[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Mail]  [Sign-in]  [Setup]  [Help]  [Register] 

"Democratic Overreach on Immigration Beckons"

How to negotiate to buy a car

Trump warns of a 'massive Armada' headed towards Iran

End Times Prophecy: Trump Says Board of Peace Will Override Every Government & Law – 10 Kings Rising

Maine's legendary 'Lobster Lady' dies after working until she was 103 and waking up at 3am every day

Hannity Says Immigration Raids at Home Depot Are Not ‘A Good Idea’

TREASON: Their PRIVATE CHAT just got LEAKED.

"Homan Plans to Defy Spanberger After ‘Bond Villain’ Blocks ICE Cooperation in VA: ‘Not Going to Stop’"

"DemocRATZ Radical Left-Wing Vision for Virginia"

"Tim Walz Wants the Worst"

Border Patrol Agents SMASH Window and Drag Man from Car in Minnesota Chaos

"Dear White Liberals: Blacks and Hispanics Want No Part of Your Anti-ICE Protests"

"The Silliest Venezuela Take You Will Read Today"

Michael Reagan, Son of Ronald Reagan, Dies at 80

Patel: "Minnesota Fraud Probes 'Buried' Under Biden"

"There’s a Word for the West’s Appeasement of Militant Islam"

"The Bondi Beach Jihad: Sharia Supremacism and Jew Hatred, Again"

"This Is How We Win a New Cold War With China"

"How Europe Fell Behind"

"The Epstein Conspiracy in Plain Sight"

Saint Nicholas The Real St. Nick

Will Atheists in China Starve Due to No Fish to Eat?

A Thirteen State Solution for the Holy Land?

US Sends new Missle to a Pacific ally, angering China and Russia Moscow and Peoking

DeaTh noTice ... Freerepublic --- lasT Monday JR died

"‘We Are Not the Crazy Ones’: AOC Protests Too Much"

"Rep. Comer to Newsmax: No Evidence Biden Approved Autopen Use"

"Donald Trump Has Broken the Progressive Ratchet"

"America Must Slash Red Tape to Make Nuclear Power Great Again!!"

"Why the DemocRATZ Activist Class Couldn’t Celebrate the Cease-Fire They Demanded"

Antifa Calls for CIVIL WAR!

British Police Make an Arrest...of a White Child Fishing in the Thames

"Sanctuary" Horde ASSAULTS Chicago... ELITE Marines SMASH Illegals Without Mercy

Trump hosts roundtable on ANTIFA

What's happening in Britain. Is happening in Ireland. The whole of Western Europe.

"The One About the Illegal Immigrant School Superintendent"

CouldnÂ’t believe he let me pet him at the end (Rhino)

Cops Go HANDS ON For Speaking At Meeting!

POWERFUL: Charlie Kirk's final speech delivered in South Korea 9/6/25

2026 in Bible Prophecy

2.4 Billion exposed to excessive heat

🔴 LIVE CHICAGO PORTLAND ICE IMMIGRATION DETENTION CENTER 24/7 PROTEST 9/28/2025

Young Conservative Proves Leftist Protesters Wrong

England is on the Brink of Civil War!

Charlie Kirk Shocks Florida State University With The TRUTH

IRL Confronting Protesters Outside UN Trump Meeting

The UK Revolution Has Started... Brit's Want Their Country Back

Inside Paris Dangerous ANTIFA Riots

Rioters STORM Chicago ICE HQ... "Deportation Unit" SCRAPES Invaders Off The Sidewalk

She Decoded A Specific Part In The Bible


Status: Not Logged In; Sign In

Computers-Hacking
See other Computers-Hacking Articles

Title: My browser visited Weather.com and all I got was this lousy malware [also Drudge, Wunderground, Yahoo]
Source: Ars Technica
URL Source: http://arstechnica.com/security/201 ... -i-got-was-this-lousy-malware/
Published: Aug 15, 2015
Author: Dan Goodin
Post Date: 2015-08-15 11:27:29 by Tooconservative
Keywords: None
Views: 24681
Comments: 77

Millions of people visiting weather.com, drudgereport.com, wunderground.com, and other popular websites were exposed to attacks that can surreptitiously hijack their computers, thanks to maliciously manipulated ads that exploit vulnerabilities in Adobe Flash and other browsing software, researchers said.

The malvertising campaign worked by inserting malicious code into ads distributed by AdSpirit.de, a network that delivers ads to Drudge, Wunderground, and other third-party websites, according to a post published Thursday by researchers from security firm Malwarebytes. The ads, in turn, exploited security vulnerabilities in widely used browsers and browser plugins that install malware on end-user computers. The criminals behind the campaign previously carried out a similar attack on Yahoo's ad network, exposing millions more people to the same drive-by attacks.

Update: A few hours after Ars published this article, Malwarebytes updated the blog post to say the campaign had moved to yet another ad network, which happens to be associated with AOL. Visitors to eBay were among those who were exposed to the malicious ads distributed through the newly discovered network.

Malvertising is a particularly pernicious form of attack because it can infect people who do nothing more than browse to a mainstream site. Depending on the exploit, it can silently hijack computers even when visitors don't click on links. Some browser makers have responded by implementing so-called click-to-play mechanisms that don't render Flash or Java content unless the end user actively permits the plugin to run on a particular site. Some users have resorted to ad blockers, which have the unfortunate side effect of depriving publishers of much-needed advertising revenue.

The campaign used against the AdSpirit and Yahoo networks connected to servers run by Microsoft's Azure service. Ultimately, the booby-trapped ads led to attack code distributed through the Angler exploit kit, a software package sold on the black market that makes it easy for criminals to exploit vulnerabilities in Flash, Java, and other software. The AdSpirit attacks were particularly hard to trace because most of the websites involved in the attack were using the transport layer security protocol to obscure the address and encrypt the data. There's no indication the attacks were exploiting vulnerabilities in fully patched software. That underscores the importance of installing security updates as soon as they become available.


Poster Comment:

Install adblockers to be more secure. Ad Block Plus is the classic extension most people use. It has started to allow some "safe non-abusive" ads to slip through. So, after years of being loyal to ADP, I gave it up and moved to uBlock Origin 1.0.0.1 recently.(1 image)

Post Comment   Private Reply   Ignore Thread  


TopPage UpFull ThreadPage DownBottom/Latest

Begin Trace Mode for Comment # 47.

#33. To: TooConservative (#0)

Install adblockers to be more secure.

Take your pick.

https://en.wikipedia.org/wiki/UBlock

https://addons.mozilla.org/en-us/firefox/addon/ublock/

https://addons.mozilla.org/en-us/firefox/addon/ublock/reviews/

µBlock - 214,818 users

https://addons.mozilla.org/en-us/firefox/addon/adblock-plus/

https://addons.mozilla.org/en-us/firefox/addon/adblock-plus/reviews/

AdBlock Plus - 19,564,935 users

- - - - -

https://addons.mozilla.org/en-US/firefox/addon/adblock-plus-pop-up-addon/

https://addons.mozilla.org/en-US/firefox/addon/adblock-plus-pop-up-addon/reviews/

AdBlock Plus, Pop-up Addon - 1,164,851 users

- - - - -

https://addons.mozilla.org/en-Us/firefox/addon/adblock-edge/

AdBlock Edge - Discontinued

nolu chan  posted on  2015-08-16   13:43:01 ET  Reply   Untrace   Trace   Private Reply  


#40. To: nolu chan (#33)

Take your pick.

True. If you look in the Chrome Store or the Google Play store, you'll find tons more. That's because it is open-source stuff and easy to crank out new versions.

And they all use the same blacklists/whitelists, it seems.

Tooconservative  posted on  2015-08-16   14:10:29 ET  Reply   Untrace   Trace   Private Reply  


#47. To: TooConservative (#40)

If you look in the Chrome Store or the Google Play store, you'll find tons more.

No, thanks.

nolu chan  posted on  2015-08-16   14:32:51 ET  Reply   Untrace   Trace   Private Reply  


Replies to Comment # 47.

        There are no replies to Comment # 47.


End Trace Mode for Comment # 47.

TopPage UpFull ThreadPage DownBottom/Latest

[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Mail]  [Sign-in]  [Setup]  [Help]  [Register] 

Please report web page problems, questions and comments to webmaster@libertysflame.com