Wednesday, September 05, 2007

U got pwned!

Check out this video demonstrating how a compromised bank web site maliciously infects a visitor. The Bank of India's web site was "pwned" ("owned" for you non-leet-speakers). If a user were to visit such a compromised web site without having the latest security patches installed on their machine, an attacker would be able to completely take control of their computer, possibly logging and monitoring all activity and using the computer for malicious purposes. Likely the malicious payload would be disguised as a rootkit, effectively masking it from the operating system. Keep your systems patched! (Source: AppScout)

