MalwareBytes has uncovered a new malicious campaign targeting Match.com, which had already been compromised by a similar campaign in the past.
Are you a single Englishman looking for love and passion? Watch out because another threat is circling the dating communities, this time specifically Match.com and its 5.5 million English users.
Match is a popular dating site for singles, with 27.3 million visitors worldwide each month, according to SimilarWeb. The attackers carried out the malicious campaign to spread the Bedep Trojan. Users of the popular site can be infected simply by visiting the site, as the malicious campaign can infect their system in this simple way and steal their personal information. When a system is infected with the virus, hackers can automatically control it and impersonate the victim as well as send e-mails from their account, according to MalwareBytes.
The hole reported by MalwareBytes researchers consists of the following steps:
- [alert size=”alert-block”]Initial URL: match.com/search/advanced_search.php Malvertising: mathtag.com/notify/js?exch={redacted}&price=0.361 Malvertising: com/adframe/banners/serv.php?uid=215&bid=14&t=image&w=728&h=90 Malicious Redirector: gl/QU2x0w Exploit Kit (Angler): med.chiro582help.com/carry.shtm?{redacted}[/alert]
Malicious campaigns are very profitable for hackers, as MalwareBytes. Once a computer is infected, attackers can use CryptoWall ransomware to extort a lot of money from victims.
This is the latest in a series of attacks on dating sites that have been going on for some time. A few weeks ago, Ashley Madison suffered a major data breach, and later, PlentyOfFish visitors were the next target. Around the same time, a large-scale campaign by Russian hackers also targeted dating sites.
