A password-stealing worm may have been served to visitors

Mar 15, 2012 12:44 GMT  ·  By

The popular Dutch news website NU.nl has been compromised and altered to serve a malicious worm to those who visited it on March 14, 2012.

According to the Dutch National Alerting Service, all the Internet users who visited the site yesterday, between 11:30 and 12:30, may have been infected with the Sinowal worm.

The agency informs that visitors who didn’t apply the latest updates for Internet Explorer, Flash Player and Adobe Reader are most likely infected with the piece of malware that’s designed to steal passwords, online banking information and other sensitive data.

The incident is currently being analyzed to determine precisely the number of infected PCs and the full extent of the damage caused.

NU released a statement to reveal that the cybercriminal that planted the malicious code on their site leveraged a vulnerability in the Content Management System (CMS), which allowed him to gain unauthorized access.