Drive-by pharming attack hits home in the External News forum at Todd and Tyler Unauthorized Forums - Whenever you type an address into an Internet browser, that address is instantly resolved into the site's numerical Internet ...

Members Panel
Go Back   Todd and Tyler Unauthorized Forums > Other Crap > External News

Reply
Old 01-23-2008   #1
ob1
Sith Chef
Dave says I'm special!
Over 1000 posts!
 
ob1's Avatar
 
Listens: Z92 - Mornings
Join Date: May 2005
Location: CBIA
Age: 38
Posts: 5,813
Drive-by pharming attack hits home

Whenever you type an address into an Internet browser, that address is instantly resolved into the site's numerical Internet address by a DNS server located somewhere in the world. On Tuesday, Symantec announced that online criminals have started to remotely redirect your home network router's DNS server so that whenever you type in a financial institution or other trusted site, your browser will instead be redirected to a bogus or phishing Web site.

The practice, called pharming, usually attacks the DNS servers directly, but this latest attack brings it all home (if you are using broadband connectivity). Fortunately, the routers and institutions affected by this current attack are limited to one country, Mexico, but Symantec warns that word of this real-world attack could bring similar attacks elsewhere.

Last year, researchers at Symantec and the University of Indiana reported that remotely changing a home router's DNS server was theoretically possible. The theoretical attack used Javascript on a specially crafted Web page, and affected only wireless routers. The attack in use today uses e-mail, and it can affect non-wireless routers as well.

According to a blog by Zulfikar Ramzan, a researcher at Symantec, "the attackers embedded the malicious code inside an e-mail that claimed it had an e-card waiting for you at the Web site gusanito.com.

Unfortunately the e-mail also contained an HTML IMG tag that resulted in an HTTP GET request being made to a router (the make of which is a popular router model in Mexico). The GET request modified the router's DNS settings so that the URL for a popular Mexico-based banking site (as well as other related domains) would be mapped to an attacker's Web site."

The best way to prevent becoming a victim is to change your network router's default password. Default router passwords are not a secret and are available on the Internet, so if you haven't ever changed your network router's password, now is a good time. Syamntec's Ramzan further recommends performing a hard reset of your router first, just in case you are already compromised.

If choosing a router password intimidates you, Ramzan also points out that if you ever do forget your new password, you can always do a hard reset on the box in the future (something a remote hacker can't do) and choose a new password later.

---

Original Article: Drive-by pharming attack hits home | Defense in Depth - computer security, hacking, crime, viruses - CNET News.com
News Source: Technology news - CNET News.com
ob1 is offline   Reply With Quote
Old 01-23-2008   #2
Straight Pimpin
Really don't mess with this person!
 
Dave's Avatar
 
Listens: Z92 - Mornings
Join Date: Jun 2004
Age: 38
Posts: 4,992
Send a message via MSN to Dave
Re: Drive-by pharming attack hits home

Are you sure this isn't an urban legend? They have routers and banks in Mexico?
__________________
"Perverting the court of justice"
--------------------------------------------
Todd and Tyler Streaming
Questions, comments, concerns?
Contact the Empire
Dave is offline   Reply With Quote
Old 01-23-2008   #3
Funny Bone Doorman
 
iwccgrad's Avatar
 
Listens: Z92 - Mornings
Join Date: Jan 2007
Location: Omaha
Age: 28
Posts: 400
Re: Drive-by pharming attack hits home

That is good advice even without the threat of an attack. If you are going to take the time to lock down your router put in your own password. I realize there are a lot of lazy people or people who aren't sure what they are really doing, but come on.
__________________
"I popped one of my balls.....no one of my look balls" - Craig Peters
iwccgrad is offline   Reply With Quote
Old 01-23-2008   #4
ob1
Sith Chef
Dave says I'm special!
Over 1000 posts!
 
ob1's Avatar
 
Listens: Z92 - Mornings
Join Date: May 2005
Location: CBIA
Age: 38
Posts: 5,813
Re: Drive-by pharming attack hits home

ob1 is offline   Reply With Quote
Old 01-30-2008   #5
i ride the short bus because i'm
Dave says I'm special!
Over 1000 posts!
 
lilyvon schtupp's Avatar
 
Listens: I don't listen
Join Date: Feb 2006
Location: counciltucky
Posts: 1,280
Re: Drive-by pharming attack hits home

i remember, back in the day
when there was dial-up
having some hack send me to a foreign country
__________________
A man melts the sands so he can see the world outside.--U2, Lemon
lilyvon schtupp is offline   Reply With Quote
Old 01-30-2008   #6
Special Members
Dave says I'm special!
Over 1000 posts!
 
Daphne's Avatar
 
Listens: Z92 - Mornings
Join Date: Jul 2005
Age: 86
Posts: 1,077
Re: Drive-by pharming attack hits home

Quote:
Originally Posted by lilyvon schtupp View Post
i remember, back in the day
when there was dial-up
having some hack send me to a foreign country
Daphne is offline   Reply With Quote
Old 01-30-2008   #7
i ride the short bus because i'm
Dave says I'm special!
Over 1000 posts!
 
lilyvon schtupp's Avatar
 
Listens: I don't listen
Join Date: Feb 2006
Location: counciltucky
Posts: 1,280
Re: Drive-by pharming attack hits home

how'd you find my picture?
__________________
A man melts the sands so he can see the world outside.--U2, Lemon
lilyvon schtupp is offline   Reply With Quote
Old 01-30-2008   #8
Drugs Are Better Than Pugs - Just Say No
Dave says I'm special!
Over 1000 posts!
 
mike's Avatar
 
Listens: Z92 - Mornings
Join Date: May 2005
Age: 36
Posts: 12,695
Re: Drive-by pharming attack hits home

Nah, Lily you are much more attractive.
__________________
"Black Tony isn't salty, he's creamy"- Travis Justice
mike is offline   Reply With Quote
Old 01-30-2008   #9
Always riding the ragged edge of disaster.
Dave says I'm special!
Over 1000 posts!
 
Thender's Avatar
 
Listens: Z92 - Mornings
Join Date: May 2005
Age: 38
Posts: 18,144
Re: Drive-by pharming attack hits home

Oh, Lilly, Lilly, Lilly, Lilly.....
__________________
Two in the mouth is worth one in the bush.

4th place, 2008 TNTU.net college fantasy football... Bud came in 6th...
Thender is offline   Reply With Quote
Sponsored Links
Reply

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

All times are GMT -5. The time now is 10:17 AM.
Powered by vBulletin® Version 3.7.0
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.2.0 RC5
Template-Modifications by TMS
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios
Rules & Privacy


Car Insurance | Loans | Buy Anything On eBay | Free Ringtones | Free digital photo printing

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37