MySQL.com hacked

By
Follow google news

Users sucked into Black Hole.

Hackers on Monday compromised MySQL.com, the official website for the popular open-source MySQL database, to distribute malware to visitors, according to security researchers.

MySQL.com hacked

The hack caused those who visited the site on Monday morning to be redirected to a domain that attempted to install malware on their machines via the Black Hole exploit pack.

The site appeared to be cleaned soon after, according to reports.

The Black Hole pack attempted to launch a number of exploits against users' browsers and plug-ins, such as Adobe Flash and Java. If successful, users' machines silently were hit with malware, which was detected early Monday by just over 10 per cent of the most widely used anti-virus programs.

“The visitor doesn't need to click or agree to anything," said Wayne Huang, CEO of web application firm Armorize.

"Simply visiting MySQL.com with a vulnerable browsing platform will result in an infection."

Oracle, which owns MySQL, did not immediately respond Monday.

This is not the first time MySQL.com has been compromised. In March, hackers infected the site via SQL injection and published a list of usernames and passwords online.

This article originally appeared at scmagazineus.com

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Commercial spyware targeted Samsung Galaxy users for months

Commercial spyware targeted Samsung Galaxy users for months

Westpac factors post-quantum cryptography prep into "secure router" rollout

Westpac factors post-quantum cryptography prep into "secure router" rollout

The BoM has finally tamed SSL

The BoM has finally tamed SSL

Researcher trawls cybercrime sites, collects billions of stolen credentials

Researcher trawls cybercrime sites, collects billions of stolen credentials

Log In

  |  Forgot your password?