Search results hijacked by hackers

A massive ring of malicious websites that had infiltrated the search results of Google, Yahoo and MSN has been uncovered, reports BBC News.

The sites, which appeared in the natural search results for terms including “Christmas gifts” and “hospice” were targeting vulnerabilities in the browsers of unsuspecting visitors.

Alex Eckelberry of Sunbelt Software, one of the firms involved in discovering the network of sites, said that although these kind of attacks are commonplace, the sheer scale of the recent campaign was unprecedented,

“This was fairly epic,” explained Alex, adding that “If your machine was not fully patched you were going to get hosed,”

The websites involved posed as serious sources of information to convince the search engines they were legitimate. In reality, they were loaded with malicious software designed to find and exploit unpatched versions of Microsoft’s Internet Explorer browser.

There are thought to have been websites spread across tens of thousands of domains involved in the attack; many located in China and registered in the last few days. A campaign of comment spamming blogs helped pushes the websites quickly up the rankings where they could maximise traffic.

“You could be searching for really innocuous things and get nailed,” said Alex. “There was really nasty stuff in there.”

Another company involved in detecting the attack was security firm Trend Micro. Chief Technology Officer, Raimund Genes, speculated that the Russian Business Network - a criminal gang specialising in Internet fraud - might be behind the attack.

There is no estimate of how many people might have been affected by booby-trapped sites, which were in operation for around 24 hours before Google began removing them from its search indexes.

There are fears thought that this could be the start of a more sustained campaign, as Mr Eckelberry warned of the prospect of more attacks in the pipeline.

“This is not going to go away,” he said.

Comments are closed.

For information about SEO in English, SEO in Chinese, conversion rate optimisation or our software development services contact us now

 

Take advantage of a first rate service backed by years of experience, solid guarantees and UK government accreditation

We pride ourselves on our reputation for delivering top quality IT solutions. It’s why our large portfolio of satisfied clients keeps coming back.

As an associate company member of the prestigious Lancaster University InfoLab21 Knowledge Business Centre, our in-house team has access to resources at the cutting edge of information technology.

Find out how you could benefit from a high quality service tailored exactly to your needs. Talk to us now. No pressure, no obligation.

Enquire Now
Company Name:
Contact Name:
Position in company:
Company Email:
Company website address:
Company Telephone:
From which country or
state are you?

(This helps us contact you in
your own time zone)
My interest is in the following service:
Spam protection - enter the code shown:

(Change verification code)

Submit now for a direct response.

 

Direct Line:
01524 65533

UK Local Call (24/7):
0845 057 3371

US Freephone:
1 877 413 1158

Email Us

| Email Us Valid CSS! Valid XHTML 1.0 Strict