Some of the world's biggest companies have major website security issues

Cybercriminals have taken over more than 240 website subdomains belonging to some of the world's biggest brands and organizations in an...

Cybercriminals have taken over more than 240 website subdomains belonging to some of the world's biggest brands and organizations in an effort to redirect users to malware, adult content, online gambling and other unexpected content.

As reported by The Register, the organizations who had their subdomains hijacked include Chevron, the Red Cross, UNESCO, 3M, Arm, Warner Brothers, Honeywell, Toshiba, Xerox, NHS, Volvo, Siemens and others.

The problem is not that the websites of these businesses and organizations were hijacked but that their DNS entries have been, due to the way they were hosted in Microsoft's Azure cloud.

This has been an ongoing problem for Azure-hosted sites and back in March of this year, Microsoft accidentally allowed hundreds of its own subdomains to fall into the hands of spammers who used their reputation to try and rank higher in search results.

Hijacked subdomains

The list of hijacked subdomains shared with The Register was created by US security researcher Zach Edwards who reported the URLs to Microsoft as well as the affected organizations at the end of June.

According to Edwards, a large number of the subdomains on his list appear to have been taken over by a single group that has been operating for years. He provided further insight on his discovery to the news outlet, saying:

"They are used by an international criminal group who does lots of things with them. Some pages redirect to malware, some redirect to porn or casinos or other potential clients that pay them for inbound links, some direct to malicious chrome extensions, or cracked software. It's clearly automated: they have hit tons of organizations, and uploaded tons of malware. I've warned a bunch of organizations that their biggest fear should be this legacy group partnering with some other group that is more destructive.”

The group often tries to hide their presence after hijacking a subdomain by making the root URL show a 404 error or even a “coming soon message”. Edwards says that around 20 percent of the subdomains on his list have been shut down and Microsoft as well as the affected organizations are likely hard at work trying to shut down the rest.

Via The Register



from TechRadar - All the latest technology news https://ift.tt/3gAH32z
via IFTTT

COMMENTS

BLOGGER
Name

Apps,3858,Business,151,Camera,1155,Earn $$$,3,Gadgets,1741,Games,926,GTA,1,Innovations,3,Mobile,1697,Paid Promotions,5,Promotions,5,Sports,1,Technology,8106,Trailers,796,Travel,37,Trending,4,Trendly News,25335,TrendlyNews,118,Video,5,XIAOMI,13,YouTube - 9to5Google,117,
ltr
item
Trendly News | #ListenNow #Everyday #100ShortNews #TopTrendings #PopularNews #Reviews #TrendlyNews: Some of the world's biggest companies have major website security issues
Some of the world's biggest companies have major website security issues
Trendly News | #ListenNow #Everyday #100ShortNews #TopTrendings #PopularNews #Reviews #TrendlyNews
http://www.trendlynews.in/2020/07/some-of-worlds-biggest-companies-have.html
http://www.trendlynews.in/
http://www.trendlynews.in/
http://www.trendlynews.in/2020/07/some-of-worlds-biggest-companies-have.html
true
3372890392287038985
UTF-8
Loaded All Posts Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH ALL POSTS Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago Followers Follow THIS PREMIUM CONTENT IS LOCKED STEP 1: Share. STEP 2: Click the link you shared to unlock Copy All Code Select All Code All codes were copied to your clipboard Can not copy the codes / texts, please press [CTRL]+[C] (or CMD+C with Mac) to copy