HT TECH wants to start sending you push notifications. Click allow to subscribe

Beware of these US news websites! They are spreading malware

As many as 250 US news websites have been compromised and they are being used too spread malware on your phones and systems.

By: HT TECH
Updated on: Nov 03 2022, 19:22 IST
Here is all you need to know about SocGholish JavaScript malware attack that is being spread via hundreds of US news websites. (Pixabay)
Here is all you need to know about SocGholish JavaScript malware attack that is being spread via hundreds of US news websites. (Pixabay)

If you love reading news, especially the kind available in the US, then BEWARE! These US news websites are being used by hackers to spread malware to your phones and systems. Several new techniques are being used to spread malware. As per the latest details, compromised infrastructure of an undisclosed media company is being used to deploy the SocGholish JavaScript malware (also known as FakeUpdates) on the websites of hundreds of newspapers, last count was 250, across the United States (US). Threat Insights informed about the same over its Twitter handle saying that, "Proofpoint Threat Research has observed intermittent injections on a media company that serves many major news outlets. This media company serves content via #Javascript to its partners. By modifying the codebase of this otherwise benign JS, it is now used to deploy #SocGholish."

The threat actor behind this supply-chain attack has been identified as TA569, according to Proofpoint's Threat Insight team. "We track this actor as #TA569. TA569 historically removed and reinstated these malicious JS injects on a rotating basis. Therefore the presence of the payload and malicious content can vary from hour to hour and shouldn't be considered a false positive," it tweeted.

You may be interested in

Mobiles Tablets Laptops
10% OFF
Apple iPhone 14
  • Blue
  • 6 GB RAM
  • 128 GB Storage
₹80,999₹89,900
Buy now
Apple iPhone 13
  • Blue
  • 4 GB RAM
  • 128 GB Storage
₹79,900
Check details
Nothing Phone 1
  • Black
  • 8 GB RAM
  • 128 GB Storage
₹31,999
Check details
OPPO Reno8 5G
  • Shimmer Gold
  • 8 GB RAM
  • 128 GB Storage
₹29,999
Check details
10% OFF
Apple MacBook Air M2 MLY43HN A Ultrabook
  • Midnight Black
  • 8 GB RAM
  • 512 GB SSD
₹134,990₹149,900
Buy now
Apple MacBook Air M1 MGN93HN A Ultrabook
  • Silver
  • 8 GB DDR4 RAM
  • 256 GB SSD
₹83,900
Check details
Dell Inspiron 15 3000 C563104WIN9
  • Platinum Silver
  • 4 GB DDR4 RAM
  • 1 TB HDD
₹34,990
Check details
Dell XPS 13 9315 ICC C786507WIN8
  • Grey
  • 16 GB LPDDR5 RAM
  • 512 GB SSD
₹121,299
Check details
12% OFF
Apple IPad Mini 6
  • Pink
  • 4 GB RAM
  • 64 GB Storage
₹43,999₹49,900
Buy now
Xiaomi Mi Pad 5
  • Cosmic Gray
  • 6 GB RAM
  • 128 GB Storage
₹23,990
Check details
Realme Pad
  • Real Gold
  • 3 GB RAM
  • 32 GB Storage
₹22,999
Check details
Realme Pad X
  • Glowing Grey
  • 4 GB RAM
  • 64 GB Storage
₹29,999
Check details

Proofpoint further observed that TA569 has inserted malware in the assets of the media company, which is used by multiple news organizations. More than 250 regional/national newspaper sites have been infected by the code. The actual number of impacted hosts is known only by the impacted media company.

Also read: Looking for a smartphone? To check mobile finder click here.

It can be known that the impacted media organizations serve: Boston, New York, Chicago, Miami, Washington DC, Cincinnati, Palm Beach, and other national news outlets. Also, according to a report by BleepingComputer, Sherrod DeGrippo, VP of threat research and detection at Proofpoint has informed, "The media company in question is a firm that provides both video content and advertising to major news outlets. [It] serves many different companies in different markets across the United States."

It can be known that Proofpoint has earlier observed that the SocGholish campaigns use fake updates and website redirects to infect users, including, in some cases, ransomware payloads.

Follow HT Tech for the latest tech news and reviews , also keep up with us on Twitter, Facebook, , and Instagram. For our latest videos, subscribe to our YouTube channel.

First Published Date: 03 Nov, 18:39 IST
Tags:
NEXT ARTICLE BEGINS