xHamster and others: Beware of malicious ads

A malicious one τους τελευταίους μήνες τοποθετεί κακόβουλες διαφημίσεις σε ιστότοπους πορνογραφίας. Οι συγκεκριμένες διαφημίσεις να ανακατευθύνουν τους χρήστες σε explot kits και τους μολύνουν με software.

The group is called Malsmoke, and has carried out attacks on "almost all pornographic networks".

According to security company Malwarebytes, which monitors Malsmoke's attacks, most of the time, the group managed to place malicious ads on small or medium-sized pornographic portals, but recently "hit the jackpot" when it managed to add these ads to xHamster, one of the largest pornographic portals with billions of visitors every month.

Malicious ads use misleading JavaScript to send users to a malicious website that hosts an explot kit.

The exploit kit will then use vulnerabilities in the Player or in Internet Explorer to install malware on users' computers (Smoke LoaderRaccoon StealerAnd ZLoader.).

The attacks can be seen as a last ditch effort to infect users with old tools such as exploit kits, the use of which has declined in recent years as modern browsers have become much more secure.

“Despite the recommendations of Microsoft and security professionals, we find that there are still a number of users (consumers and ) worldwide that have not yet been changed to a modern browser”, he says Malwarebytes.

"As a result, the authors of the exploit kit are targeting vulnerabilities in Internet Explorer and Flash Player."

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).