msgbartop
Unmask Parasites - Check your web pages for hidden links, iframes, malicious scripts, unauthorized redirects and other signs of security problems.
msgbarbottom
Loading site search ...

Tweet Week: July 12-18, 2010

18 Jul 10   Filed in Tweet Week with 0 Comments

Selected short messages and links you might have missed if you don’t follow me on Twitter.

nginx as reverse proxy, WP redirects on MediaTemple, Image search spam … »»

Tweet Week: June 21-27, 2010

27 Jun 10   Filed in Tweet Week with 1 Comment

Selected short messages and links you might have missed if you don’t follow me on Twitter.

Updates: RackSpace, Adobe, Firefox »»

Tweet Week: June 14-20, 2010

21 Jun 10   Filed in Tweet Week with 0 Comments

Selected short messages and links you might have missed if you don’t follow me on Twitter.

RackSpace WordPress issue, WordPress 3.0, keyloggers + pastebin »»

Attack on WordPress Blogs on RackSpace

14 Jun 10   Filed in Website exploits with 30 Comments

This year we regularly see how hackers exploit security holes in infrastructure of large shared hosting providers to compromise thousands legitimate websites of their clients. Network Solutions, GoDaddy, Servage – they all are notorious for their security problems. Now RackSpace Cloud has fallen victim to a massive hacker attack…
Here’s the story …

Tweet Week: May 10-16, 2010

16 May 10   Filed in Tweet Week with 0 Comments

Selected short messages and links you might have missed if you don’t follow me on Twitter.

GoDaddy/WordPress security issues, Moodle spam, Google’s Jarlsberg, etc. »»

Tweet Week: April 12-18, 2010

18 Apr 10   Filed in Tweet Week with 0 Comments

Selected short messages and links you might have missed if you don’t follow me on Twitter.

Network Solutions problems, hacked Scobleizer, Fake AV, etc … »»

Network Solutions and WordPress Security Flaw

11 Apr 10   Filed in Website exploits with 48 Comments

I first noticed this hidden iframe from hxxp://networkads .net/ grep/ on April 7. It instantly drew my attention with these weird “iframe_style” scripts in Unmask Parasites reports (I even thought it was a bug in Unmask Parasites, but when I checked the infected site, I found those scripts there).

weird scripts

However it was a single incident and I didn’t see any obvious pattern back then. Two days later, when I noticed David’s (Sucuri Security) article about this very issue and the follow-up by Brian Krebs, I decided to take a closer look at it. What I found is quite interesting and raises a few serious questions about security of websites on shared servers.
Continue »»

Tweet Week: April 5-11, 2010

11 Apr 10   Filed in Tweet Week with 1 Comment

Selected short messages and links you might have missed if you don’t follow me on Twitter.

mass WP hack on Network Solutions, virtualization, Google Webmaster Tools, etc … »»

Tweet Week: March 8-14, 2010

14 Mar 10   Filed in Tweet Week with 0 Comments

Selected short messages and links you might have missed if you don’t follow me on Twitter.

Security discussions, hidden links in WordPress, new vulnerabilities, StopBadware wants bad URLs, etc. … »»

Tweet Week: Feb 15-21, 2010

21 Feb 10   Filed in Tweet Week with 0 Comments

Selected short messages and links you might have missed if you don’t follow me on Twitter.

Gumblar zombies, StopBadware reports, WordPress updates … »»