Researcher: IFrame redirect attacks escalate - Security Bytes
» VIEW ALL POSTS Mar 28 2008   9:26AM GMT

Researcher: IFrame redirect attacks escalate



Posted by: Bill Brenner
Network Security, Application Security, Information Security Threats, Security Management, Platform Security

It’s been a couple of weeks since security researcher Dancho Danchev raised the red flag about IFrame redirects attackers have been using to corrupt hundreds of thousands of websites, and how the likely culprit is the infamous hacking group known as the Russian Business Network (RBN).

Overnight, Danchev emailed me with an update, and it doesn’t look good. Based on his ongoing investigation, the attacks seem to be continuing unabated.

The latest high-profile sites getting targeted includes usatoday.comabcnews.comnews.comtarget.compackardbell.comWalmart.comRediff.comMiamiherald.comBloomingdales.comPatentstorm.usWebshots.comSears.comForbes.comUgo.comBartleby.comLinkedwords.comCircuitcity.comAllwords.comBlogdigger.comEpinions.comBuyersindex.comJcpenney.comNakido.comUvm.eduhobbes.nmsu.edujurist.law.pitt.eduboisestate.edu.

This on top of those he listed two weeks ago:

NCSU Libraries - lib.ncsu.edu - 372,000 pages bushtorrent.com - 147 pages
ChildCareExchange - ccie.com - 131 pages
The University of Vermont - uvm.edu - 120 pages
Hippodrome State Theatre - Gainesville, FL - thehipp.org - 112 pages
Minnesota State University Mankato - mnsu.edu - 94 pages
The California Majority Report - camajorityreport.com - 16 pages Danchev wrote in his blog. “

Comment on this Post


You must be logged-in to post a comment. Log-in/Register