UPDATED Mass SQL-injection attack compromises 380,000 URLs
By Nicole Kobie,
Hundreds of thousands of URLs have been affected by a massive SQL-injection attack, according to security specialist Websense.
The number of affected domains has jumped to 380,000 - and counting - from a more lowly figure of 28,000 when the attack was first spotted earlier in the week.
Affected sites are easy to spot by searching for the line of JavaScript that the attack inserts into a page, which links to a site called Liza Moon.
Websense said in a blog post it was redirecting users to a fake antivirus site earlier in the week.
Several iTunes URLs have been compromised with the injected code, according to Websense though as Apple's system doesn't execute the code, users are presumed safe.
Indeed, the "bad guys" haven't yet done much with the attack, Websense noted.
“We have been monitoring the attack since it came out and noticed that the number of the compromised URLs is still increasing... Different payload sites, have started to be involved in addition to the original Lizamoon.com," said Carl Leonard, threat research manager at Websense Security Labs.
"The payload sites remain inactive at present although they could be ‘switched’ on at any time," he added. "We can only speculate as to what the bad guys are waiting for.”
UPDATE Websense has now reported more than 500,000 URLs have a script link to Liza Moon.
"The LizaMoon mass-injection campaign is still ongoing and more than 500,000 URLs have a script link to lizamoon.com according to Google Search results," a blog from the firm read.
"We have also been able to identify several other URLs that are injected in the exact same way, so the attack is even bigger than we originally thought."
Additional reporting by Tom Brewster
You may also like...
Sponsored Links
advertisement
You may also like...
Latest Security Analysis & Insight
What is your password worth?
Would you be tempted to sell off company passwords for a fee? If not, seems like you're in the minority, acccording to research.
- Macs under attack?
- Intel: security inside
- Are you spending too much on IT security?
- Does the government want to snoop on your data?
- Eurocrats versus the cyber criminals
- The truth about spam
- Google and privacy: What’s the problem?
- Q&A: Symantec’s CISO on the source code hack
- RSA: Back from the breach?
Latest Security Reviews
Check Point 2210 Appliance review
Rating: ![]()
advertisement
Most popular
- UK regulator shuts down Angry Birds scam
- Apple iPad 3 vs iPad 2 head-to-head review
- IBM bans use of Siri on iPhones
- Chromebooks: What's gone wrong?
- HP plans massive job cuts
- EMC World 2012: Tucci declares Documentum is here to stay
- Dell EqualLogic PS6100XS review
- Macs and Android under malware threat
- RIM loses its head of sales
- Local fibre broadband needs common standards
Latest News Videos in Security
IT PRO Podcast: Are UK data protection laws flawed?
We bring in two experts to talk about the problems with UK data protection law and the way it is managed.
Register for IT PRO
You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.





