Online gamers targeted in Korean MSN hack attack
Third party, hack and theft
Posted in Spyware, 6th June 2005 13:02 GMT
Free whitepaper – Vulnerability management buyer's checklist
More details have emerged about a hacking attack that left MSN's South Korean portal booby trapped with password-pinching malware. The attack targeted subscribers to Lineage, an online game with 4m users, largely in Asia. It's unclear how many users were clobbered by the assault. Police and Microsoft specialists have begun an investigation into the attack.
The site - news.msn.co.kr - is back online following a clean-up operation that removed malware planted on the news pages of the portal. Microsoft is blaming the firm that run the site for failing to apply security patches that would have frustrated the attack. The security breach came to light during a routine security scan by net security firm Websense on Sunday May 29. A similar check on May 27 revealed nothing untoward. Microsoft patched the flaw after the Bank Holiday weekend leaving a minimum three day window of exposure, AP reports.
Websense reports that the malicious code attempted to exploit multiple JavaScript, IE, and other Microsoft vulnerabilities to download a Trojan (called Lineage.dll) onto the PCs of surfers with vulnerable computers visiting the site. "The attempts were launched through an invisible, embedded iframe on the front page of MSN NEWS Korea. Merely visiting the site with a vulnerable browser was enough to become infected, which occurred without the user's knowledge," it added.
Microsoft told AP it hadn't recorded an increase in complaints from subscribers to the $15 a month game following the break-in. ®
Related stories
Botnet used to boost online gaming scores
Onliner gamer stabbed over 'stolen' cybersword
Bofra exploit tied to 'massive botnet'
MS UK 0wn3d by hackers. Again
Free whitepaper – Avoiding 7 common mistakes of IT security compliance

Analyst Keynote: The Register Agile Data Center Summit
Analyst Keynote: The Register Agile Data Center Summit
Enabling the Agile Data Center
Breaching Fort Apache.org - What went wrong?
Snow Leopard security - The good, the bad and the missing
US Dems fill inboxes with 419 scams
BlockMaster SafeStick hardware-encrypted USB drive