terça-feira, 20 de janeiro de 2015

"Google AdSense" Used for Malvertising Campaign

Researchers have Discovered that at least 2 AdWords Campaigns have been Hijacked by Cybercriminals Who Modified Legitimate Ads to Take Visitors to the Scammy Online Locations. The Malvertising Campaign is Believed to have Started since at least the 2nd Half of December 2014, When the Scammy Domains Hosting the Fake Pages were Registered but, Became More Widespread since Friday, January 9, 2015. Among the Spoofed Legitimate Websites are Forbes, Good Housekeeping and Fit Mom Daily, the Pages being Hosted in Different Sub-Folders on lemode-mgz[.]com and consumernews247[.]com. Users would be Redirected to the Fake Pages upon Clicking on a Link or Even When Loading a New Page. Denis Sinegubko of Sucuri Says that, the Fake Articles Promoted Skin Care and Anti-Aging Merchandise, IQ and Brain Enhancers, as well as, Weight-Loss Products. Since these were Presented from a Seemingly Reputable Source, Users would Believe in the Legitimacy of the Products and thus Engage in Purchasing them. To Make Matters Worse, the Fraudulent News Pieces Looked as if they were Endorsed by Celebrities and also included Fake Comments from Individuals Who Allegedly Witnessed the Benefits of the Promoted Products. The Cybercriminal Operation Lasted for about a Month because Determining a Bad Ad Delivered by a Malvertising Campaign is Not Too Easy.


Ad Networks Function in a Way that, Allows Serving Content on a Website in accordance to Various Visitor Parameters, such as Geographical Location, Type of Device Used for Online Navigation or Browser History, in Order to Deliver Information Relevant to the Visitor. As such, the Same Advertisements are Not Shown to All Visitors of a Website. Furthermore, Ad Networks Rely on Scripts that Load Content from Different Other Partners. Google Solved the Problem but, it Seems that, Webmasters were Faster at Identifying the Malicious Banners. They Used the Ad Review Center Component in Google AdSense Dashboard, which Shows the Ads that are to be Displayed on their Website. The Best Part is that, Ad Review Center Presents the Real Ads, thus Allowing their Verification before they Make it to the Website. The Ad Accounts Causing the pProblem were Found to be from an Anonymous Advertiser and from Blackburn ART. “Both of them seem to be legitimate AdWords account with good looking relevant banners. I guess the scammers somewhow hijacked them — probably stole or guessed their credentials. Most likely those accounts didn’t have active campaigns at the moment. Otherwise their owners must have noticed the significantly increased activity”, Sinegubko Said in a Blog Post (1).




Info Source:

http://blog.sucuri.net/2015/01/adsense-abused-with-malvertising-campaign.html



0 comentários:

Enviar um comentário