One fresh malware assault that exploits web-based vulnerabilities is carrying out drive-by download operation masquerading as one electronic cash-transfer to lure victims, published V3.co.uk dated December 3, 2011.
Utilizing the link-shortening facility goo.gl of Google, the attackers manage in concealing the drive-by website's source, as the assault asserts that it's from the EPA (Electronic Payments Association) as well as informs end-users that an attempt at directly making a deposit had turned futile.
Also, following the web-link within the message diverts users onto a site that makes effort for carrying out several exploits through Java and Flash security flaws.
...