Security Labs

Alerts

BOOKMARK THIS ALERT
  digg   |     del.icio.us   |     reddit
  newsvine   |     furl   |     technorati

HuaZhong Normal University Site Compromise and Mass Injection

Date:12.23.2008

Threat Type: Malicious Web Site / Malicious Code

Websense® Security Labs™ ThreatSeeker™ Network has discovered that an HuaZhong Normal University site in China has been compromised and also infected with a mass JavaScript injection. A few days ago, we have alerted that Peking University web site in China has been compromised.

Malicious code has been inserted in different parts of the Academy of Fine Arts Staff page on the site, in the form of iframes. This code delivers malicious payloads and also leads to exploits such as Microsoft AdoDB / XML HTTP (MS06-014) and UUSEE. One infected page is used to hire teachers.

Screenshot of the infected site:

Screenshot of the infected site source and malicious payloads:

Websense Messaging and Websense Web Security customers are protected against this attack.