PDA

View Full Version : iOS Developer Site At Core of Facebook, Apple Watering Hole Attack



wraggster
February 20th, 2013, 22:21
The missing link connecting the attacks against Apple, Facebook and possibly Twitter is a popular iOS mobile developers' forum called iphonedevsdk (http://eromang.zataz.com/2013/02/20/facebook-apple-twitter-watering-hole-attack-additional-informations/) which was discovered hosting malware in an apparent watering hole attack (https://threatpost.com/en_us/blogs/ios-developer-site-core-facebook-apple-watering-hole-attack-022013) that has likely snared victims at hundreds of organizations beyond the big three. It's not clear whether the site remains infected, but researcher Eric Romang dug into the situation and determined that the site was hosting malicious JavaScript that was redirecting visitors to another site, min.liveanalytics. That site had been hosting malware as of Jan. 15.

http://apple.slashdot.org/story/13/02/20/1932241/ios-developer-site-at-core-of-facebook-apple-watering-hole-attack