05 Feb 2007
American Football fans looking for information on the Super Bowl in Miami may have found themselves with a nasty malware infection following a successful web attack on Friday.
Dolphin Stadium, the venue for the game, had its website compromised and injected with exploit code, a stadium spokesman told vnunet.com.
The attack was detected and removed within a few hours, and the site currently poses no danger to users.
Initial reports of the attack surfaced late on Friday morning, when security firm Websense notified stadium management that the front page of the site contained a malicious piece of JavaScript.
The code attempted to exploit a pair of vulnerabilities that can allow for remote code execution.
The first, discovered in April 2006, affects Windows Data Access Components, and the second, disclosed in January 2007, affects Microsoft's Vector Markup Language component.
Both vulnerabilities have been patched by Microsoft, but users without the latest patches were susceptible to a Trojan application.
The malware installed a key-logger to steal information and a backdoor to allow an attacker to remotely control a system.
Dolphin Stadium was this year's venue for the National Football League's Super Bowl, the most watched sporting event of the year in the US.
The stadium website had been experiencing heavy traffic from the tens of thousands of people attending the game, as well as NFL fans linked to the site through various official Super Bowl websites.
The Indianapolis Colts won the NFL title with a 29-17 victory over the Chicago Bears.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Java Developer - Belfast - Banking Skills: Core Java...
I am recruiting for a Shared Accounting Service Manager...
QA Tester/Automation Tester - C# .NET Agile, Epsom, Surrey...
3RD LINE EXCHANGE 2010 / 2003, QUEST, LONDON, GLOBAL...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?