We received this alert from Websense :

Websense® Security Labs™ has received reports of a large scale attack in Europe that is using the MPACK web exploit toolkit. For more information on MPACK please see the Panda Labs blog here:
http://blogs.pandasoftware.com/blogs/pandalabs/archive/2007/05/11/MPack-uncovered_2100_.aspx.

At the time of this alert our ThreatSeeker technology has discovered more than *10,000* sites that have been compromised and have IFRAMES pointing to the hub infection site.

Assuming users connect to one of the compromised sites and are vulnerable to one of several loaded exploits a Trojan Horse is downloaded onto their machine which is designed to steal banking, and potentially other confidential information through a serious of web infection downloads.

The main site has a statistics page and it has shown very large numbers of users connecting to the infected sites and high levels of users who have been compromised. As you can see from the below screenshot the top regions are Italy, Spain, and the United States.

Websense security customers are protected from connecting to the malicious websites.

Article Link

[tags]European Web Attack, Websense, Malicious Website, MPACK[/tags]

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.