Spyget > Massive IFRAME SEO Poisoning Attack Continuing (from Dancho Danchev)

DNS-BH - Malware Domain Blocklist[DNS-BH - Malware Domain Blocklist] The latest attack successfully injects IFRAMES forwarding to the rogue security software and Zlob malware variants. Domains include:.

Previous [Previous] Ratings Manipulation Reaches eBay...

Next [Next] Zero-Day Exploits Target Microsoft Jet Flaw...

Some related posts from Technorati and Google.

serversatoz.com[serversatoz.com] Massive IFRAME SEO Poisoning Attack Continuing: For the time being, Google is actively filtering the results, in fact removing the cached pages on number of domains when I last checked, the practice makes it both difficult to assess how many and which sites are actually affected, and of course, undermining the SEO poisoning, as without it the input validation and injecting the IFRAMEs would have never been able to attract traffic at the first place.

trendlabs | Malware Blog - by Trend Microhttp://blog.trendmicro.com/arsenal-fan-site-compromised-serves-malware/ [trendlabs | Malware Blog - by Trend Micro] Arsenal Fan Site Compromised, Serves Malware: The compromised Web site in this case is Onlinegooner.com, which was reported by ScanSafe OI to be “maliciously active.” STAT confirmed that the fan site had been injected with malicious code, which led to the download of malware from the following IP addresses:

serversatoz.com[serversatoz.com] PR Storm - Mass iFRAME Injectable Attacks: Hackers launch massive IFrame attack - SEO poisoning attacks growing - Attackers hijacking web site search engines to push malware; German article - Developers: Check Your %*^& Inputs - Researcher: Beware of massive IFrame attack .

Reflected tags on Technorati: Blog, ,