More I.T. News
  August 14, 2008
 
 
 
 
 
 
F-Secure:黑客藉 MSNBC 及 CNN 突發新聞電郵發放毒程式
芬蘭網絡保安機構 F-Secure 發現黑客正利用 MSNBC(微軟全國有線廣播電視公司)及 CNN(國際新聞網絡)的即時新聞電郵散播惡意編惡程式(malware)。

受影響的用戶會收到一封題為「CNN Alerts: My Custom Alert」或 「CNN Alerts: Breaking news」的突發新聞消息,用戶不虞有詐點擊文章的連結網址便會被帶到一個由黑客控制的網站,之後,系統會彈出一個要求收件人安裝 Adobe Flash Player 多媒體播放軟件的視窗,而事實上是將「Trojan Downloader.Win32.Exchanger.mn」 惡意程式植入受害人的電腦內,繼而進行襲擊,或盜取資料。

F-Secure 指,由於過去多日黑客過於明目張膽,令用戶對假冒的 CNN 連結網址作出提防,他們遂改頭換面,發出假冒 MSNBC 即時財經新聞的有毒電郵,例如:

假冒電郵樣本:
* From: MSNBC Breaking News
Subject: msnbc.com - BREAKING NEWS: Elvis Presley daughter gives birth to twins
Precedence: list

msnbc.com: BREAKING NEWS: Elvis Presley daughter gives birth to twins
Find out more at http://breakingnews.msnbc.com
====================================================
See the top news of the day at MSNBC.com, and the latest from Today Show and NBC Nightly News.
====================================================
This e-mail is never sent unsolicited. You have received this MSNBC Breaking News Newsletter
newsletter because you subscribed to it or, someone forwarded it to you.
To remove yourself from the list (or to add yourself to the list if this
message was forwarded to you) simply go to
http://www.msnbc.msn.com/id/11611202, select unsubscribe, enter the
email address receiving this message, and click the Go button.
Microsoft Corporation - One Microsoft Way - Redmond, WA 98052
MSN PRIVACY STATEMENT
http://privacy.msn.com (http://privacy.msn.com/)

用戶點擊附在電郵上的網址後,便會被帶到以下的假網站,並在右下角彈出要求下載播放程式的視窗。F-Secure 提醒有訂閱免費新聞的用戶應特別小心,切勿隨便下載程式,除非是直接登入媒體的網站,否則一般的新聞連結較小播放視頻資料。


 
PressRelease 新聞稿
 
www.hkitnews.com