Hacked advertising platform sent users to the Nuclear exploit kit

The company affected, Mad Ads Media, was quick to investigate, Trend Micro said

A suspected malicious advertising attack turned out to be a much deeper compromise of an online advertising company, according to Trend Micro.

The security company found that advertisements served by Mad Ads Media, based in Mount Laurel, New Jersey, redirected to websites hosting an exploit kit, which probed users' computers for software flaws in order to deliver malware. The number of people affected peaked at 12,500 on May 2, Trend said.

At first, the incident appeared to be another example of malvertising, wrote Joseph Chen, a fraud researcher with Trend. Advertising networks have occasionally seen malicious ads uploaded to their networks that redirect people to other malicious websites.

A closer examination found that a Mad Ads Media server used to deliver advertisements had been modified, specifically a JavaScript library which assigns advertisements to a particular site. Instead, the library was coded to redirect users to servers hosting the Nuclear exploit kit, Chen wrote.

The websites that were targeted for redirection had manga and anime content. Mad Ads Media serves more than 10,000 websites worldwide and delivers eight billion ad impressions, according to its website.

Mad Ads Media officials could not be immediately reached for comment, but Chen wrote the company "was quick to investigate and take action."

If a user is redirected to the Nuclear exploit kit, it attempts to see if their browser is running an outdated version of Adobe Systems' Flash multimedia program. If that attack was successful, the infamous Carberp malware was installed, which is designed to steal authentication credentials.

Although ad companies try to filter malicious ones out, hackers will often swap out ads that have passed a security check for ones that haven't in the hope that the company won't catch it. Such attacks can be very productive, as a malicious ad displayed on several high-profile sites can mean a greater pool of potential victims.

Send news tips and comments to jeremy_kirk@idg.com. Follow me on Twitter: @jeremy_kirk

Join the CMO newsletter!

Error: Please check your email address.
Show Comments

Supporting Association

Blog Posts

Is AI on course to take over human creativity?

Computers and artificial intelligence have come along at an exponential rate over the past few decades, from being regarded as oversized adding machines to the point where they have played integral roles in some legitimately creative endeavours.

Jason Dooris

CEO and founder, Atomic 212

Are you leading technology changes or is technology leading you?

In a recent conversation with a chief technology officer, he asserted all digital technology changes in his organisation were being led by IT and not by marketing. It made me wonder: How long a marketing function like this could survive?

Jean-Luc Ambrosi

Author, marketer

Disruption Down Under – What’s Amazon’s real competitive advantage?

Savvy shoppers wait in anticipation, while Australian retailers are gearing up for the onslaught. Amazon’s arrival is imminent.

Thanks for picking this up. We are always happy to add richness to our products and in turn the lives of our followers and fans.

Fitbit Middle East

​Fitbit announces new virtual race platform to enhance customer experience

Read more

Thanks for a very interesting article. B2B marketing seems tricky. I think that marketing plays a vital part - it can build the brand and...

Aaren

From tactical overhead to strategic growth driver: B2B marketing in the digital age

Read more

meanwhile loads of people with digital skills are not finding work or getting an opportunity to be hired?? Double standards perhaps.

Graduate dying on centrelink

Report reveals Australia faces digital skills shortage

Read more

These laws are in one way or other giving businesses to VPN service providers & other cyber utilities. Just read PureVPN claiming 37%...

Paige Hudson

Getting prepared for mandatory data breach reporting

Read more

Great Post.Thanks for sharing such an informative article.I have worked with Ally Digital Media and it has a very good service which is b...

Utkarsh Kansara

Predictions: 17 digital marketing trends for 2017

Read more

Latest Podcast

More podcasts

Sign in