Wednesday, February 17, 2021

Malvertisers Exploited WebKit 0-Day to Redirect Browser Users to Scam Sites

A malvertising group known as "ScamClub" exploited a zero-day vulnerability in WebKit-based browsers to inject malicious payloads that redirected users to fraudulent websites gift card scams. The attacks, first spotted by ad security firm Confiant in late June 2020, leveraged a bug (CVE-2021–1801) that allowed malicious parties to bypass the iframe sandboxing policy in the browser engine that
https://thehackernews.com/2021/02/malvertisers-exploited-webkit-0-day-to.html?utm_source=dlvr.it&utm_medium=blogger

No comments:

Post a Comment