
…SMEs be suspicious
By Tom Espiner
Published: 25 January 2008 09:08 GMT
Security company Symantec has warned of an attack involving the subversion of routers.
Security A to Z
From antivirus to zero-day, click here for silicon.com's alphabetical guide to security. ![]()
The company said this was the first time it had seen such an attack "in the wild", although the concept had been discussed a year ago by Symantec researchers, according to a Symantec blog post.
In the attack, which targeted users of an undisclosed Mexican bank, the intended victims received a spam email claiming they had received an e-card, directing them to gusanto.com, a Spanish language e-card site. However, the email also had embedded HTML image tags, which contained a get-request to the router to change its DNS settings, according to Symantec's UK manager of quality assurance, Thomas Parsons.
The HTTP get-request redirects traffic flowing over the router to a specific IP address when the user attempts to access six domain names that are banking-related.
The attack is made possible by a cross-site scripting vulnerability in 2Wire routers that was reported in August last year, according to Symantec. Parsons said this was "a simple hack", and advised SMEs to change default security settings on routers, and educate users about clicking on suspicious links.
Original article: Symantec warns of router compromise from ZDNet UK
Antivirus Systems -Enterprise Level Backup Systems This working for a large company with a decent size infrastructure and working on enterprise scale ...
Looking for a challenging, high-energy Quality Assurance role in a forward thinking environment? Huxley currently requires a Grade B or higher ...
Nortel/Cisco and Juniper Router Support. Vendors: Alcatel : ATM and Frame Relay Platforms Nortel : Switches and CPE Routers Juniper : Core and Edge ...
CIO Agenda 2008
The exclusive silicon.com CIO Agenda 2008 survey looks at the CIO's tech shopping list for the year, examines whether IT budgets are rising or falling and reveals what the pain points are for tech chiefs this year. Find out more in our latest special report.
Stories from the web...
Copyright ©1995-2008 CNET Networks, Inc. All rights reserved. Top of page
Fran Howarth Is SOA testing tough enough? Quocirca's Straight Talking: Firms are falling down on security...
silicon.com Dear silicon.com... XP lives, the femtocell 'truth', BlackBerry bashing… Reader Comments of the Week