malvertising
Fake WordPress Plugin SiteSpeed Serves Malicious Ads & Backdoors
Fake WordPress plugins appear to be trending as an effective way of establishing a foothold on compromised websites. During a recent investigation, we discovered a fake component which was masquerading as a ...
Fake Malwarebytes Site Used by Malvertising Attack to Spread Raccoon
A malvertising campaign used a copycat website for anti-malware software provider Malwarebytes to distribute the Raccoon infostealer. Malwarebytes learned of the campaign when someone notified the security firm that someone was abusing ...
Top 10 Podcast Episodes from 2019
Thank you for supporting and listening to the show this year! Initial data on our download numbers show that we’ve grown our audience by over 40% in 2019! Having said that, if ...
Need for Better Employee Protection is Apparent During Cybersecurity Awareness Month
National Cybersecurity Awareness Month is upon us again, and it’s a great time to be reminded that the top cause of corporate data breaches is phishing. The very nature of phishing is ...
Malvertising on Legitimate Websites, Even The New York Times
SlashNext recently discovered a new malicious phishing URL distributed through Google ads being served on the The New York Times website ...
eGobbler infects more than 1 billion ads in worldwide campaign
The eGobbler malvertising threat actor has made a return, this time exploiting a WebKit vulnerability used primarily by iPhone’s Safari browser. Security researchers from Confiant estimate up to 1.16 billion impressions have ...
eGobbler Malvertiser Bypassed Browser Protections Using Obscure Bugs
A malvertising actor known as “eGobbler” used obscure browser bugs to bypass built-in browser protections and expand the scope of its attacks. Confiant observed eGobbler exploiting the first vulnerability back on April ...
WordPress sites hacked through defunct Rich Reviews plugin
An estimated 16,000 websites are believed to be running a vulnerable and no-longer-maintained WordPress plugin that can be exploited to display pop-up ads and redirect visitors to webpages containing porn, scams, and–worst ...
Browser Push Notifications: Useful Feature Exploited by Deceptive Marketers
Pop-ups and browser lockers have given way to irritating and potentially destructive push notifications For many of us, when we hear the word “malware,” the first thing that comes to mind would ...
Malvertising Campaign Redirects to RIG Exploit Kit, ERIS Ransomware
A malvertising campaign is redirecting users to the RIG exploit kit for the purpose of loading ERIS ransomware onto vulnerable machines. Over the 5-7 July weekend, security researcher nao_sec discovered a malvertising ...

