Sunday, April 20, 2008

ISPs' Error Page Ads Let Hackers Hijack Entire Web, Researcher Discloses | Threat Level from Wired.com

ISPs' Error Page Ads Let Hackers Hijack Entire Web, Researcher Discloses | Threat Level from Wired.com:
By Ryan Singel April 19, 2008 | 2:00:00

Seeking to make money from mistyped website names, some of the United States' largest ISPs instead created a massive security hole that allowed hackers to use web addresses owned by eBay, PayPal, Google and Yahoo, and virtually any other large site.

The vulnerability was a dream scenario for phishers and cyber attackers looking for convincing platforms to distribute fake websites or malicious code."

No comments: