Slashdot Mirror


Hacked MIT Server Used To Stage Attacks

wiredmikey writes "A compromised server at the Massachusetts Institute of Technology (MIT) has been identified as being used as a vulnerability scanner and attack tool, probing the Web for unprotected domains and injecting code. According to researchers, the ongoing attacks appear to be related to the Blackhole Exploit Pack, a popular crime kit used by criminals online. The attacks started in June, and an estimated 100,000 domains could have been compromised. Judging by initial data, one MIT server (CSH-2.MIT.EDU) hosts a malicious script actively used by cyber-crooks to scan the web for vulnerable websites. These types of attacks are how BlackHat SEO scams are propagated, which target search results in order to spread rogue anti-virus or other malware. In addition, compromised hosts are also leveraged for other schemes, such as spam or botnet control."

2 of 75 comments (clear)

  1. Luckily it wasn't the important server there by hessian · · Score: 4, Interesting
  2. Re:Not very smart by DigiShaman · · Score: 1, Interesting

    Please. Money can buy just about anything. Many of these criminals are either unemployed experienced programmers with a CS background or highly educated skilled people looking for a name for themselves banking a six figure income. Some do it simply because it pays more than the legal private sector. Odds are, no university no matter how well educated the staff and students are can fend off being a target. Not possible.

    --
    Life is not for the lazy.