A tale of two animated cursor attacks
At the height of the animated cursor attacks last week, there were two different groups using different motives to hit a different set of targets. According to Websense Security Labs, the first set of attacks started in the China region and appear to be the work of groups within the Asia Pacific Region. The attackers have compromised hundreds of machines and placed IFRAME’s back to the main servers that host the exploit code. In most cases the payload and motivation of these attacks is to gather credentials for online games. A few days later, a second set of attacks started up from a group in Eastern Europe known for using malware lures to launch identity theft attacks.
search for : animated cursor attacks, IFRAME, exploit code, malware
