May 14, 2008 :: New Trojan Attack Hits 500,000 Sites (via phpBB)

Started by Jason, May 15, 2008, 09:54:17 PM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

Jason

http://www.thewhir.com/marketwatch/051408_New_Trojan_Attack_Hits_500_000_Sites.cfm

Another reason to make sure that if phpBB is your preference that you stay current of all known patches/upgrades. 

Quote
New Trojan Attack Hits 500,000 Sites

May 14, 2008 -- (WEB HOST INDUSTRY REVIEW) -- According to a report issued over the weekend by security researcher Trend Micro (trendmicro.com), a new malware attack has already compromised more than half a million servers.

The attack uses poorly implemented, or older and more vulnerable versions of the bulletin board system phpBB to install JavaScript code that attempts to distribute variants of the Zlob Trojan to website visitors.

The Trojan comes disguised as a video codec installer, a popular means of distributing malicious code among cyber criminals.

According to the report, the code is served from systems based in the US and Russia, and bears similarities to previous attacks by Russian and Ukrainian gangs trying to distribute the Zlob Trojan.

The code, if installed, changes DNS and browser settings on PCs to leave them vulnerable to later attack. Compromised machines would presumably be tapped later for use in spamming botnets.

Trend Micro says it plans to follow the development of the attack and will continue to post information on the threat.

dania

I am pretty active at PHPBB forums,

I am looking and waiting for any updates Jason.
Thanks for the warning.

:)
For God so loved the world, that he gave his only begotten Son, that whosoever believeth in him, should not perish, but have everlasting life.