Hacked routers to inject ads and pornography into websites

Image
ANI Washington
Last Updated : Mar 26 2015 | 4:42 PM IST

In a report published by Ara Labs it has been revealed that a new strain of malware is using routers to inject ads and pornography into websites, and once a router is compromised, the malware will load third-party content onto almost any website visited by the user.

The attack alternates between loading ads and directly loading content from pornographic websites. In both cases, it's functioning as a basic adware attack, redirecting targets as a pay of generating paid traffic for a client.

According to the Verge, the attack works by targeting the DNS system. Since DNS information is typically communicated through the router, the attackers used the hacked routers to reroute requests to their own bogus IP addresses. When the target tried to connect to Google Analytics, the hacked router sent the request to the attackers' server, which answered the request by injecting its own content onto the pages in question. Google Analytics is so widely used that the attack was able to inject ads into almost any site on the web.

Routers are less powerful and harder to patch than computers, so they are much more vulnerable. This had made them a common target for hackers, who use them to launch denial of service attacks or spoof banking sites to steal login credentials.

The compromise is specific to the router and it won't be detected by traditional antivirus tools, which may lead many victims to assume the ads are legitimate.

*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

First Published: Mar 26 2015 | 4:30 PM IST

Next Story