According to researchers at security firm Fox-IT, between August 19 and 22, visitors to the websites Java.com, Deviantart.com, TMZ.com, Photobucket.com, IBTimes.com, eBay.ie, Kapaza.be and TVgids.nl were exposed to malwarevia AppNexus ads, which were infected with the Angler ExploitKit.
Users with outdated versions of Java, Adobe Flash Player, or Microsoft Silverlightwere targeted by the aforementioned exploit kit.
According to the researchers, visitors did not need to click on the malicious ads to become infected. This happened silently in the background as the ads loaded from the user's browser.
Fox-IT found that Angler infected vulnerable systems with the Rerdom Trojan, a malware designed to download files from a specially crafted online location in order to compromise victims' computers.
For more information, please visit the FoxIt blog: https://blog.fox-it.com/2014/08/27/malvertising-not-all-java-from-java-com-is-legitimate/
