Sunday, June 8, 2008

Malware distributors move to Dogpile for redirects

First Google, then DoubleClick redirects, now Dogpile is a new favorite for XSS redirects by malware authors.

Example:


Dogpile123881238


You can see this type of redirect in action by clicking on the following (it just redirects to Sunbelt, don’t worry):


http://www.dogpile.com/clickserver/_iceUrlFlag=1?rawURL=http://sunbeltsoftware.com&0=


XSS vulnerabilities are irritating, aren’t they?


Alex Eckelberry

No comments:

Post a Comment