All the latest UK technology news, reviews and analysis

Malware takes aim at defence contractors

by Shaun Nichols

More from this author

01 Jul 2010

Be the first to comment

  • Tweet this
Syantec logo
Symantec is reporting an attack on defense contractors

A sophisticated malware operation targeting defence contractors has been uncovered.

Researchers at Symantec Hosted Services said that the operation involved compromising the site of one firm and then using the hacked site to host a malware attack on another contractor.

The attack began when the first company's site was compromised and embedded with a landing page and obfuscated exploit code. The attackers then sent out a series of emails to employees of a second firm claiming that the company's chief executive had been arrested by US authorities.

When the targeted users clicked on an included link, they were directed to the compromised site of the first company, which then attempted to exploit a recently-disclosed vulnerability in the Windows Help component and infect users with an assortment of malicious software.

Symantec Hosted Services senior malware analyst Martin Lee told V3.co.uk that the sophistication and complexity of the attack was particularly noteworthy.

"This is a very professional attack by someone who really knows what they are doing," Lee said. "We see an awful lot of targeted attacks in which the malicious binary is attached to the email, and we have also seen targeted attacks that include a link to download, but what we have not seen before is hacking another company's web site – a very reputable second contractor – and hosting that binary on their site."

Malware attacks on corporate targets have been the cause of some of the biggest security stories this year. In January, news broke of a massive spyware attack known as 'Operation Aurora' that targeted more than 30 firms.

Reports of the attack and its eventual tracing back to systems in mainland China led companies to re-think their security strategy and created diplomatic tensions between the US and Beijing.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

99%

0%

1%

0%

0%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

Deputy Head of IT / Senior IT Manager

Deputy Head of IT / Senior IT Manager needed for this...

Project Manager

A fantastic opportunity have arisen to work for a global...

SAP PP/MM Consultant - Midlands - 6 Month Contract

SAP PP/MM Consultant - Midlands - 6 Month Contract...

Pre/Post- Sales Support Engineer - Hampshire - £45k

Senior Pre-Sales Consultant - Slough - £70k + 30% bonus...

To send to more than one email address, simply separate each address with a comma.