home contact keylogger.org add keylogger.org to favorites set keylogger.org as homepage Anti-Keylogger.org
Keylogger testing and reviews

Keylogger testing policy

Press-releases

Keylogger developers

Links
Monitoring Software Keylogger articles

Get Free Software

Keylogger chat

Keylogger forum

Sponsorship & services
Advertising
Your Ad Here
Site News
Current section

July 09, 2008

New version of Spytech SpyAgent Stealth Edition added!

Free monitoring and anti-keylogging Software!

World news

July 11, 2008

ID cards face student scorn

UK must overhaul data sharing rules

Super scanners at British airports

Apple TV gets a security update

Mobile threats loom for iPhone 3G

Banks should be liable for e-fraud

House of Representatives acts over White House emails

ZoneAlarm updated after Microsoft DNS patch

Google releases Web 2.0 security tool

Microsoft fixes month-old WSUS patch snafu

Developer fixes 33-year-old Unix bug

Oracle to release 45 security patches Tuesday

DNS researcher convinces skeptics that bug is serious

Newsletter
E-mail: 
Subscribe
Send to friend
E-mail: 
Send
Voting

We are planning to redesign our site. We would like You to express your opinion in this respect. Would you like to leave the site as it is? What changes would you like to suggest?

Yes, I like the site as it is.
It's ok, but some changes are necessary.
It should be changed completely.
VotingView results
DISCLAIMER: Logging other people's keystrokes or breaking into other people's computer without their permission can be considered illegal by the courts of many countries. The monitoring software reviewed here is ONLY for authorized system administrators and/or owners of computers. We assume no liability and are not responsible for any misuse or damage caused by the keylogging software. The end user of this software is obliged to obey all applicable local, state, federal and other laws in his country of residence.

May 13, 2008

Hackers hijack a half-million sites in latest attack

More than half a million Web sites have been compromised in a new round of attacks that hacked domains in order to infect unsuspecting users' PCs with a variety of malware, a security researcher said today.

"This is an ongoing campaign, with new domains [hosting the malware] popping up even this morning," said Paul Ferguson, a network architect at antivirus vendor Trend Micro Inc. "The domains are changing constantly."

According to Ferguson, over half a million legitimate Web sites have been hacked by today's mass-scale attack, only the latest in a string that goes back to at least January. All of the sites, he confirmed, are running "phpBB," an open-source message forum manager.

Ferguson didn't know how the sites were compromised; Trend Micro's investigation is in progress, he said. "We're not sure if it's [because of] improper configuration of phpBB or a vulnerability. Open-source applications like phpBB tend to be targeted quite a bit."

Visitors to a hacked site are redirected through a series of servers, some clearly compromised themselves, until the last in the chain is reached; that server then pings the PC for any one of several vulnerabilities, including bugs in both Microsoft's Internet Explorer and RealNetworks' RealPlayer media player. If any of the vulnerabilities is present, the PC is exploited and malware is downloaded to it.

Some of the compromised sites have been hijacked before, said Ferguson. "Some had recently been used for keyword search ranking manipulation, and others to pitch fake pharmaceuticals or just malware," he said.

Although other research by Trend Micro identified the malware hitting users' PCs as a variant of the Zlob Trojan horse, Ferguson said that more than just one piece of malware is being served. "We seeing some new stuff coming out of this one," he said.

The last massive site attack was less than three weeks ago, when sites that included government URLs in the U.K. and some domains operated by the United Nations were hacked. At the time, some researchers said that bugs in Microsoft's SQL Server or Internet Information Services server software were to blame. A few days later, however, Microsoft denied responsibility.

Don't expect the run of site infections to stop anytime soon, said Trend Micro's Ferguson. "As long as attacks are tied to site development and as long as sites don't secure their content, we'll see these attacks," he said.


Source: ComputerWorld




All news for July 11, 2008:
15:08ID cards face student scorn
15:07UK must overhaul data sharing rules
14:42Super scanners at British airports
14:40Apple TV gets a security update
14:08Mobile threats loom for iPhone 3G
14:02Banks should be liable for e-fraud
14:01House of Representatives acts over White House emails
13:54ZoneAlarm updated after Microsoft DNS patch
13:53Google releases Web 2.0 security tool
13:52Microsoft fixes month-old WSUS patch snafu
13:46Developer fixes 33-year-old Unix bug
13:45Oracle to release 45 security patches Tuesday
13:45DNS researcher convinces skeptics that bug is serious

All news for July 10, 2008:
13:32FUD Watch | Black Hat and the Hype Machine
13:32Recession Woes: What People Steal
13:15Barriers to overcome in 2FA credit cards
13:11ZoneLabs details Microsoft patch workarounds
13:10Check Point promises ZoneAlarm fix today
13:09Managers must face security responsibility
13:08Payment data rules criticised
13:02Founder of Webroot goes missing
13:00US Senate passes surveillance bill
12:54IM security fears persist
12:49Chipmaker sues researchers to hide smartcard flaws
12:48Storm worm email claims US attacked Iran
12:43Patch domain name servers now, says DNS inventor
12:43File-sharing breach at investment firm highlights dangers of P2P networks -- again



All news for July, 2008
All news for 2008 year
All news for 2007 year
All news for 2006 year
All news for 2005 year
All news for 2004 year


DONATION: Keylogger.org is an independent research project supported by a team of enthusiasts. If you find this project useful or would like to help foster its continued development please consider making a donation using PayPal`s online secure payment service.

A PayPal account is not required. All major credit cards are accepted (MasterCard/Eurocard, Visa/Delta/Electron, American Express, Switch/Maestro, Solo). Simply click the button below.

Any amount would be useful and appreciated!

Thanks in advance for your support!

Advertising
Your Ad Here
| home | testing and reviews | testing policy | press_releases | developers |

| articles | contest | chat | forum | sponsorship & services | contacts | links |
Copyright © 2003-2008, Keylogger.Org Team. All Rights Reserved.
Use of any information from this website is permitted only with hypertext link to www.keylogger.org.