US-CERT warns of compromised web sites

By
Follow google news

US-CERT said Thursday that it was tracking malicious activity involving compromised web sites running Microsoft's Internet Information Services (IIS) 5.0 and possibly affecting users who visit the sites.

The compromised web sites append JavaScript to the bottom of web pages. When executed, the JavaScript tries to access a file hosted on another server, according to US-CERT.


"This file may contain malicious code that can affect the end user's system," the agency said in its advisory.

US-CERT said it is investigating the source of the attacks and the impact of the code that's downloaded to the users' systems.

The agency advised web server administrators running IIS 5.0 to ensure no unusual JavaScript is attached to the bottom of web pages from their servers.

Microsoft said it also is investigating the attacks. Web servers running Windows 2000 Server and IIS that don't have a patch that Microsoft issued in April may be compromised and try to infect the systems of Internet Explorer users, the company said.

The company advised users to make sure they've installed all critical Windows updates and to increase the security of their browser settings.

The web server attacks are "another example of why end users must exercise caution when JavaScrip is enabled in their web browser," US-CERT said.

www.us-cert.gov

www.microsoft.com

 

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

National photo licence recognition system set to go live in 2025

National photo licence recognition system set to go live in 2025

Australia's new cyber affairs ambassador sourced from ASD

Australia's new cyber affairs ambassador sourced from ASD

Hackers using F5 devices to target US gov networks

Hackers using F5 devices to target US gov networks

Microsoft breaks Windows 11 Recovery Environment in October update

Microsoft breaks Windows 11 Recovery Environment in October update

Log In

  |  Forgot your password?