Mass website compromise

Share this article:

What is it?
Code is being introduced to website-hosting companies, like BlueHost, DreamHost and Network Solutions, via a gamut of vulnerabilities. The LAMP stack, Wordpress CMS and basic server configuration errors are equally suspected – PHP being the common component in most attacks.

How does it work?
Under the covers lurks carefully crafted code that intelligently interprets the GET requests and returns different HTML content depending on who or what is visiting. This code is chiefly used for BlackHat SEO, while other times malicious URLs are injected.

How can I prevent it?
Some investigations have taken months to resolve with little help offered by the hosting company. As a result, the average user is more likely to come into contact with malware. Somehow, we must improve the abuse-reporting process and hold all parties involved accountable. This includes the registrars, the hosting companies, the website owners and the bad actors.

Share this article:

Sign up to our newsletters

More in Opinions

Unfair competition: Proactive preemption can save you from litigation

Unfair competition: Proactive preemption can save you ...

With each job change, the risk that the new hire will bring confidential information or trade secrets with him or her to the new company grows.

Hackers only need to get it right once, we need to get it right every time

Hackers only need to get it right once, ...

Hackers only need to find one weak point to steal valuable information. On the flip side, security pros need to account for every possible scenario.

Successful strategies for continuous response

Successful strategies for continuous response

While it isn't realistic for organizations to expect that it will never happen to them, a rapid, professional and continuous response can limit their scope and reputational impact.