Showing posts with label Code. Show all posts
Showing posts with label Code. Show all posts

Friday, 16 January 2015

Google Adsense Used For Malicious Ads


Cybercriminals have used Google Adsense to display ads on all sorts of malicious websites that visitors to these sites for several scam sites by sent. Numerous webmasters complained about the ads that ensured that visitors were redirected automatically.

The scam sites where visitors ended up offered all kinds of products to lose weight, aging combat, combat skin problems or improve IQ. The websites looked like blogs and magazines with so-called scientific studies and research on the products, complemented by all kinds of false responses from people who supposedly had tried the products.

The problem with the malicious ads would play since mid-December, but was last Friday, January 9th widely felt. On the Google AdSense forum, more than 180 responses from angry webmasters inside. Webmasters who use Google Adsense on their websites and see how visitors were redirected by the malicious ads.

On January 10, Google would have solved the problem. According to security firm Sucuri used the attackers behind the attack two legitimate AdSense campaigns, they probably via guessed or stolen credentials managed to hijack. However, it is not excluded that the scammers Adsense accounts have created yourself and initially did occur that it was legitimate campaigns.
Code

Researcher Denis Sinegubko of Sucuri is wondering why Google allows advertisers may use this type of potentially dangerous code. "I realize that Google advertisers flexibility in managing their campaigns and the use of scripts will give their own pages. And I realize that at the first check these scripts did nothing malicious, and is only misbehaved after they were approved. But there would have to be more in control of third-party scripts. "

Sinegubko further notes that nobody likes ads, but they are indispensable for many websites. "I will not tell you to remove all ads from your site," he says to webmasters. "But I ask you to think about the safety and reputation effects that may have bad ads for your site. Consider each script from a third party that you place on your website as a potential threat. Especially those scripts that others who do not knows, allow you to place content on your site. "

Monday, 5 January 2015

CyanogenMod 12 Manages Root Privileges via Privacy Guard


The popular Android ROM CyanogenMod will in the latest version no longer use a separate app for managing root privileges. This will namely be done via the built Privacy Guard System, reports Android Police. CyanogenMod is a customized version of the Android operating system that can install owners of get rooted smartphone.


At this time the developers work on CyanogenMod 12 based on Android Lollipop. From modifications to the code that the Superuser access no longer requires a separate app, but through Privacy Guard will be arranged. Privacy Guard, formerly known yet if Incognito Mode is part of the operating system that allows users to set permissions important apps. When CyanogenMod 12 appears is still unknown.

Monday, 15 December 2014

'SoakSoak' Malware Infected 100,000+ Wordpress Websites




At over 100,000+ WordPress sites researchers have found malicious code that attempts to infect visitors with malware. The code is loaded from the Russian domain SoakSoak. Google would now more than 11,000 infected websites have put on a blacklist.


Visitors who use Firefox or Chrome receive when visiting these WordPress sites a warning that the site contains malware. According to security firm Sucuri is the number of affected sites much larger and would amount to more than 100,000 WordPress installations. Also on the forum WordPress complain many users SoakSoak on their website.

How the attackers managed to get the malicious code on the WordPress sites is still unknown, but it is suspected that the sites a vulnerable version of the WordPress Slider Revolution use premium plugin. By September WordPress sites with a vulnerable version of the plug-in even though the target of attacks.

Monday, 1 December 2014

Virustotal - Added New Tool For iOS & Mac Malware Analysis




VirusTotal.com, the online virus scanner from Google, two weeks ago quietly added a new tool to improve the analysis of suspicious files Mac and iOS apps. Via VirusTotal users can upload files and then to scan dozens of virus scanners.

In addition, the binary contents of each file is scanned, regardless of file type, then to check whether anti-virus companies recognize the scanned code. The new tool launched recently trying executable files Mac OS X and iOS apps to further characterize by finding out interesting features. Thus collected header information of the file, as well as file segments, shared libraries that the file uses, load commands and signature information if the code is digitally signed.

In the case of Mac OS X that contains executable mach-o-files for different systems, each embedded file of the properties will be displayed. When it comes to iOS apps will generate VirusTotal also metadata about the package itself and iTunes detail. Emiliano Martinez VirusTotal hopes that the new tool will help you find and study threats for Mac OS X and iOS.

Recently, Virustotal has expanded the size limit from 64MB to 128MB.