HackDig : Dig high-quality web security articles for hacker

WordPress Malware Causes Psuedo-Darkleech Infection

Source: The National Archives (UK) Darkleech is a nasty malware infection that infects web servers at the root level. It use malicious Apache modules to add hidden iFrames to certain responses. It’s difficult to detect because the malware is only active when both server and site admins are not logged in, and the iFrame is only injected once a day (or o
Publish At:2015-03-26 13:15 | Read:2317 | Comments:0 | Tags:Joomla! Security Webserver Infections Website Malware Websit

Darkleech Update – November 2014

Just wanted to document some latest changes in Darkleech behavior that may help you detect it. I’d like to thank internet security enthusiasts who share their findings with me. Without you, I could have easily missed these new (?) details. Quick recap Darkleech is a root level server infection that installs malicious Apache modules. The modules inject
Publish At:2014-11-27 18:15 | Read:2897 | Comments:0 | Tags:Short Attack Reviews Website exploits Apache Darkleech Emula

Working With the Darkleech Bitly Data

Data Driven Security took the time to analyze the raw data that I published in my recent post on Sucuri blog about how I used Bitly data to understand the scale of the Darkleech infection. In their article, they have a few questions about data formats, meaning of certain fields and some inconsistencies, so I’ll try to answer their questions here and ex
Publish At:2014-08-15 20:40 | Read:3393 | Comments:0 | Tags:General Bitly Darkleech data statistics

Announce

Share high-quality web security related articles with you:)

Tools

Tag Cloud