Hacked advertising platform sent users to the Nuclear exploit kit

The company affected, Mad Ads Media, was quick to investigate, Trend Micro said

A suspected malicious advertising attack turned out to be a much deeper compromise of an online advertising company, according to Trend Micro.

The security company found that advertisements served by Mad Ads Media, based in Mount Laurel, New Jersey, redirected to websites hosting an exploit kit, which probed users' computers for software flaws in order to deliver malware. The number of people affected peaked at 12,500 on May 2, Trend said.

At first, the incident appeared to be another example of malvertising, wrote Joseph Chen, a fraud researcher with Trend. Advertising networks have occasionally seen malicious ads uploaded to their networks that redirect people to other malicious websites.

A closer examination found that a Mad Ads Media server used to deliver advertisements had been modified, specifically a JavaScript library which assigns advertisements to a particular site. Instead, the library was coded to redirect users to servers hosting the Nuclear exploit kit, Chen wrote.

The websites that were targeted for redirection had manga and anime content. Mad Ads Media serves more than 10,000 websites worldwide and delivers eight billion ad impressions, according to its website.

Mad Ads Media officials could not be immediately reached for comment, but Chen wrote the company "was quick to investigate and take action."

If a user is redirected to the Nuclear exploit kit, it attempts to see if their browser is running an outdated version of Adobe Systems' Flash multimedia program. If that attack was successful, the infamous Carberp malware was installed, which is designed to steal authentication credentials.

Although ad companies try to filter malicious ones out, hackers will often swap out ads that have passed a security check for ones that haven't in the hope that the company won't catch it. Such attacks can be very productive, as a malicious ad displayed on several high-profile sites can mean a greater pool of potential victims.

Send news tips and comments to jeremy_kirk@idg.com. Follow me on Twitter: @jeremy_kirk

Join the CMO newsletter!

Error: Please check your email address.
Show Comments

Supporting Association

Blog Posts

Behaviour change, by design

​We’re living in an age of unprecedented change. We experience with Oculus Rift, invest with Acorns, consume video through Hyper, tune into Pandora and navigate with Waze.

Glen Jeffreys

Head of UX, Deepend Group

Chat bots: How to use them commercially right now

I’m sure that many of you out there have heard a lot about chat bots (aka messaging bots) recently, and the fact that they are here to stay is pretty evident by now.

Deniz Nalbantoglu

Managing director, Webling-Interactive

Top tips to uncovering consumer insights for business innovation

An in-depth understanding of consumers sits at the heart of what we all need to do, but we know it’s not always easy to uncover insights that will unlock a true innovation opportunity.

Matt Whale

Managing director, How To Impact

Great read, thanks for posting. MR should be seen as the holy grail for marketers and brands, as it offers an unprecedented capability to...

Barney

Interview: The business case for mixed reality in marketing

Read more

what a load of shit, and what a major stuff up... the new brand device is sterile, boring and just plain bad. Would be better suited to a...

James Yoi

Tennis Australia unwraps new brand identity for Australian Open

Read more

Cool stuff. https://blogs.adobe.com/digita...

Mary

Design thinking: Leading with experience

Read more

Conversation commerce is a double edged sword. Do it right and it can create customer delight. Do it wrong and it can lose customers.

Jinal Shah

Why conversational commerce is going to reshape customer engagement

Read more

I liked how Kmart decided on what to source- by placing a notional or real camera in the place of use, seeing what is touched the most in...

Jinal Shah

Kmart CEO details priorities to turn Target around

Read more

Latest Podcast

More podcasts

Sign in