Fake Craigslist notifications lead to exploit kit
Posted on 08.06.2012
Bookmark and Share
Emails purportedly sent by Craigslist have been hitting users' inboxes and trying to get them to follow the offered link to a website hosting the Blackhole exploit kit, warns Websense.

The emails are good imitations of legitimate Craigslist automated email notifications, and have a rather legitimate looking sender address and name, too:


But the embedded link takes the users to a compromised WordPress page, where obfuscated JavaScript serves an iFrame that redirects them to another compromised site located on a Russian domain.

There the exploit kit awaits and tries to take advantage of a slew of vulnerabilities that might exist on the targets' computer and serve malware.

Users are advised never to follow links from unsolicited emails, however legitimate they might appear.







Spotlight

Information security executives need to be strategic thinkers

Posted on 17 June 2013.  |  George Baker, the Director of Information Security at Exostar, talks about the challenges in working in a dynamic threat landscape, offers tips for aspiring infosec leaders, and more.


Daily digest

By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
  

Weekly newsletter

With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.
  

 

DON'T
MISS

Tue, Jun 18th
    COPYRIGHT 1998-2013 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //