HomeSecurityCredential theft attack via jQuery.com

Credential theft attack via jQuery.com

Credential-Stealing-Attack-Carried-Out-Through-jQuery-com.jpg

Visitors to jQuery.com were targeted by a drive-by download attack on September 18th, resulting in their systems being infected with the RIG exploit kit.

According to security services company RiskIQ, the malicious software leads to the installation of malware, with the aim of intercepting users' usernames and passwords.

The RIG exploit kit was discovered this April and has been used by cybercriminals on popular websites, and is mainly used to download banking Trojans and other types of info-stealers.

jQuery is a JavaScript that has been used to develop many websites with dynamic content, and developers and businesses rely extensively on it: almost 70% of the top 10,000 websites use jQuery, according to the company's statistics.

After detecting a malicious script that added an invisible iframe to jQuery.com, RiskIQ launched an investigation and found that users were being redirected to a domain based in Russia, which infected their systems with RIG.

Investigation by security experts revealed that the library itself was not affected in any way.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS