WHIR | BLOGS | WEB HOST NEWS | FIND WEB HOSTS | RESELLER HOSTING | MAGAZINE | WHIR TV | NEWSLETTER | rss feeds
web hosting news - daily web host interviews, insight Jobs | Events | Sitemap | Search
Green Data Center Info


WEB HOSTING NEWS | BLOGS | INTERVIEWS | EUROPE | EVENTS | WEB HOSTING JOBS

<< IBM Acquires Telelogic for $845m     IBM's New GIB Facility Heats Pool >>


Welsh Government Site Hacked

April 4, 2008 -- (WEB HOST INDUSTRY REVIEW) -- Hackers broke into a Welsh government website to install a malicious JavaScript in an attack that mirrors the vicitimized pages of the Trend Micro (trendmicro.com) website in mid-March, as reported Friday by computer security analyst firm Sophos (sophos.com). The Welsh site is just one of the thousands of websites recently infected by malicious code.

   
DataPipe’s high-value managed global IT services help thousands of businesses decrease CAPEX, OPEX, & risk while increasing overall service levels. Partner with DataPipe – Improve your ROI - Extend your IT resources

Last month, Trend Micro's website was among one of up to 20,000 sites that fell victim to an attack where hackers exploited a weakness in the server's security that allowed them to set up malicious JavaScript.

Visitors of an infected page will be infected with a malicious code from another server, triggered by the JavaScript. Sophos has dubbed this attack 'Troj/Badsrc-A.'

In the case of the Welsh attack, the server that is hosting the malicious code is down, says Graham Cluley, Sophos senior technology consultant. The computer server might have exceeded its allowed bandwidth as a result of a high number of downloads of malicious code, meaning that many individuals could be infected, Cluley said.

This attack signals a rise in the number of hacked websites that are being used to infect PCs with malicious code, a tactic that can be used to infect fully patched computers. Once the malicious JavaScript is triggered, a user could be prompted to download some harmful software that he or she may believe is essential to accessing the legitimate website.

Cluley said that other cases could see the JavaScript launch an attack that attempts to exploit weaknesses in, for example, QuickTime, which could be launched by JavaScript if the application isn't patched. Apple responded to this earlier this week by issuing 11 patches for its media player.

Aside from using virus-protection software, users can protect themselves from these attacks by using the Firefox browser with the NoScript extension, which blocks the execution of JavaScript, Java and Flash in the browser.

NoScript prevents legitimate websites using JavaScript and those plugins from working, but users are given the option of white listing safe websites. The extension, as well as Firefox, can be downloaded for free here. NoScript can block the attack on the Welsh website, Cluley said.

Sophos has contacted the organization that maintains the Welsh site but has not yet received a response.

Print this Page       Email this Page        Add to: | del.icio.us | digg


COMMENTS

Be the first one to comment on this article. Click the link below to post your comment.

[POST COMMENT]



Q&A: James Bond, Apptix

Noise Filter: McColo Taken Down

Wowza Offers Friction Free Flash

Sun Battles for Greenest Data Center

Concentric Looks to the Clouds

Good Signs in Financial Market Chaos

Salesforce Launches Force.com Sites

More feature interviews and reports
 

What Exactly is Semi-Dedicated Hosting?

Own your own jet

MLB.com switches to Flash; Hosting and Video Streaming Questions

I Was Right - Yahoo Was Stupid

Video Interview with Joey Widener, AT&T

Happy Birthday DMCA

More posts from our Bloggers


DataSite Offers Green Facility Stats

Google Hosts Life Mag Image Archive

Level 3 CDN Backs Pando Cloud

HMS Adds Managed Services Webpage

NetFirms Hosts Pixlr Image Editor

Hosting Sales and Promos Roundup

Verio Offers Email Compliance Service

The Web Host Industry Week in Review

IBM Tests IDC Heating Homes

CRTC Approves BCE Traffic Shaping

ServerBeach Hosts Photo Site Natuba

DataPipe: A Top Growing NJ Firm


 

Sales Operator

Management Trainer

Senior Account Manager, Dedicated Hosting

Sales Executive

Senior Accounting Analyst

Technical Solutions Engineer

Product Manager

Account Manager

Ajax Experienced Developer

International Accounting Manager

 

SPONSORED LINKS
> Apollo Hosting: Award Winning Website Hosting from $6.96 – Click Here!

> iWeb: Quality servers. 3000GB of traffic for only $69

> TopLayer: SC Mag Recommended. Protect against DDoS Attacks & more.

> Parallels: Automation and Virtualization. Buy ONLINE or Learn MORE!

> Website Source: Powerful Website hosting starting at $6.85

> Rackspace: What Do You Get With Your Hosting Provider?

> Verio: Get Email Anywhere w/ Hosted Exchange $11.95/mo, 2 Mo Free

> Mosso: Leverage the Rackspace Cloud. 30 day risk-free trial. Click here to learn more.

> IronScale: Why Rack? Automate with IronScale Managed Hosting

> Is your company hiring? Post your job listing here!

WHIR NEWSLETTER SIGN-UP | MANAGE SUBSCRIPTIONS | WHIR RSS FEEDS
Name:
Email:
Password:
theWHIR Blog Email Update
Magazine
Daily News
Find Web Hosts
Occupation:
Company Type:

Find Web Hosts | Reseller Hosting | Personal Web Hosting | Small Business Web Hosting | Dedicated Servers | Managed Hosting | Adult Web Hosting


About WHIR | Online Advertising | Print Advertising | Print Subscription | Email Newsletters | RSS Feeds
 
Submit News | Privacy Policy | Buy Reprints

Web Host Industry Review, Inc. is not responsible for the content of comments submitted by our users.

  © Copyright Web Host Industry Review, Inc.