[funsec] Chinese Internet Security Response Team Website Hosting M
alicious Cont ent
fergdawg at netzero.net
Tue Oct 2 14:34:30 CDT 2007
-----BEGIN PGP SIGNED MESSAGE-----
Yes, this site is STILL hosting malicious content.
PLEASE USE CAUTION.
- - ferg
- -- "Paul Ferguson" <fergdawg at netzero.net> wrote:
Via El Reg.
A recent post by the team at the Chinese Internet Security Response Team to
their English-language site indicates that some of the site visitors are
experiencing an attack from the CISRT.org site as a result of an injected
Injected IFRAME tags are not a new means of using legitimate sites to
launch attacks on unsuspecting users, with a recent notable case being the
Bank of India hack. What is different in this case is that the hack is only
being served to seemingly random site visitors.
Note: I'm wondering if it is still hosting malicious content -- there is a
now to examine in more detail. It is my opinion that a CERT/CSIRT webpage
- - ferg
-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.6.3 (Build 3017)
-----END PGP SIGNATURE-----
"Fergie", a.k.a. Paul Ferguson
Engineering Architecture for the Internet
ferg's tech blog: http://fergdawg.blogspot.com/
More information about the funsec