In news which no doubt will shock loyal users of Microsoft’s IE web browser, a website masquerading as the official IE7 release site attempts to install a trojan using vulnerabilities in…your web browser.
Funny, that.
Hackers have created a bogus Internet Explorer 7 download site that attempts to load Trojan code onto the PCs of visiting surfers.
Traffic to the malicious website is being driven by a spoofed email message, claiming to be from support@microsoft.com, offering a link to download Release Candidate 1 (RC1) of Microsoft Internet Explorer 7.
Prospective marks visit a spoof website that looks similar to Microsoft’s legitimate download page for IE 7 RC1. But instead of all that Microsoft goodness, surfers visit a site loaded with Trojan downloader codes which attempt to exploit browser vulnerabilities to download malware onto their machines.
Hat Tip: [b]FatFunkey[/b]
Source: The Register

Articles RSS