The Institute for National Security Studies (Israel) falls prey to Poison Ivy infection

The Institute for National Security Studies (Israel) falls prey to Poison Ivy infection:
The Websense® ThreatSeeker® Network has detected that the Institute for National Security Studies (INSS) website in Israel was injected with malicious code. INSS is described in its website as an independent academic institute that studies key issues relating to Israel's national security and Middle East affairs.

While we can't determine that the infection of this website with exploit code is part of a targeted attack, one could deduce that visitors to this type of site are likely to have an interest in national security or are occupied in this field. The website appears to be injected with malicious code for over a week now. (Websense' ACE provided protection against the type of injected malicious code since early 2009)

One of the interesting facts about this infection is that it uses the same Java exploit vector (CVE-2012-0507) that managed to infect around 600,000 Mac users in a massive scatter attack dubbed Flashback a few weeks ago.

...(read more)

Comments

Popular posts from this blog

Investigating Indicators of Compromise In Your Environment With Latest Version of Redline

Painting a Picture of W32.Flamer

Flame: Bunny, Frog, Munch and BeetleJuice…