PDA

View Full Version : Hackers re-poison Google search results


KevinG
12-01-2007, 04:41 AM
Hackers have responded to a purge of malicious links within search results by Google with a fresh effort to subvert the search giant's page rank system. As previously reported, miscreants recently set out to poison search results with links to malware infested sites. The tactic involved gaming search engines' ranking systems by automatically posting links to malign sites in blog and forum posts. Hackers automated this link spamming process using networks of compromised zombie PCs. Google cleaned up its search index earlier this week, but the original hackers (along with a new group) have responded with a fresh assault, reports anti-spyware firm Sunbelt Software. Once again, plugging innocuous terms into Google, such as "funny drunk quote", can lead to search results where at least some point to malware. The tactic goes hand in hand with establishing thousands of pages on compromised servers that mention targeted terms to obtain a relatively high search engine ranking score.Two gangs are involved in the latest wave of attacks. Both are trying to direct surfers onto malicious webpages hosted in China. One group is using the tactic to push Spy-shredder, a rogue anti-spyware program. Sunbelt reckons this group is made up of the same group of individuals that launched the original attack. A second group is using the tactic to divert traffic to targeted sites, thereby generating illicit income through pay-per-click affiliate programs.

http://www.theregister.co.uk/2007/11/30/google_poisoning_update/

Google has removed the sites responsible for the recent massive Google poisoning attack.

However, we’re seeing indications that another attack may be on the way. We have seen another spate of websites freshly registered, using the similar .cn domains. There seem to be two different groups here.

As an example, a simple search of “funny drunk quote site:cn” pulls up the following results:

http://sunbeltblog.blogspot.com/2007/11/heads-up-more-google-poisoning-on-way.html

Here's my easy solution:

Don't click on .cn domains. If you're dumb enough to click on any domain (whether it's .cn or not) that looks like zero thought went into the name, like there are no real words in it, then you deserve what you get.

This goes back to a previous post I made about G results turning up malicious sites.

We do not need to fight natural evolution of survival of the fittest.

I say again, if you are stupid enough to click on any domain that looks like the ones in this screen shot, then it doesn't bother me if your computer blows up dumbass.

http://www.sunbelt-software.com/ihs/alex/suspiciouslinks12388.PNG

EmporerEJ
12-01-2007, 11:41 AM
How much you wanna bet this is government sanctioned?