Italy is suffering from a barrage of remote attacks launched from hundreds of compromised websites, security experts have warned.
Researchers at Symantec reported that attackers have injected 'iframe' tags within the HTML files on compromised sites.
The tags redirect users to a site that runs MPack, a utility that attempts multiple exploits and malware installations.
More than 65,000 users had been redirected to the malicious page since Friday afternoon, and more than 7,000 successful exploits had been carried out.
Symantec researcher Elia Florio warned in a company blog that users should update antivirus software and all system and third-party software that can be vulnerable to attacks.
Florio warned that MPack attempts to exploit multiple vulnerabilities and applications, including flaws in QuickTime and WinZip.
A successful exploit allows attackers to install malicious components such as key-loggers and password stealers.
MPack is a piece of commercial malware that includes support for plug-ins and a year of free technical support.
A May report by found the application selling for between US$700 and US$1,000, with additional exploit modules for US$50 to US$150.
Crippling malware attack strikes in Italy
By
Shaun Nichols
on Jun 19, 2007 3:11PM

Got a news tip for our journalists? Share it with us anonymously here.
Partner Content

Secure, integrated platforms enable MSPs to focus bringing powerful solutions to customers

How NinjaOne Is Supporting The Channel As It Builds An Innovative Global Partner Program
Ingram Micro Ushers in the Age of Ultra

Channel can help lead customers to boosting workplace wellbeing with professional headsets

Build cybersecurity capability with award winning Fortinet training from Ingram Micro
Sponsored Whitepapers

Easing the burden of Microsoft CSP management
-1.jpg&w=100&c=1&s=0)
Stop Fraud Before It Starts: A Must-Read Guide for Safer Customer Communications

The Cybersecurity Playbook for Partners in Asia Pacific and Japan

Pulseway Essential Eight Framework

7 Best Practices For Implementing Human Risk Management