Register

To become a member of ITProPortal Register here.

Already a member? Login here

Please register below. All we need is a valid email address and a password.

Please use a real email address as we need to email you to confirm your account.
Must be at least 6 characters long.

Benefits of joining ITProPortal:

  • Unlimited Access to Special Reports and White Papers
  • Exclusive offers and discounts
  • Free entry to all competitions
  • Access to beta sections of ITProPortal.com

Login to your account



Forgot your password?


Another hack to keep an eye on

Another hack to keep an eye on
  • Digg del.icio.us reddit Facebook
 Add another one to the list, a fairly extensive cross site scripting hack currently in action, pushing porn, and ultimately malware.

The images displayed are extremely graphic in content. When an image is clicked, the user is redirected to a site pushing a fake antispyware program.

Xss238823488

Xss238823488aa


Xss238823488b

Searching Google for the term “href=//imagesoap” pulls up a large number of results. (Warning: the results returned are highly graphic in content, and do lead to malware.)


Xssgooglesearch1238


Sites observed as infected include:

faa.org
movieweb.com
finlayongovernance.com
exmoorcastingsupplies.co.uk
interbrand.com
montecarlofans.com
ceiling-fans.biz
paxworld.com
travelandleisure.com
flexexamples.com
venganza.org
killerfrog.com

And plenty more.

Posted by Alex Eckelberry on 27 May 2008

Tags: Hacking