Crippling malware attack strikes in Italy

Researchers claim hundreds of sites compromised

Written by Shaun Nichols in California

Italy is suffering from a barrage of remote attacks launched from hundreds of compromised websites, security experts have warned.

Researchers at Symantec reported that attackers have injected 'iframe' tags within the HTML files on compromised sites.

The tags redirect users to a site that runs MPack, a utility that attempts multiple exploits and malware installations. 

More than 65,000 users had been redirected to the malicious page since Friday afternoon, and more than 7,000 successful exploits had been carried out.

Symantec researcher Elia Florio warned in a company blog that users should update antivirus software and all system and third-party software that can be vulnerable to attacks. 

Florio warned that MPack attempts to exploit multiple vulnerabilities and applications, including flaws in QuickTime and WinZip.

A successful exploit allows attackers to install malicious components such as key-loggers and password stealers.

MPack is a piece of commercial malware that includes support for plug-ins and a year of free technical support.

A May report by Panda Labs found the application selling for between $700 and $1,000, with additional exploit modules for $50 to $150.

Tags:

Further reading

Related articles

'Italian job' attacks spread worldwide

10,000 websites now hosting malicious attack code   More...

Apple QuickTime exploit goes wild

Streaming media flaw used to push malware   More...

QuickTime flaw adds to Apple's woes

Exploit especially dangerous for Firefox users   More...

Hackers step up search results attack

Big-name sites compromised in IFrame redirect scam   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

16 May 2008

2.97 MBXP on OLPC, broken dreams and Yahoo fights back More...

15 May 2008

3.28 MBDark fibre, mobile TV and solar power More...

14 May 2008

2.66 MBOnline inequality, mobile thumbprints and corporate raids More...

Poll

HOME WORKING

HOME WORKING

Do you let any or all of your employees work from home?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

OLPC

OLPC to ship with Windows XP

Microsoft teams up with One Laptop per Child project   More...

The Sims

The Sims goes flat-pack with Ikea

Virtual world gets Swedish wood   More...

Advertisement

Microsoft-Yahoo

Yahoo board fights back at Icahn

Investor accused of 'significant misunderstanding' in Microsoft saga   More...

MySpace

Woman charged over MySpace suicide

Lori Drew indicted on federal charges   More...

Advertisement