious URL, but later switched to a rogue script element that l... |
27 July 2011 05:35 GMT |
 |
Security researchers from Sophos warn of a widespread web injection attack that has infected a large number of websites with code distributing a variant of the notorious Zeus trojan."Huge numbers of sites have been injected with a malicious JavaScript that attempts to load content from an exploit site when innocent u... |
15 July 2011 12:52 GMT |
 |
A recently announced mass injection attack dubbed LizaMoon is spreading rapidly and managed to infect over 1.5 million web pages in just a few days.The mass compromise was announced by Websense on Tuesday, at which time it had already affected some 28,000 pages and made its way onto iTunes.One interesting aspect of t... |
31 March 2011 12:16 GMT |
 |
A new mass injection attack has infected over 28,000 pages and even made its way to iTunes according to security researchers from Websense.Dubbed LizaMoon, after the domain hosting the malicious code, the attack uses SQL injection techniques to insert a rogue script element.Users who land on one of the compromised pa... |
30 March 2011 03:54 GMT |
 |
Security researchers warn that a new mass injection attack is underway directing the visitors of hundreds of websites to a malicious Java applet which downloads a trojan.According to Denis Sinegubko, the creator of the Unmask Parasites Web scanner, the malicious code is added at the end of HTML pages on compromised w... |
28 December 2010 05:56 GMT |
 |
Security researchers warn that websites hosted at Go Daddy are currently targeted in mass injection attacks, that add rogue code to their pages and direct visitors to scareware.It seems that this particular gang of hackers has its mind set on Go Daddy, because this is the third wave of attacks in recent weeks affecti... |
3 November 2010 09:52 GMT |
 |
Security researchers report that a new mass injection attack is targeting vulnerable osCommerce websites and hijacks them for black hat search engine optimization (BHSEO) purposes.Black hat SEO is the practice of poisoning search results for particular keywords with links that redirect users to malicious websites.Thi... |
12 October 2010 13:46 GMT |
 |
A new mass injection attack infected a significant number of websites hosted at 123-reg.co.uk, one of the largest domain providers in UK, with code directing visitors to scareware.The attack was discovered by Sucuri Security, a company providing Web integrity monitoring solutions and operating a website malware scann... |
5 October 2010 05:11 GMT |
 |
A gang of hackers targeting infecting predominantly ASP and ASP.NET websites with malicious code, has launched a new attack that so far affected at least 1,500 domains."A large number of sites have been hacked again in the last few days with a malware script pointing to google-stat50.info (and google-stats50.info)," ... |
29 September 2010 02:18 GMT |
 |
Many users were blocked from accessing the BBC Radio 3 website earlier this week due to a Google warning about its pages being infected with malware.The site was blacklisted by the Google Safe Browsing service because "4 page(s) resulted in malicious software being downloaded and installed without user consent."This ... |
11 September 2010 03:32 GMT |
 |
A new mass injection attack has compromised tens of thousands of websites with code that directs visitors to rogue antivirus programs.The new attack was detected and reported by security researchers from Websense, a provider of Web and email security solutions."Websense ThreatSeeker Network detected this large-scale ... |
7 September 2010 13:02 GMT |
 |
Sucuri Security, a provider of Web integrity monitoring solutions, warns that a new wave of malicious code injection attacks is targeting outdated WordPress sites. Users visiting the compromised websites will be directed to pages serving a FakeAV variant.The new attacks are a reiteration of the mass compromises that ... |
17 July 2010 05:11 GMT |
 |
Security researchers from web integrity monitoring services provider Sucuri warn that a new mass injection attack is targeting websites hosted at BlueHost. The company's own CEO, Matt Heaton, appears to be amongst the victims of this attack, having his blog compromised and left spreading rogueware.The rogue code... |
28 June 2010 04:48 GMT |
 |
|