Delicious/delimiterau
- Qantas tech exec shifts to Jetstar
- Zurich Australia leads regional thin client push
- Early investors drop Facebook
- Victoria kills HealthSMART IT project
- Woz not great - mUmBRELLA
- Santos' thin client starts big-data plans
- Nokia Lumia 800 revs up at Bridgestone
- Telstra privacy breach was 'one little oops'
- 'Battleground of the future' the focus of new agreement with US
- The rise of the vendor management office
News - Written by Renai LeMay on Wednesday, February 17, 2010 11:49 - 0 Comments
ninemsn was compromised, says Websense
Security technology company Websense this week claimed that one of Australia’s most highly trafficked websites, ninemsn, had been compromised by an outside party and injected with “malicious code”, although the problem area has now been removed from the site.
In a statement on its site, Websense said the code was “hidden deep within” ninemsn’s advertisement engine and was served on request. The security company claimed the code could be identified as part of the Gumblar virus, which first appeared in 2009.
Ninemsn – which operates as a joint venture between PBL Media and Microsoft – is one of the largest sites in Australia, with a claimed audience of over 9.7 million people (as at July 2009) visiting the site each month. That figure, according to the site, represents 69 percent of Australia’s “active internet audience”.
Websense said the injected code led to a site that had also been compromised by Gumblar, and that it was specifically hidden within the banner advertisement script for the Women’s Weekly publication.
“At this time, the malicious code isn’t available or reachable, but this could change at any time,” Websense said. “An interesting implication is that this ad can be dynamically served on multiple web pages within ninemsn. This is unlike a typical injection where web sites are compromised in a single static page; in this case, the infected banner ad can be pulled to various locations within the site, serving its malicious purpose silently.”
Ninemsn has not yet responded to an emailed request for comment on the issue, but Websense said it had contacted Microsoft after discovering the attack. “The ad banner has now been removed from the ninemsn support site,” the security firm said.
The news comes as online infrastructure has come under increasing attack in Australia through various avenues. For example, the loose coalition of individuals known only as “Anonymous” spent part of last week attacking Federal Government web sites as part of a distributed denial of service attack to protest the proposed internet filtering initiative.
Related posts:
- ninemsn launches Silverlight video portal FIXPLay
- ninemsn searches for CTO idol
- ninemsn CEO Pollard resigns
- ninemsn opens up Hotmail.com.au emails
- Legal threat: Cudo warns deals aggregator site
| Tweet | |
![]() |
Enterprise IT, News - May 22, 2012 16:18 - 0 Comments
Govt pushes ahead with cloud-sharing approach
More In Enterprise IT
- The ABC didn’t sack Bitcoin miner
- Victoria dumps HealthSMART e-health project
- HP completes giant new NSW datacentre
- Microsoft beats Salesforce to utility CRM deal
- NSW finalises colossal datacentre consolidation
News, Telecommunications - May 22, 2012 11:15 - 66 Comments
NBN here to stay under Coalition, says analyst
More In Telecommunications
- iiNet ramps up Internode digestion
- China concerned by Huawei NBN ban, says Bob Carr
- Parliament knocks back surveillance terms
- Evidence: Rural Australia is demanding the NBN
- Pristine Telstra network photos: We sourced our own
Gadgets, News - May 21, 2012 12:32 - 5 Comments
Galaxy S III listed for Telstra, Optus and Vodafone
More In Gadgets
- Will Telstra skip Nokia’s Lumia 900?
- New BlackBerry OS 7.1 hits Australia
- ASUS Transformer Pad tablet hits Australia
- HTC One XL on sale: Compatible with Telstra 4G
- Optus a “disgusting” company, says AFL chief
Reviews - May 7, 2012 18:16 - 2 Comments
Telstra Mobile Wi-Fi 4G: Review
More In Reviews
- Samsung Galaxy S III: Preview
- HTC Titan II 4G: Preview
- Nokia Lumia 710: Review
- Sony Xperia S: Review
- Samsung Omnia W: Review








sponsored post ING Direct recently implemented a private cloud solution to virtualise its entire banking platform, allowing it to provision a new copy of itself -- a so-called 'bank in a box' -- within minutes. 
Leave a Comment