Support our Sponsors


uClip Clipping Path Service



Main Menu
Home
News
Blog
Links
Search
Resources
Windows Software
Mac Software
Hosted Solutions
Server Software
Mobile Solutions
Login



Syndicate

PHP Configuration Misused for Injecting Malware PDF Print E-mail
Written by Administrator   
Wednesday, 04 January 2012 14:00

According to Sucuri Security a Web-security company, cyber-criminals are exploiting one unique PHP configuration so they may inject malware into online sites using the hosting services of 24/7 active VPS (Virtual Private Servers), which they already compromised.


The development apparently resulted in a large number of websites getting contaminated with malevolent and invisible iFrames that's reason for much worry.

David Dede, confidence researcher at Sucuri stated that the company was waiting to know the servers under the criminals control, while one special server php.ini details (/etc/php/php.ini) contained an added environment namely ;auto_append_file = "0ff." ARTECH-news.com published this on December 24, 2011.

...

Read the rest of: PHP Configuration Misused for Injecting Malware


Read full article...
 
Polls
The Spamproblem is
 
Who's online
We have 26 guests and 1 member online
News Flash
How do you fight spam?

Spam is a growing pain. How are you combating spam?

Submit your favorite spam fighting links to us