TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

More Fake jQuery sites

31 pointsby daveddover 12 years ago

6 comments

Hopkaover 12 years ago
I wonder how the links to these fake sites are injected into the infected sites in the first place. Is it through some other vulnerability and the fake sites are mainly needed to make the hack less obvious for a human auditing the code?<p>Or do they hope that somebody finds the fake jQuery site on Google or through a typo in the URL and then includes their fake JavaScript file instead? That seems unlikely to me.
pav3lover 12 years ago
&#62;We keep seeing fake jQuery sites popping up and being used to distribute malware.<p>Anyone has more info? What kind of malware? I'm assuming client side? Any 0-days? Unsurprisingly, both websites are blocked at where I am.
评论 #4819218 未加载
VMGover 12 years ago
Previously, jquery.it: <a href="http://news.ycombinator.com/item?id=2734138" rel="nofollow">http://news.ycombinator.com/item?id=2734138</a>
leeoniyaover 12 years ago
a funny one: <a href="http://jqueery.com" rel="nofollow">http://jqueery.com</a> - click around :D
评论 #4819952 未加载
Zirroover 12 years ago
"window.top.location.href = "httx://www.jqueryc.com"<p>Is the "httx" a mistake by the malware-authors or Sucuri Malware Labs? I find the second option more likely.
评论 #4819291 未加载
Eduardover 12 years ago
As used in this article, what does TDS mean?
评论 #4819965 未加载