ITPRO

Printed from www.itpro.co.uk

Register to receive our regular email newsletter at http://www.itpro.co.uk/reg/register.

The newsletter contains links to our latest IT news, product reviews, features and how-to guides, plus special offers and competitions.

Skip to navigation

    BBC music sites hacked

BBC – 6 Music and BBC 1Xtra websites are seen linking to malicious websites following a hack.

By Tom Brewster, 16 Feb 2011 at 11:18

BBC

Two BBC music websites have been compromised after hackers injected them with malicious iframes.

Sections of both BBC – 6 Music and BBC 1Xtra websites were found to be linking to a malicious site that was spewing out malware.

“If an unprotected user browsed to the site they would be faced with drive-by downloads, meaning that simply browsing to the page is enough to get infected with a malicious executable,” Websense Security Labs reported.

“The payload is delivered to the end user only once, with the initial visit being logged by the malware authors.”

The security firm said the attack forms part of a wider mass-injection attempt by hackers, targeting vulnerable websites.

The injected iframe is found at the foot of the BBC 6 Music page and loads code from a website in the.co.cc region, which is located in the Cocos Islands, also known as Keeling Islands, an Australian territory. The iFrame injected into the Radio 1Xtra Web page leads to the same malicious site.

Below is a screenshot Websense took of the injected malicious iframe.

Payload

At the time of publication, the BBC had not responded to a request for comment on the exploit.

This is not the first time the BBC has been targeted by hackers.

Back in 2008, the broadcaster’s official website was hit by a distributed denial of service (DDoS) attack, reportedly crippling performance.

The BBC was also under scrutiny in 2009, when its Click technology programme showed how easy it was to launch attacks by buying a botnet and infecting 22,000 computers.

Email to a friend

Print this page

< Previous   Security : News Next >

Be the first to comment on this article

You need to Login or Register to comment.

    You may also like...

 Sponsored Links

advertisement

    You may also like...

advertisement

    Register for IT PRO

You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.

Sponsored Links
Advertisement